Overview
Senior Enterprise Security Architect (senior individual contributor) responsible for defining and driving enterprise security architecture strategy across AlphaSense corporate technology.
What you'll do
- Own and maintain the enterprise security architecture across Zero Trust, identity, network, endpoint, SaaS, infrastructure, mobile, and OT.
- Author and govern security architecture principles, reference designs, and technical standards.
- Identify architectural gaps and emerging threat vectors and prescribe remediation roadmaps.
- Provide architecture leadership for Zero Trust maturity, identity consolidation, SaaS governance, and device trust programs.
- Design Zero Trust/Device Trust architecture including network segmentation, ZTNA policy design, and enforcement.
- Architect identity and access across Okta, federation (SAML/OIDC), SCIM, MFA, PAM, and lifecycle governance.
- Establish SaaS/cloud security controls including vendor risk tiering, CASB/SSPM, and ongoing posture monitoring.
What you'll need
- 8+ years of information security experience with at least 4 years in security architecture, security engineering lead, or equivalent senior role.
- Expertise designing and implementing Zero Trust architectures including ZTNA, identity-aware access, and microsegmentation.
- Deep knowledge of identity and access management (Okta or equivalent, SAML, OIDC, SCIM, MFA, PAM, certificate-based authentication).
- Strong endpoint security architecture across macOS and Windows, including EDR (CrowdStrike Falcon) and MDM (Kandji/Intune).
- Experience architecting SaaS security programs including vendor risk frameworks and CASB/SSPM tooling with OAuth/API controls.
- Solid understanding of network security architecture (firewalls, SD-WAN, 802.1X, DNS security, segmentation).
- Proven ability to produce security architecture documentation including reference architectures, design patterns, and ADRs.
Nice to have
- Professional certifications such as CISSP, SABSA, CCSP, or equivalent.
- Familiarity with Cloudflare Access/WARP, Meraki, CrowdStrike Falcon, Kandji, Qualys VMDR, or Drata/GRC tooling.
- Experience designing AI governance and shadow SaaS controls for enterprise environments.
- Background supporting compliance frameworks (SOC 2, ISO 27001, FedRAMP).
Details
- Location: Pune.
- Reports to the VP of Secure IT.
Read the full description and apply on the company’s own careers page.