9 - 12 Years
1 Opening
Bangalore, Hyderabad
Security Architect
Experience : 7 plus years
Key Responsibilities
- Perform threat modeling on application and infrastructure designs to identify risks, vulnerabilities, and attack vectors.
- Review application components and underlying infrastructure (servers, databases, middleware, APIs, networks, cloud connectors, etc.) from a threat perspective.
- Recommend mitigating controls, design changes, and security enhancements to ensure projects can be securely approved.
- Identify recurring risks and develop standard security design patterns and best practices to be used across the organization.
- Provide architecture-level guidance for both on-premise solutions and SaaS/integrated applications.
- Collaborate with enterprise architects, infrastructure teams, DevOps, and project managers to embed security early in the design phase.
- Ensure adherence to industry frameworks and organizational security policies (e.g., NIST CSF, ISO 27001, CIS, OWASP).
- Act as a trusted advisor to project teams by balancing business objectives with strong security outcomes.
- Contribute to security architecture governance, review boards, and approval processes.
Required Qualifications & Skills
- Proven experience (7+ years) in security architecture or related security design roles, ideally in the financial services sector.
- Hands-on experience with threat modeling methodologies (e.g., STRIDE, PASTA, MITRE ATT&CK mapping).
- Strong understanding of infrastructure components (servers, databases, APIs, middleware, networks, containers, virtualization).
- Knowledge of cloud and SaaS security principles, integrations, and shared responsibility models.
- Familiarity with application security concepts and testing practices (SAST/DAST), even if not directly performing them.
- Strong knowledge of security architectural patterns, frameworks, and standards (NIST, ISO, SABSA, TOGAF, OWASP, CIS Benchmarks).
- Ability to create and document security design guidelines and reusable patterns.
- Strong communication and stakeholder management skills—able to convey complex technical risks in business-friendly language.
- Relevant certifications are a plus (e.g., SABSA, TOGAF, CISSP).
Threat modeling ,Infrastructure&Applicationsecurityarchitecture,Securityframeworks&standardscompliance
UST is a global digital transformation solutions provider. For more than 20 years, UST has worked side by side with the world’s best companies to make a real impact through transformation. Powered by technology, inspired by people and led by purpose, UST partners with their clients from design to operation. With deep domain expertise and a future-proof philosophy, UST embeds innovation and agility into their clients’ organizations. With over 30,000 employees in 30 countries, UST builds for boundless impact—touching billions of lives in the process.