← Back to jobs

Architect?VAPT

Persistent Systems · Security DU1 · Lead

Apply ↗
Location
Pune, Maharashtra, India
Employment type
Full-time
Posted
08-Jul-2026

Skills

["Vulnerability Management""Penetration Testing""Threat Modelling"]

Technology stack

{}

Description

About Persistent We are an AI-led, platform-driven Digital Engineering and Enterprise Modernization partner, combining deep technical expertise and industry experience to help our clients anticipate what’s next. Our offerings and proven solutions create a unique competitive advantage for our clients by giving them the power to see beyond and rise above. We work with many industry-leading organizations across the world, including 20 Fortune 50 companies and 4 of the 5 top banks in both the US and India, and numerous innovators across the healthcare ecosystem. Our disruptor’s mindset, commitment to client success, and agility to thrive in the dynamic environment have enabled us to sustain our growth momentum. Persistent has been recognised across top industry platforms for innovation, leadership, and inclusion. We reported $1,654.4M FY26 revenue with 17.4% Y-o-Y growth. We have delivered 24 sequential quarters of growth with $436.0M in Q4 FY26 revenue, up 3.2% Q-o-Q and 16.2% Y-o-Y growth. Our 27,500+ global team members, located in 18 countries, have been instrumental in helping market leaders transform their industries. About Position: We are seeking a highly experienced Security Architect / SME specializing in Application Security (AppSec), Application Penetration Testing (App PT), Threat Modeling, and Risk-Based Vulnerability Management (RBVM) to drive security transformation initiatives within our Security Practice. The ideal candidate will lead application security architecture, secure development practices, threat modeling programs, vulnerability management initiatives, and security assessments across enterprise environments. This role requires strong expertise in designing secure application ecosystems, integrating security into SDLC and DevSecOps processes, defining security standards, and leading security transformation programs for customers.The candidate will work closely with business stakeholders, development teams, architects, application owners, and security leaders to deliver scalable, compliant, and resilient application security solutions. Role: Security Architect / SME Location: Pune Experience: 12 to 15 Years Job Type: Full Time Employment What You'll Do: Design end-to-end Application Security architectures aligned with customer requirements and security transformation objectives. Define and review High-Level Designs (HLDs) and Low-Level Designs (LLDs) for application security implementations. Architect secure application development and DevSecOps frameworks. Develop application security strategies, standards, and governance models. Lead solution design reviews and architecture governance discussions. Lead enterprise Application Security (AppSec) programs across modern application landscapes. Implement and optimize secure SDLC practices throughout the software development lifecycle. Design and govern application security testing frameworks utilizing SAST DAST IAST SCA Establish vulnerability assessment methodologies and remediation workflows. Support API security testing and validation initiatives. Define security baselines and secure coding practices for development teams. Conduct and facilitate threat modeling exercises using STRIDE PASTA Attack Trees Threat Scenario Analysis Perform current-state security assessments and identify application security risks. Define mitigation strategies and security architecture recommendations. Support security reviews during application design and development phases. Create risk-based remediation roadmaps aligned with business priorities. Implement and manage Risk-Based Vulnerability Management programs. Develop vulnerability prioritization frameworks based on business impact and exploitability. Perform application vulnerability assessments and risk analysis. Provide remediation guidance to development and engineering teams. Track vulnerability trends and drive continuous improvement initiatives. Create executive and operational application security dashboards and reporting frameworks. Develop KPIs, KRIs, and application security scorecards. Monitor application security posture and track remediation effectiveness. Ensure compliance with enterprise security requirements and industry standards. Support audit readiness and compliance reporting activities. Conduct due diligence assessments to evaluate customer environments and define transformation roadmaps. Lead application security health checks aligned with OEM recommendations and industry best practices. Act as an L3 SME for complex security incidents, escalations, and architecture reviews. Support presales activities, RFP responses, technical workshops, and Proof-of-Concept (PoC) initiatives. Mentor security engineers, architects, and consultants. Contribute to capability development, knowledge management, and security innovation initiatives. Expertise You'll Bring: 12–15 years of experience in Cybersecurity, Application Security, Security Architecture, or Security Consulting. Deep expertise in Application Security, Secure SDLC, and DevSecOps practices. Proven experience conducting enterprise-scale Application Penetration Testing programs. Strong experience leading Threat Modeling initiatives using STRIDE, PASTA, and similar frameworks. Expertise in Risk-Based Vulnerability Management and remediation planning. Experience integrating application security controls into CI/CD and DevOps pipelines. Strong understanding of application security architecture and secure coding methodologies. Experience conducting security maturity assessments and transformation programs. Strong stakeholder management and customer-facing consulting experience. Excellent analytical, troubleshooting, and decision-making capabilities. Ability to engage effectively with executive leadership, architects, developers, and security teams. Benefits: Competitive salary and benefits package Culture focused on talent development with quarterly growth opportunities and company-sponsored higher education and certifications Opportunity to work with cutting-edge technologies Employee engagement initiatives such as project parties, flexible work hours, and Long Service awards Annual health check-ups Insurance coverage: group term life, personal accident, and Mediclaim hospitalisation for self, spouse, two children, and parents Values-Driven, People-Centric & Inclusive Work Environment: Persistent is dedicated to fostering diversity and inclusion in the workplace. We invite applications from all qualified individuals, including those with disabilities, and regardless of gender or gender preference. We welcome diverse candidates from all backgrounds. We support hybrid work and flexible hours to fit diverse lifestyles. Our office is accessibility-friendly, with ergonomic setups and assistive technologies to support employees with physical disabilities. If you are a person with disabilities and have specific requirements, please inform us during the application process or at any time during your employment. Let’s unleash your full potential at Persistent - persistent.com/careers “Persistent is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind.”

Requirements

["Vulnerability Management", "Penetration Testing", "Threat Modelling"]

Roles & responsibilities

[]

About

All jobs →