Role & Responsibilities
Act as a cybersecurity SME for products, applications, platforms and cloud services.
Perform Threat Modeling, Threat & Risk Assessment (TRA) and security risk assessments.
Conduct security architecture and design reviews and recommend security controls.
Drive Secure SDLC/SSDLC and security-by-design practices.
Guide SAST, DAST, SCA and SBOM implementation across CI/CD pipelines.
Provide hands-on guidance for AWS/Azure Cloud, Docker/Containers and Kubernetes Security.
Drive vulnerability assessment, remediation and penetration-testing activities.
Support security incidents and provide technical root-cause analysis.
Develop cybersecurity standards, secure baselines and engineering guidelines.
Work closely with Software Engineering, DevOps, QA, Architecture and Product teams.
Provide technical mentoring and act as a solid Individual Contributor/SME.
Preferred Candidate Profile
8+ years of overall experience in Cybersecurity, Software, Cloud or Platform Engineering.
5+ years of hands-on Product Security, Application Security or Security Architecture experience.
Robust practical experience in Threat Modeling, TRA and Secure SDLC.
Hands-on experience with AWS and/or Azure Cloud Security.
Hands-on experience with Docker/Container and Kubernetes Security.
Solid knowledge of SAST, DAST, SCA, SBOM and vulnerability management.
Valuable understanding of OWASP Top 10, NIST and ISO 27001/27002.
Strong problem-solving and independent technical ownership; this is primarily a hands-on IC role.
Healthcare/Medical Device cybersecurity experience is an advantage.
CISSP, CSSLP, CCSP, CKS or Azure Security certification is preferred.
📌 Cyber Security Architect Pune
🏢 Sunovaa Tech
📍 Pune
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.