HamburgerMenu
hirist

Group Security Architect & iAM - DevSecOps

TeamPlus Staffing Solution
12 - 15 Years
Chennai

Posted on: 10/07/2026

Job Description

Job Title : Group Security Architecture & IAM Lead

Location : Chennai, India with international travel to ME (20%)

Role Summary : Define and drive the Group's cybersecurity architecture strategy, covering enterprise security, identity & access management (IAM), cloud security, and zero trust, ensuring secure by design systems across all subsidiaries rather than bolted on.


This role acts as the SPOC for design-related decisions for cybersecurity and will be part of all major IT, OT, and digital transformation initiatives to represent cybersecurity.


This role defines group security standards, tools standards, and IAM and access governance strategy, ensuring security controls are consistent, resilient, and modern across environments (on-prem vs. cloud), countries/regions, and units/subsidiaries.

Working Details : Working Days: Monday - Friday. Job Timing: Day Shift. Job Type: Full Time. Salary: Open.

Qualifications : B.E. / B. Tech in IT / CS / cyber security / data science / AI or M.E / M. Tech in IT / CS / cyber security / data science / AI.

Professional Certifications : CISSP, SABSA, TOGAF, ISSAP (Information Systems Security Architecture Professional), CCSP (Cloud Security), or Microsoft Cybersecurity Architect Expert (SC-100).

Previous Work Experience : 12-15+ years of cyber security experience. Hands-on experience in cyber security, cloud security, application security, and network architecture, driving tools standardization in large enterprises and multi-subsidiary environments. Experience in executing large IAM/PAM programs in complex environments. Worked in multi-subsidiary and large multi-country organizations.

Key Responsibilities :

1. Security Blueprints: Develop Standard Reference Architectures for Cloud, On-Prem, and Hybrid environments that are to be followed at the group level and all subsidiaries in scope.

2. IAM Strategy: Centralize identity management to ensure Single Sign-On (SSO) and Multi-Factor Authentication (MFA) are enforced across the Group and establish access governance. Ensure access and privileges are defined well for different people like employees, contractors, and third-party temp workers.

3. Zero Trust Roadmap: Lead the transition from traditional identity security to a Zero Trust identity-based model. Ensure continuous identity-based access verification, network segmentation, and device trust (digital identities, agentic AI identities, etc.).

4. Project Security Review: Act as the SPOC for new Group-wide IT projects (e.g., a new ERP rollout), ensuring security is baked in from the RFP stage.

5. Privileged Access Management (PAM): Ensure that Admin rights to critical systems like Energy and Construction systems are strictly controlled and actions are recorded.

6. M&A Integration: Design the secure connect strategy that allows newly acquired companies to connect to the Group network safely to enable IT and other systems integrations quickly.

7. Cloud Security Architecture:

- Define security for: Azure / AWS / OCI / GCP environments.

- Establish: secure landing zones and cloud governance standards.

- Ensure alignment with: DevOps / application teams.

8. Integration Across IT and OT:

- Work with OT Security lead to align IT and OT architectures.

- Ensure secure connectivity between enterprise systems and plant environments.

9. Technology Evaluation & Roadmap:

- Evaluate security tools and platforms to standardize across the group and share standards with subsidiaries to drive adoption.

- Define: long-term security roadmap by working with group-level leadership and also with subsidiary leadership teams.

- Avoid too many tool options within the group and redundant investments.

Core Skills: Strong experience in designing enterprise security architecture and reference architectures. Deep understanding of IAM/PAM. Experience influencing large-scale IT and digital transformations. Ability to operate across IT, cloud, and OT-integrated environments. Strategic thinker with a hands-on mindset. Design thinking. Can influence without authority. Strong technical depth. Long-term orientation. Attention to Detail: Ensuring that small things like certificate management or API keys are not overlooked in large designs. Strategic Foresight: Identifying technology trends before they become cyber risks.

Strategic Thinking:

- Strong influencing capability.

- Ability to challenge architecture decisions constructively.

- Communication with senior stakeholders and driving standards across the group.

- Driving the vision, for example: Ability to look 3 years into the future and convince subsidiary IT leadership to adopt new technologies.

Core Skills Technical:

- Enterprise security and reference architecture frameworks.

- IAM/PAM design and implementation.

- Network security architecture.

- Cloud security (Azure, AWS, GCP and OCI).

- Zero trust architecture.

- DevSecOps integration.

- Application security architecture.

- OT/IT convergence understanding.

- API security and microservices security.

- Expert knowledge of Identity Protocols (SAML, OIDC, OAuth), Cloud Security Posture Management (CSPM), and Network Micro-segmentation.

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...