Own end-to-end security architecture across cloud, applications, and APIs. This is a hands-on builder role focused on securing production systems, driving compliance, and partnering closely with engineering, customers, auditors, and regulators.
Company Details
AiPrise is an AI-powered global compliance platform helping fintechs and businesses with KYB, KYC, fraud prevention, risk scoring, and compliance automation across 200+ countries. Website: aiprise.com
Requirements
-
8+ years of experience in security engineering, security architecture, or a closely related field.
-
Proven experience securing production systems at scale.
-
Strong hands-on understanding of application code, cloud infrastructure, and API security.
-
Strong cloud security expertise across IAM, network segmentation, secrets and key management, containers, workloads, and infrastructure-as-code.
-
Deep knowledge of application and API security, including access control, injection, SSRF, authentication, authorization, and secure design.
-
Experience with threat modeling, security design reviews, secure SDLC, CI/CD security, dependency security, and container security.
-
Strong understanding of SOC 2, ISO/IEC 27001, GDPR, and related security and privacy requirements.
-
Experience leading certification, enterprise customer, and regulatory audits and driving findings to closure.
-
Strong stakeholder and customer-facing communication skills.
-
Strong risk judgment with the ability to balance security, business, and delivery needs.
-
Experience with personal, identity, or biometric data is preferred.
-
Experience in fintech, regtech, identity verification, or another regulated domain is preferred.
-
Penetration testing, red teaming, vulnerability research, or DevSecOps experience is preferred.
-
CISSP, CCSP, OSCP, CIPP, CIPT, or similar certifications are valued.
-
Experience mentoring or leading engineers is preferred.
Responsibilities
-
Own and evolve security architecture across cloud infrastructure, applications, and APIs.
-
Partner directly with engineers to identify, prioritize, remediate, and validate security issues.
-
Perform threat modeling and security design reviews for new services and major changes.
-
Embed security into engineering through secure coding standards, code review, CI/CD controls, dependency security, and container security.
-
Define and maintain security standards, reference architectures, and hardening baselines.
-
Lead penetration testing, vulnerability management, remediation tracking, and closure of security findings.
-
Translate regulatory and industry requirements into practical technical and organizational controls.
-
Own technical audit and assessment activities, including evidence, control mapping, and remediation.
-
Support enterprise customer security reviews, questionnaires, due diligence, and trust discussions.
-
Partner with privacy and data-protection teams on GDPR and other applicable requirements.
-
Help protect personal and biometric data through appropriate security controls.
-
Contribute to incident readiness, investigation, response, and post-incident improvements.
-
Mentor security engineers and, as the team grows, build and manage the security team.
-
Set technical direction while remaining hands-on with security architecture and engineering.
Job Details
Bengaluru, Karnataka, India
Interview Process
-
Introductory Discussion
-
Security Deep Dive & Practical Assessment
-
Security Deep Dive
-
Founder & Culture Alignment
Important Note
ClanX is a recruitment partner, helping AiPrise hire a Security Architect.