Security Architect

Tech Mahindra

Bengaluru, Karnataka, India

Type: Full-Time Arrangement: On-Site
8 - 12 Yrs1500000 - 3000000(Annually)

Posted: 25 Sept 2026

Job Description

We are seeking a seasoned Security Architect with deep expertise in cloud security and enterprise governance to lead architectural risk assessments and guide secure design practices across complex cloud-first, hybrid, and legacy environments. This role emphasizes senior-level architectural judgment, strategic oversight, and governance leadership rather than hands-on implementation or DevSecOps execution. The ideal candidate will provide authoritative security direction, define enterprise security guardrails, and represent the security function effectively in cross-functional governance forums.

Role Summary
The Security Architect will conduct in-depth security architecture reviews, evaluating proposed solutions to identify unsafe, high-risk, or non-compliant design patterns. This role involves defining secure design principles aligned with enterprise risk appetite and ensuring that architectural decisions meet required standards for confidentiality, integrity, availability, and resilience. The architect will guide teams in applying least-privilege and least-functionality principles, particularly within identity and access management models.

Core Responsibilities
The role includes assessing cloud-hosted, on-premises, and multi-tier architectures to ensure proper segmentation, secure identity models, adequate logging, and layered control mechanisms. The architect will perform structured risk assessments, clearly articulating acceptable versus unacceptable risk levels, and recommending secure architectural alternatives. Representing the Security Architecture team in governance boards, architecture review committees, and solution approval processes is a key aspect of this position. The architect will ensure ongoing alignment with leading industry frameworks such as NIST CSF and the ISO 27000 series, maintaining consistency with enterprise-wide security guardrails.

Required Experience
Candidates must bring at least 8+ years of enterprise security experience, with a strong background in conducting security architecture reviews. Expertise in cloud security across AWS and/or Azure is essential, along with experience enforcing security controls and policies in large-scale enterprise environments. Familiarity with governance processes, architectural review boards, and secure design assessments is required. Experience with AI security and evaluating risks associated with generative AI and LLM technologies is an added advantage. Strong communication skills both written and verbal are critical.

Required Certifications
At least one of the following is required: CISSP (strongly preferred), CCSP, CISM, AWS Security Specialty, Azure Security Engineer, or an equivalent senior-level cloud security certification.

Required Qualifications

  • 8+ years enterprise security experience
  • Cloud security expertise (AWS/Azure)
  • Security architecture reviews
  • Governance & architectural review boards
  • CISSP, CCSP, CISM, or equivalent cloud security certification
  • NIST CSF & ISO 27000 framework knowledge
  • IAM & least-privilege principles
  • Structured risk assessment methodologies

Preferred Qualifications

  • AI security & Generative AI/LLM risk evaluation
  • Hybrid & legacy environment architecture
  • Cross-functional governance representation
  • Advanced strategic planning & communication skills

Skills Required

Cloud SecurityAWSAzureEnterprise ArchitectureRisk AssessmentIAMNIST CSFISO 27000GovernanceCISSPAI SecurityLLM Risk EvaluationStrategic PlanningCommunicationPolicy Development