Skip to Main Content

Job Title


Product Security Architect


Company : HCLSoftware


Location : Pune, Maharashtra


Created : 2025-06-12


Job Type : Full Time


Job Description

Job Summary:We are looking for a Product Security Architect/Engineer with 5-7 years of experience to lead the development and implementation of security architecture across our product suite. You will work closely with engineering, development, and operations teams to ensure that our products are designed with security in mind, meet industry standards, and address potential vulnerabilities. Key Responsibilities: Architectural Design:Develop and document comprehensive security architecture for new and existing products. Ensure alignment with industry best practices and compliance requirements. Threat Modeling:Perform threat modeling and risk assessments to identify potential security threats and vulnerabilities. Develop mitigation strategies and security controls. Security Integration:Collaborate with development teams to integrate security into the software development lifecycle (SDLC). Advise on secure coding practices and review security aspects of design and implementation. Security Policies:Create and maintain security policies, standards, and guidelines to ensure consistent security practices across products and teams. Vulnerability Management:Conduct regular security assessments, including code reviews and vulnerability scans. Coordinate with the security engineering team to address and immediately identify vulnerabilities. Incident Response:Support incident response efforts by providing expertise in analyzing security incidents, determining impact, and recommending remediation actions. Collaboration:Work closely with cross-functional teams including product management, engineering, and operations to ensure security requirements are met and risks are managed. Documentation:Develop and maintain detailed documentation of security architecture, threat models, and security controls. Produce reports for internal and external stakeholders as needed. Technical Skills: Proficiency in security testing tools (e.g., Burp Suite, OWASP ZAP). Knowledge of common security frameworks and standards. Experience with secure coding practices and code review. Soft Skills: Strong analytical and problem-solving abilities. Excellent communication and collaboration skills. Ability to work independently and manage multiple tasks simultaneously.