Senior Enterprise Security Architect
On-siteDelhi, Delhi, India
Job Summary
Define and own the enterprise security architecture across Zero Trust, identity, network, endpoint, SaaS, infrastructure, mobile, and operational technology domains. Author and govern security architecture principles, reference designs, and technical standards adopted across the organization. Drive alignment across Security Operations, Corporate Technology, Information Engineering, and Integrated IT teams through technical credibility and structured decision-making. Identify architectural gaps and emerging threat vectors before they become incidents, and prescribe remediation roadmaps. Provide architecture leadership for strategic security initiatives including Zero Trust maturity, identity consolidation, SaaS governance, and device trust. Maintain living enterprise security architecture documents and conduct security architecture reviews for new technology programs and vendor onboarding. Produce architecture decision records and design patterns to reduce review cycle time and engineering rework.
Required Qualifications
- 8+ years of experience in information security
- at least 4 years in a security architecture, security engineering lead, or equivalent senior technical role
- Demonstrated expertise designing and implementing Zero Trust architectures in enterprise environments, including ZTNA, identity-aware access, and microsegmentation
- Deep knowledge of identity and access management — Okta (or equivalent), SAML, OIDC, SCIM, MFA, PAM, and certificate-based authentication
- Strong endpoint security architecture experience across macOS and Windows, including EDR (CrowdStrike preferred), MDM (Kandji/Intune), and patch management
- Experience architecting SaaS security programs including vendor risk frameworks, CASB/SSPM tooling, and OAuth/API integration controls
- Solid understanding of network security architecture: firewalls, SD-WAN, 802.1X, DNS security, and network segmentation principles
- Familiarity with OT/IoT security architecture concepts and the challenges of securing non-traditional network-connected assets
- Proven ability to produce high-quality security architecture documentation including reference architectures, design patterns, and ADRs
- Strong communicator capable of presenting complex security topics to both technical peers and senior non-technical stakeholders
Desired Qualifications
- Professional certifications: CISSP, SABSA, CCSP, or equivalent architecture/security credentials
- Experience operating in a post-M&A environment with multi-tenant identity and infrastructure consolidation challenges
- Familiarity with Cloudflare Access/WARP, Meraki, CrowdStrike Falcon, Kandji, Qualys VMDR, or Drata/GRC tooling
- Experience designing AI governance and shadow SaaS controls for enterprise environments
- Background working in a regulated industry or supporting compliance frameworks (SOC 2, ISO 27001, FedRAMP)
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.