Qureos

FIND_THE_RIGHTJOB.

Security Architect

Hyderabad, Pakistan

    9 - 12 Years
    1 Opening
    Bangalore, Hyderabad


Role description

Security Architect

Experience : 7 plus years

Key Responsibilities
  • Perform threat modeling on application and infrastructure designs to identify risks, vulnerabilities, and attack vectors.
  • Review application components and underlying infrastructure (servers, databases, middleware, APIs, networks, cloud connectors, etc.) from a threat perspective.
  • Recommend mitigating controls, design changes, and security enhancements to ensure projects can be securely approved.
  • Identify recurring risks and develop standard security design patterns and best practices to be used across the organization.
  • Provide architecture-level guidance for both on-premise solutions and SaaS/integrated applications.
  • Collaborate with enterprise architects, infrastructure teams, DevOps, and project managers to embed security early in the design phase.
  • Ensure adherence to industry frameworks and organizational security policies (e.g., NIST CSF, ISO 27001, CIS, OWASP).
  • Act as a trusted advisor to project teams by balancing business objectives with strong security outcomes.
  • Contribute to security architecture governance, review boards, and approval processes.

Required Qualifications & Skills
  • Proven experience (7+ years) in security architecture or related security design roles, ideally in the financial services sector.
  • Hands-on experience with threat modeling methodologies (e.g., STRIDE, PASTA, MITRE ATT&CK mapping).
  • Strong understanding of infrastructure components (servers, databases, APIs, middleware, networks, containers, virtualization).
  • Knowledge of cloud and SaaS security principles, integrations, and shared responsibility models.
  • Familiarity with application security concepts and testing practices (SAST/DAST), even if not directly performing them.
  • Strong knowledge of security architectural patterns, frameworks, and standards (NIST, ISO, SABSA, TOGAF, OWASP, CIS Benchmarks).
  • Ability to create and document security design guidelines and reusable patterns.
  • Strong communication and stakeholder management skills—able to convey complex technical risks in business-friendly language.
  • Relevant certifications are a plus (e.g., SABSA, TOGAF, CISSP).

Skills

Threat modeling ,Infrastructure&Applicationsecurityarchitecture,Securityframeworks&standardscompliance


About UST

UST is a global digital transformation solutions provider. For more than 20 years, UST has worked side by side with the world’s best companies to make a real impact through transformation. Powered by technology, inspired by people and led by purpose, UST partners with their clients from design to operation. With deep domain expertise and a future-proof philosophy, UST embeds innovation and agility into their clients’ organizations. With over 30,000 employees in 30 countries, UST builds for boundless impact—touching billions of lives in the process.

© 2025 Qureos. All rights reserved.