Talent.com
This job offer is not available in your country.
Principal Security Architect

Principal Security Architect

Kshema General Insurance LimitedIndia
30+ days ago
Job description

POSITION OVERVIEW

Kshema General Insurance is seeking a Principal Security Architect to join our security organization. This role reports to the Chief Technology Officer and will play a critical role in shaping and executing Kshema’s cloud security strategy across a diverse and evolving technology landscape.

The role will work closely with development teams, product teams, and others across the organization to integrate security into the delivery lifecycle from design through deployment. This person will play a key role in defining security requirements, performing application security assessments, and providing developers with remediation advice.

DUTIES & RESPONSIBILITIES

Work independently with developers, system / network engineers, product owners, and other colleagues to ensure secure design, development, and implementation of applications, infrastructure, and networks.

Participate in engineering projects to identify threats and vulnerabilities in our cloud infrastructure and system architectures.

Define cybersecurity requirements and security concepts and work with engineering teams to successfully deliver business solutions.

Perform security design reviews of cloud systems, and networks.

Provide remediation guidance and recommendations to systems administrators.

Develop enterprise standards based on security best practices.

Demonstrate deep expertise in Azure and either AWS or Google Cloud Platform (GCP), including native security services.

Design secure cloud-native and hybrid architectures, including zero trust, micro-segmentation, and secure access patterns.

Design secure VPCs, firewalls, VPNs, and secure connectivity between on-prem and cloud.

Protect data utilizing Encryption (at rest, in transit, and in use), key management (KMS, HSM), tokenization, and data classification.

Integrate security into CI / CD pipelines, infrastructure as code (IaC) scanning, and container security (e.g., Kubernetes, Docker).

Conduct threat modeling, risk assessments, and security reviews for cloud workloads.

Define and drive cloud security strategy aligned with business and IT goals.

Create architecture diagrams, security design documents, and architecture decision records.

Closely work with CISO in evaluating technology initiatives and projects to determine advanced cybersecurity requirements and controls necessary to comply with company policies, standards, and industry best practices.

Demonstrate best practices, create proofs-of-concept and propose solutions to Customer’s Software and Infrastructure Architects and provide strategic technical direction across the development and infrastructure teams.

Build and sustain good working relationships with development and infrastructure teams and involve them in the overall application and cloud Security Technology strategy.

Develop security related user stories and product specific threat models for products, as well as CI / CD pipelines and infrastructure-as-code.

Develop technical security requirements for the business and see them through the development lifecycle.

Collaborate with business contacts to ensure third-party cloud applications comply with our standards, controls, policies, and principles.

MINIMUM REQUIREMENTS

Bachelor’s degree in computer science or business with emphasis in IT or the equivalent combination of education, training and work experience.

Requires 10+ years of experience in cybersecurity, with at least 4 years focused on cloud security architecture.

Proven experience designing and securing solutions in Azure (preferred), and / or AWS

Deep understanding of cloud-native services, container security (e.g., Kubernetes), and serverless architectures.

Strong knowledge of DevSecOps practices and secure software development lifecycle (SSDLC).

Familiarity with compliance frameworks such as NIST, ISO 27001, SOC 2, HIPAA, and PCI-DSS.

Advanced knowledge of IAM principles, federation, SSO, RBAC / ABAC, and privileged access management.

Relevant certifications such as AWS Certified Security – Specialty, Azure Security Engineer Associate, GCP Professional Cloud Security Engineer, CISSP, or CCSP.

Hands-on practical experience high quality threat models and knowledge of MITRE framework, STRIDE framework and kill chains.

Deep understanding of network protocols, operating systems, databases, applied cryptography, least privilege, zero trust principles, identity & access management, and other core information security concepts.

Hands-on experience in performing threat modeling for applications, identifying threats, and suggesting optimal mitigation strategies.

Strong understanding of threat modeling methodologies (e.g., STRIDE, DREAD, PASTA).

Proficiency in using threat modeling tools (e.g., Microsoft Threat Modeling Tool, Threat Modeler, OWASP Threat Dragon).

In-depth knowledge of common security vulnerabilities (e.g., OWASP Top Ten, CVEs) and attack vectors.

PREFERRED EXPERIENCE

Experience in regulated industries (e.g., financial services, insurance, healthcare).

Strong communication and leadership skills, with the ability to influence technical and non-technical stakeholders.

Experience leading security architecture programs or initiatives at the enterprise level.

Experience with Container security platforms.

Experience incorporating security policy into Infrastructure as Code.

Create a job alert for this search

Principal Architect • India

Related jobs
  • Promoted
Lead Security Engineer

Lead Security Engineer

ArcanaNagpur, IN
As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Instructor

Cyber Security Instructor

AccredianNagpur, IN
Accredian is a leading edtech company dedicated to empowering professionals with industry-relevant, practical, and cutting-edge technology training. Our goal is to bridge the skill gap through exper...Show moreLast updated: 30+ days ago
  • Promoted
Cloud Security Engineer

Cloud Security Engineer

AquanowNagpur, IN
Aquanow, a leading infrastructure and liquidity provider that provides institutional and enterprise application platforms for digital assets, is looking for a Cloud Security Engineer to join our te...Show moreLast updated: 26 days ago
  • Promoted
Senior Data Architect- SNOWFLAKE

Senior Data Architect- SNOWFLAKE

ComfNet Solutions GmbHNagpur, IN
PM to 9 PM (with a few hours overlap in EST time zone – mandatory).A minimum of 8–10 years of experience in data engineering, encompassing the development and scaling of data warehouse and data lak...Show moreLast updated: 5 days ago
  • Promoted
Security Architect - DLP

Security Architect - DLP

Purview India Consulting and Services LLPIndia
Job Summary : We are seeking a highly experienced Senior Security Architect to lead and enhance our global security strategy.The ideal candidate wi...Show moreLast updated: 30+ days ago
  • Promoted
Principal / Senior Data Architect

Principal / Senior Data Architect

AaysNagpur, IN
Position : Principal / Senior Data Architect.You will act as a key member of the consulting team helping Clients to re-invent their corporate finance function by leveraging advanced analytics.You wil...Show moreLast updated: 14 days ago
  • Promoted
Senior Security Consultant

Senior Security Consultant

Claranet IndiaNagpur, IN
Founded at the beginning of the dot.CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP)...Show moreLast updated: 23 days ago
  • Promoted
Cyber Security Engineer with Splunk

Cyber Security Engineer with Splunk

IntraEdgeNagpur, IN
This role will lead the development and implementation of intelligent security solutions using SIEM, SOAR, and machine learning to enhance detection, response, and operational efficiency across the...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Oracle Architect

Oracle Architect

CognizantNagpur, IN
Oracle Architect - Hybrid Working.Looking for candidates who are willing to relocate to Sweden.What makes Cognizant a unique place to work? The combination of rapid growth and an international and ...Show moreLast updated: less than 1 hour ago
  • Promoted
Oracle Cloud Security and Risk Management (RMC) Consultant

Oracle Cloud Security and Risk Management (RMC) Consultant

AtomNagpur, IN
Job Title : Oracle Cloud Security and Risk Management (RMC) Consultant.We are seeking an experienced Oracle Cloud Security and Risk Management (RMC) Consultant to join our team.The ideal candidate w...Show moreLast updated: 30+ days ago
  • Promoted
JD Edwards Security Consultant

JD Edwards Security Consultant

IT ConsultingNagpur, IN
JD Edwards Security Consultant.Collaborate with global business stakeholders to understand business processes and security requirements within JD Edwards. Design and document standardized user roles...Show moreLast updated: 7 days ago
  • Promoted
Principal Engineer

Principal Engineer

Hotel TraderNagpur, IN
We're Hiring : Staff / Principal Engineer (Java) - Remote.Location : Remote | 🌍 Global Team | 💼 Experience : 8–12 years. Ready to build the future of hotel distribution at scale?.At Hotel Trader, we're...Show moreLast updated: 25 days ago
  • Promoted
Power Platform Solution Architect

Power Platform Solution Architect

VeriParkNagpur, IN
We enable financial institutions to become digital leaders.As a professional team of global scale, we work with best clients for great and exciting projects, in an environment where we learn amazin...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Cloud Architect

Cloud Architect

IntraEdgeNagpur, IN
Senior Cloud Architecture Engineer.The Senior Cloud Architecture Engineer is responsible for designing, building and maintaining the underlying PaaS systems that products and services run on, with ...Show moreLast updated: less than 1 hour ago
  • Promoted
  • New!
Security Engineer (Remote)

Security Engineer (Remote)

DigiHelic Solutions Pvt. Ltd.Nagpur, IN
Remote
We are looking for a proactive and experienced.In this role, you will design, implement, and maintain.The ideal candidate will have deep. Monitor cloud environments for.AWS-native and third-party to...Show moreLast updated: less than 1 hour ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

interface.aiNagpur, IN
Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 26 days ago
  • Promoted
Principal Engineer, Agent Platform

Principal Engineer, Agent Platform

MightyBotNagpur, IN
Join our team as a Principal Engineer, where we're focused on graduating AI from interesting demos to indispensable products. You will architect and build the core distributed systems that provide t...Show moreLast updated: 20 days ago
  • Promoted
  • New!
Third Party Risk Management - Cyber Security (Pune, Bangalore, Gurgaon)

Third Party Risk Management - Cyber Security (Pune, Bangalore, Gurgaon)

DigiHelic Solutions Pvt. Ltd.Nagpur, IN
Lead the end-to-end third-party risk assessment process including initial due diligence, onboarding, and periodic reviews. Collaborate and lead discussions with various departments from client’s tea...Show moreLast updated: less than 1 hour ago