HamburgerMenu
hirist

Principal Security Architect - DevSecOps

Pylon Management Consulting
12 - 18 Years
Hyderabad

Posted on: 18/06/2026

Job Description

About the Role :

We are seeking an experienced Principal Security Architect to lead the design and implementation of enterprise security architectures with a strong focus on Application Security, DevSecOps, Cloud Security, and Secure Software Development practices.

The ideal candidate will be responsible for defining security strategies, establishing secure architecture frameworks, and ensuring that security is embedded throughout the software development lifecycle.

This role requires a hands-on security leader capable of partnering with Engineering, DevOps, Cloud, Infrastructure, and Product teams to build secure and resilient platforms.

Key Responsibilities :

Security Architecture & Strategy :

- Define and drive enterprise-wide application security and cloud security architecture strategies.

- Design secure architectures for modern cloud-native applications, platforms, and services.

- Establish security standards, frameworks, and governance processes across technology environments.

- Conduct architecture reviews and security assessments for new and existing applications.

- Develop security roadmaps aligned with business objectives and regulatory requirements.

Application Security :

- Lead secure application design initiatives across web, mobile, API, and enterprise applications.

- Define and implement secure coding standards and security best practices.

- Conduct threat modeling, architecture risk assessments, and security design reviews.

- Ensure integration of security controls throughout the Software Development Life Cycle (SDLC).

- Guide engineering teams on vulnerability remediation and secure software development practices.

DevSecOps & Secure Engineering :

- Drive DevSecOps adoption across development and engineering teams.

- Integrate security controls into CI/CD pipelines and automated deployment processes.

- Implement automated security testing including :

1. SAST (Static Application Security Testing)

2. DAST (Dynamic Application Security Testing)

3. SCA (Software Composition Analysis)

4. Container Security

- Establish security automation frameworks and continuous compliance practices.

- Collaborate with DevOps teams to embed security into infrastructure and application delivery processes.

Cloud Security :

- Architect secure cloud environments across AWS, Azure, or Google Cloud Platform.

- Define cloud security controls covering identity management, encryption, network security, monitoring, and compliance.

- Conduct cloud security assessments and risk evaluations.

- Design secure multi-cloud and hybrid-cloud architectures.

- Ensure compliance with cloud security best practices and industry standards.

Risk Management & Governance :

- Perform security risk assessments and identify vulnerabilities across applications and infrastructure.

- Develop mitigation strategies and remediation plans.

- Ensure compliance with security frameworks and industry regulations.

- Participate in audits, security reviews, and governance programs.

Technical Leadership :

- Provide technical guidance and mentorship to security engineers, architects, and development teams.

- Partner with senior stakeholders to drive security transformation initiatives.

- Evaluate emerging security technologies and recommend adoption strategies.

- Serve as a trusted advisor for security architecture decisions across the organization.

Required Candidate Profile :

- 12 to 18 years of experience in Cyber Security, Application Security, Security Architecture, or Enterprise Security.

- Strong expertise in Application Security Architecture and Secure Software Development.

- Proven experience designing and implementing DevSecOps frameworks and practices.

- Deep understanding of Cloud Security principles across AWS, Azure, or GCP.

- Experience performing threat modeling, security architecture reviews, and risk assessments.

- Strong knowledge of security controls, identity management, encryption, and vulnerability management.

- Experience integrating security into CI/CD pipelines and modern software engineering environments.

- Excellent communication, stakeholder management, and leadership skills.

Mandatory Skills :

- Application Security Architecture

- Secure Software Development Lifecycle (SSDLC)

- DevSecOps

- Cloud Security

- Security Architecture

- Threat Modeling

- CI/CD Security

- Vulnerability Management

- Security Risk Assessment

- Secure Coding Practices

- API Security

- Identity & Access Management (IAM)

Preferred Skills :

- AWS Security

- Azure Security

- Google Cloud Security

- Kubernetes Security

- Container Security

- SAST / DAST / SCA Tools

- Zero Trust Architecture

- Security Automation

- Compliance & Governance

- OWASP Top 10

Education :

- Bachelor's or Master's Degree in Computer Science, Information Security, Cyber Security, Engineering, or related field.

- Security certifications such as CISSP, CCSP, CSSLP, AWS Security Specialty, Azure Security Engineer, or equivalent will be preferred.

Why Join Us :

- Opportunity to define and drive enterprise security architecture strategy.

- Lead large-scale cloud security and DevSecOps transformation initiatives.

- Work closely with engineering leadership on modern application security programs.

- High-impact role with significant visibility across technology and business teams

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...