Upload Button Icon Add office photos
Engaged Employer

i

This company page is being actively managed by Saarthee Team. If you also belong to the team, you can get access from here

Saarthee Verified Tick

Compare button icon Compare button icon Compare
3.5

based on 21 Reviews

filter salaries All Filters

20 Saarthee Jobs

Saarthee - Application Security Architect - Threat Modeling (8-14 yrs)

8-14 years

Saarthee - Application Security Architect - Threat Modeling (8-14 yrs)

Saarthee

posted 16d ago

Job Role Insights

Flexible timing

Job Description

Job Description :


Position Summary :


We are looking for a skilled Application Security Architect to strengthen and advance the security of our applications and products.

This role focuses on designing and implementing robust security solutions for modern application architectures, including web applications, APIs, microservices, and cloud-native platforms.

The ideal candidate will lead efforts in threat modeling, secure API and microservice communication, and embedding security practices throughout the Software Development Lifecycle (SDLC), ensuring end-to-end protection across all stages of development.

Your Role Responsibilities and Duties :


- Design secure API architectures using OAuth 2.0, JWT, encryption, and API gateways.

- Apply OWASP best practices and secure API integrations for REST, GraphQL, Webhooks, etc.

- Secure containerized microservices (Docker, Kubernetes) with Zero Trust principles, mTLS, and secret management.

- Perform threat modeling (e., STRIDE) and risk assessments using tools like OWASP Threat Dragon.

- Identify vulnerabilities and implement security-by-design principles.

- Enforce secure coding standards (OWASP Top 10) and integrate security into CI/CD pipelines (SAST, DAST, SCA).

- Champion security in design, development, and deployment stages.

- Design security for cloud-native applications (AWS, Azure, GCP) using IaC and secure configurations.

- Address cloud threat management, compliance, and container security.

- Implement SSO, OAuth, RBAC, and MFA for sensitive systems and APIs.

- Conduct security assessments on external libraries and enforce SBOM verification and patching.

Required Skills and Qualifications :


- Post graduate or Graduate in computer science, Information Security, or a related field.

- A minimum of 10+ years of experience in application security architecture and secure software development.

- Knowledge of security standards such as OWASP Top 10 (Web, API, CI/CD), NIST CSF 2.0, NIST (SP800-218, SP800-37, SP800-53r5, SP800-161), ISO, SOC 2, GDPR, and PCI DSS, CIS Controls.

- Relevant cybersecurity certifications such as CSSLP, CISSP, CCSP, or AWS Certified Security - Specialty and other similar cloud security certifications are a plus.

- Strong experience in conducting, participating in, or practicing Threat Modelling is preferred.

- Knowledge of Security and Privacy Design Principles is expected.

- Expertise in securing and designing Enterprise REST APIs and Native Cloud applications and must have integrated OAuth 2. 0 in these designs.

- Experience with any of the following standards or frameworks will be checked.

- NIST SP800-218 (Secure Software Development Framework)

- CIS Controls Framework - OWASP SAMM or OWASP ASVS

- Other NIST standards such as SP800-37, SP800-39, SP800-30, or NIST Cybersecurity Framework (CSF 2.0)

- If you have worked with SBOMs (Software Bill of Materials) to identify and mitigate supply chain risks, the role will be highly relevant for you.

What we Offer :


- Bootstrapped and financially stable with high pre-money evaluation.

- Above industry renumerations.

- Additional compensation tied to Renewal and Pilot Project Execution.

- Additional lucrative business development compensation.

- Firm building opportunities that offer stage for holistic professional development, growth, and branding.

- Empathetic, excellence and result driven organization.

- Believes in mentoring and growing a team with constant emphasis on learning


Functional Areas: Other

Read full job description

Saarthee Interview Questions & Tips

Prepare for Saarthee roles with real interview advice

What people at Saarthee are saying

What Saarthee employees are saying about work life

based on 21 employees
94%
100%
100%
Flexible timing
Monday to Friday
No travel
View more insights

Saarthee Benefits

Health Insurance
Work From Home
Cafeteria
Team Outings
Soft Skill Training
Job Training +6 more
View more benefits

Compare Saarthee with

KPMG India

3.5
Compare

PwC

3.4
Compare

Deloitte

3.8
Compare

Ernst & Young

3.5
Compare

Grant Thornton

3.7
Compare

BDO

3.3
Compare

RSM India

3.4
Compare

Crowe Horwath

4.1
Compare

Baker Tilly DHC

2.5
Compare

Adsum Advisory Services

4.5
Compare

Azista Industries

3.5
Compare

E Merge Tech Global Services

3.2
Compare

Manikaran Analytics

2.6
Compare

ValueAdd Research and Analytics Solutions

4.3
Compare

Reliable Analytical Laboratories

3.6
Compare

Innovatics

4.6
Compare

Panexcell Clinical Lab

4.1
Compare

AICRA

4.0
Compare

BDS Services

3.1
Compare

Corporate Solutions Redefined

4.2
Compare

Similar Jobs for you

Application Security Architect at Cigres Technologies Private Limited

10-15 Yrs

₹ 24-30 LPA

Senior Application Security Engineer at Avalara Technologies Pvt ltd

8-13 Yrs

₹ 35-48 LPA

Security Architect at T D Newton

8-15 Yrs

₹ 15-35 LPA

Modelling Engineer at Coders Brain Technology Private Limited

5-8 Yrs

₹ 18-28 LPA

Cyber Security Architect at Dextris Infoservices

10-15 Yrs

₹ 20-32 LPA

Cyber Security at One97 Communications Limited

7-10 Yrs

₹ 19-30 LPA

Engineer at NetEnrich Technologies Pvt Ltd

3-8 Yrs

₹ 5-20 LPA

Senior Threat Researcher at DSM

5-8 Yrs

₹ 15-20 LPA

Application Security Engineer at Stryde Consulting

8-12 Yrs

₹ 20-26 LPA

Cloud Security Specialist at eInfochips (An Arrow Company)

5-8 Yrs

₹ 10-20 LPA

write
Share an Interview