AWS Principal Security Architect

Position Overview

Kshema General Insurance is seeking a Principal Security Architect to join our security organization. This role reports to the Chief Technology Officer and will play a critical role in shaping and executing Kshemas cloud security strategy across a diverse and evolving technology landscape.

Responsibilities

The role will work closely with development teams, product teams, and others across the organization to integrate security into the delivery lifecycle from design through deployment. This person will play a key role in defining security requirements, performing application security assessments, and providing developers with remediation & RESPONSIBILITIES :

Work independently with developers, system/network engineers, product owners, and other colleagues to ensure secure design, development, and implementation of applications, infrastructure, and networks.

Participate in engineering projects to identify threats and vulnerabilities in our cloud infrastructure and system architectures.

Define cybersecurity requirements and security concepts and work with engineering teams to successfully deliver business solutions.

Perform security design reviews of cloud systems, and networks.

Provide remediation guidance and recommendations to systems administrators.

Develop enterprise standards based on security best practices.

Demonstrate deep expertise in Azure and either AWS or Google Cloud Platform (GCP), including native security services.

Design secure cloud-native and hybrid architectures, including zero trust, micro-segmentation, and secure access patterns.

Design secure VPCs, firewalls, VPNs, and secure connectivity between on-prem and cloud.

Protect data utilizing Encryption (at rest, in transit, and in use), key management (KMS, HSM), tokenization, and data classification.

Integrate security into CI/CD pipelines, infrastructure as code (IaC) scanning, and container security (e.g., Kubernetes, Docker).

Conduct threat modeling, risk assessments, and security reviews for cloud workloads.

Define and drive cloud security strategy aligned with business and IT goals.

Create architecture diagrams, security design documents, and architecture decision records.

Closely work with CISO in evaluating technology initiatives and projects to determine advanced cybersecurity requirements and controls necessary to comply with company policies, standards, and industry best practices.

Demonstrate best practices, create proofs-of-concept and propose solutions to Customers Software and Infrastructure Architects and provide strategic technical direction across the development and infrastructure teams.

Build and sustain good working relationships with development and infrastructure teams and involve them in the overall application and cloud Security Technology strategy.

Develop security related user stories and product specific threat models for products, as well as CI/CD pipelines and infrastructure-as-code.

Develop technical security requirements for the business and see them through the development lifecycle.

Collaborate with business contacts to ensure third-party cloud applications comply with our standards, controls, policies, and REQUIREMENTS :

Bachelors degree in computer science or business with emphasis in IT or the equivalent combination of education, training and work experience.

Requires 10+ years of experience in cybersecurity, with at least 4 years focused on cloud security architecture.

Proven experience designing and securing solutions in Azure (preferred), and/or AWS.

Deep understanding of cloud-native services, container security (e.g., Kubernetes), and serverless architectures.

Strong knowledge of DevSecOps practices and secure software development lifecycle (SSDLC).

Familiarity with compliance frameworks such as NIST, ISO 27001, SOC 2, HIPAA, and PCI-DSS.

Advanced knowledge of IAM principles, federation, SSO, RBAC/ABAC, and privileged access management.

Relevant certifications such as AWS Certified Security Specialty, Azure Security Engineer Associate, GCP Professional Cloud Security Engineer, CISSP, or CCSP.

Hands-on practical experience high quality threat models and knowledge of MITRE framework, STRIDE framework and kill chains.

Deep understanding of network protocols, operating systems, databases, applied cryptography, least privilege, zero trust principles, identity & access management, and other core information security concepts.

Hands-on experience in performing threat modeling for applications, identifying threats, and suggesting optimal mitigation strategies.

Strong understanding of threat modeling methodologies (e.g., STRIDE, DREAD, PASTA).

Proficiency in using threat modeling tools (e.g., Microsoft Threat Modeling Tool, Threat Modeler, OWASP Threat Dragon).

In-depth knowledge of common security vulnerabilities (e.g., OWASP Top Ten, CVEs) and attack EXPERIENCE :

Experience in regulated industries (e.g., financial services, insurance, healthcare).

Strong communication and leadership skills, with the ability to influence technical and non-technical stakeholders.

Experience leading security architecture programs or initiatives at the enterprise level.

Experience with Container security platforms.

Experience incorporating security policy into Infrastructure as Code.

(ref:hirist.tech)

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the AWS Principal Security Architect in Secunderabad vacancy
  •  ...embraces diversity and inclusion – it's a place where you can grow, belong and thrive. Your day at NTT DATA The Principal Information Security Services Architect is a highly skilled subject matter expert, responsible for guiding and overseeing the ongoing security assurance... 
    Principal
    Long term contract
    Contract work
    Hybrid work
    Flexible hours
    Secunderabad
    1 day ago
  •  ...We are seeking a  hands-on Security Architect  to join our engineering organization. This critical role will drive alignment between vulnerability management remediation iniatives and DevSecOps, coordinate with engineering and product teams on security implementation, and support... 
    Principal
    Permanent employment
    Full time
    Secunderabad
    a month ago
  •  ...of work’ digital workplace platform called Pulse. Visit . About the Role We are seeking a highly experienced Senior Security Architect to lead and enhance our global security strategy. The ideal candidate will have deep expertise in Cyber Security, Application Security... 
    Suggested
    Hybrid work
    Secunderabad
    17 days ago
  •  ...We are Hiring for Security Architect Please mail your cv We are Hiring for Security Architect Please mail your cv [HIDDEN TEXT]   Job Title: Security Architect Company : 360DigiTMG About Us: 360DigiTMG is one of the world pioneering EdTech renowned for empowering... 
    Suggested
    Hybrid work
    Secunderabad
    4 days ago
  •  ...Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security... 
    Suggested
    Full time
    Work at office
    Secunderabad
    1 day ago
  •  ...participation/contribution in team discussions. - Contribute in providing solutions to work related problems. Develop and implement security architecture solutions. Conduct risk assessments and provide recommendations for security enhancements. Collaborate with cross-... 
    Secunderabad
    10 days ago
  •  ...Requirements Cybersecurity Regulations: Essential Knowledge: Familiarity with the Cyber Security Management System (CSMS) process, including an overview of UN-R155 and UN-R156 regulations. Standards Awareness: Proficiency in ISO 21434 cybersecurity standards is mandatory... 
    Secunderabad
    a month ago
  •  ...Description What Part Will You Play Designs, Develops and Documents the Identity & Access Management security solutions. Provides oversight over the implementations for access enforcement Acts as the subject matter expert on Information Security functions pertaining... 
    Long term contract
    Secunderabad
    2 days ago
  •  ...Role description: The Technical 2nd LoD review shall focus on the Cyber Security aspects of the Onboard Elements in the Vehicle (ECUs/units in the Network Architecture) and the Offboard (Mobile Communications and Cloud). As part of the expectation from the CSMS process... 
    Secunderabad
    a month ago
  •  ...design and implementation of SailPoint IdentityIQ solutions for clients, ensuring optimal configuration and performance. Cloud Security Architecture: Develop, maintain, and manage the cloud security framework and architecture, ensuring alignment with business requirements... 
    Secunderabad
    10 days ago
  •  ...Key Performance Indicators (KPIs) and Responsibilities Security Alignment and Governance Align JLR L2 logical security capabilities...  ...processes. Collaborate with solution and enterprise architects for security capability reviews and alignments. Define and maintain... 
    Secunderabad
    a month ago
  •  ...We are seeking a seasoned Application Security Architect to lead the design and implementation of secure software development practices across our organization. This role will collaborate with engineering, DevOps, Operations, InfoSec teams to embed security into the software... 
    Flexible hours
    Secunderabad
    1 day ago
  •  ...for their immediate team and across multiple teams. Ensure the security of applications and make recommendations to enhance security...  ...Suggesting ideas to reduce IT costs in current environment. • The DCS architect must demonstrate the capacity to develop a robust server and... 
    Immediate start
    Secunderabad
    10 days ago
  •  ...work better for everyone. Job Description Team Product Security is Shifting Everywhere and holistically improving the maturity of...  ...and strategic. Role As a Senior Staff Product Security Architect on the ServiceNow SSDL team, you will collaborate with developers... 
    Work at office
    Remote job
    Flexible hours
    Shift work
    Secunderabad
    2 days ago
  •  ...Primary Role & Responsibilities: Work closely with other IT and security teams, as well as external vendors, to ensure successful implementation and operation of security solutions. Architect and design security solutions that integrate seamlessly with existing systems... 
    Secunderabad
    a month ago
  •  ...organization bears the broad responsibilities of delivering information security, practice governance & assurance, and data loss prevention...  ...associates, investors, and customers. As a Product Security Architect you demonstrate deep knowledge & experience in designing and... 
    Worldwide
    Home office
    Secunderabad
    23 days ago
  • Key Deliverables Develop customized solution designs to meet customer business objectives Provide solution consulting, technical design, and sales support for account opportunities Lead customer-facing presentations and product demonstrations Own technical solution...
    Secunderabad
    a month ago
  •  ...customer environment. Join us to do the best work of your career and make a profound social impact as a Full Stack Data Architect & MCP Security Architect on our IT Architecture Team in Hyderabad . What You'll Achieve As an Architect, you will be responsible... 
    Full time
    Secunderabad
    1 day ago
  •  ...individuals to join us on this exciting path to becoming a publicly traded company and shape our promising future. Job Title: Sr. Principal Security Engineer Team: Product Security / Offensive Security Job Summary: We are seeking a highly experienced and... 
    Principal
    Full time
    Work at office
    Worldwide
    Secunderabad
    2 days ago
  •  ...Inviting applications for the role of Senior Principal Consultant - Master Data Management. In this role, you are responsible for driving the adoptions of data & process standards set by Global Data Council and Data Champions for that specific domain in the region.... 
    Principal
    Secunderabad
    2 days ago
  • Skills: Process development responsibility Resin screening and selection for new projects Process development from small scale shake flask to bioreactor scale ( 1L, 5L, 20L) Process scale up till 2KL Product/Process studies to support commercial Dossier submissions...
    Principal
    Secunderabad
    a month ago
  • Role Responsibilities: Support asset managers in reviews and business plan analysis Prepare and present asset reports for executives Analyze portfolio performance and assist in valuations Utilize servicer feeds and internal tools for insight generation Job Requirements...
    Principal
    Secunderabad
    a month ago
  •  ...here. UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security...  ...advanced Splunk and SentinelOne implementations ~ Splunk Certified Architect or Splunk Certified Enterprise Security Admin certification ~... 
    Principal
    Long term contract
    Temporary work
    Secunderabad
    9 days ago
  •  ...Inviting applications for the role of Senior Principal Consultant - Business Analyst - Service Now In this role you will be responsible for part of the full project lifecycle with a primary focus on business value and benefit realization. Responsibilities... 
    Principal
    Full time
    Secunderabad
    2 days ago
  •  ...path to becoming a publicly traded company and shape our promising future. Job Title: Principal Cybersecurity Engineer Location: Hyderabad, Telangana Team: Security Operations Center (SOC) Job Summary: We are seeking an experienced and highly skilled Principal... 
    Principal
    Full time
    Work at office
    Worldwide
    Shift work
    Weekend work
    Secunderabad
    2 days ago
  •  ...Inviting applications for the role of Sr. Principal Consultant, Global Digital Transformation AP In this role, you will lead digital transformation initiatives across the Asia-Pacific (AP) region, driving strategic development and execution. You will collaborate with... 
    Principal
    Secunderabad
    2 days ago
  • Job description 1. VMWare Platform, ESXi - L3 Admin 2. Manage Physical Hardware Cisco, Lenovo, Cisco UCS 3. Patching, Firmware upgrade 4. AWS IaaS - Compute / Infra - Load balancer, Instance MGmt. EC2 troubleshooting -
    Principal
    Secunderabad
    a month ago
  •  ...The Job in short As a Principal AI Application Security Engineer you'll take the lead in a team of security engineers working to ensure we build, maintain and deploy secure software that is used by millions of users around the globe. If you have a hacker mindset, are... 
    Principal
    Secunderabad
    3 days ago
  • Job Description A layout technical expert taking chip top ownership of analog-on-top ASIC developments. Hands-on technical contributor, able to take chiptop ownership including tape-out procedures. A teamplayer, able to collaborate within a global layout team and cross...
    Principal
    Secunderabad
    1 day ago
  •  ...Responsibilities Design cloud security solutions that align with industry best practices and business requirements Monitor and assess cloud vulnerabilities, threats, and security events Implement and manage cloud-specific security controls and protective measures... 
    Secunderabad
    a month ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to AWS Principal Security Architect. Be the first to apply!

Sign up to access all features of our service
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions