28 Aug
|
ClanX
|
Bengaluru
Own end-to-end security architecture across cloud, applications, and APIs. This is a hands-on builder role focused on securing production systems, driving compliance, and partnering closely with engineering, customers, auditors, and regulators.
Company Details
AiPrise is an AI-powered global compliance platform helping fintechs and businesses with KYB, KYC, fraud prevention, risk scoring, and compliance automation across 200+ countries. Website: aiprise.com
Requirements
- 8+ years of experience in security engineering, security architecture, or a closely related field.
- Proven experience securing production systems at scale.
- Strong hands-on understanding of application code, cloud infrastructure, and API security.
- Robust cloud security expertise across IAM, network segmentation, secrets and key management, containers, workloads, and infrastructure-as-code.
- Deep knowledge of application and API security, including access control, injection, SSRF, authentication, authorization, and secure design.
- Experience with threat modeling, security design reviews, secure SDLC, CI/CD security, dependency security, and container security.
- Strong understanding of SOC 2, ISO/IEC 27001, GDPR, and related security and privacy requirements.
- Experience leading certification, enterprise customer, and regulatory audits and driving findings to closure.
- Strong stakeholder and customer-facing communication skills.
- Strong risk judgment with the ability to balance security, business, and delivery needs.
- Experience with personal, identity, or biometric data is preferred.
- Experience in fintech, regtech, identity verification, or another regulated domain is preferred.
- Penetration testing, red teaming, vulnerability research, or DevSecOps experience is preferred.
- CISSP, CCSP, OSCP, CIPP,
CIPT, or similar certifications are valued.
- Experience mentoring or leading engineers is preferred.
Responsibilities
- Own and evolve security architecture across cloud infrastructure, applications, and APIs.
- Partner directly with engineers to identify, prioritize, remediate, and validate security issues.
- Perform threat modeling and security design reviews for new services and major changes.
- Embed security into engineering through secure coding standards, code review, CI/CD controls, dependency security, and container security.
- Define and maintain security standards, reference architectures, and hardening baselines.
- Lead penetration testing, vulnerability management, remediation tracking, and closure of security findings.
- Translate regulatory and industry requirements into practical technical and organizational controls.
- Own technical audit and assessment activities, including evidence, control mapping, and remediation.
- Support enterprise customer security reviews, questionnaires, due diligence, and trust discussions.
- Partner with privacy and data-protection teams on GDPR and other applicable requirements.
- Help protect personal and biometric data through appropriate security controls.
- Contribute to incident readiness, investigation, response, and post-incident improvements.
- Mentor security engineers and, as the team grows, build and manage the security team.
- Set technical direction while remaining hands-on with security architecture and engineering.
Job Details
Bengaluru, Karnataka, India
Interview Process
- Introductory Discussion
- Security Deep Dive & Practical Assessment
- Security Deep Dive
- Founder & Culture Alignment
Important Note
ClanX is a recruitment partner, helping AiPrise hire a Security Architect.
📌 Security Architect - Bengaluru
🏢 ClanX
📍 Bengaluru