Application Security Architect

  • Bengaluru
  • Athmâ
About Narayana Health: Narayana Health is headquartered in Bengaluru, India, and operates a network of hospitals in India and Overseas. Our mission is to deliver high-quality, affordable healthcare services to the broader population. Narayana Health Group is India’s leading healthcare provider and one of the largest hospital groups in the country with a network of 21 hospitals, 5 heart centers, and 19 primary care facilities. The NH group treats over 2.6 Million patients every year from over 78 countries covering 30+ medical specialties. Our Centers of Excellence help in treating Adult & Pediatric patients and we have one of the largest transplant centers in India. We have a strong presence across 17 locations in India, and an overseas hospital in the Cayman Islands, USA. Two of our hospitals have international accreditation from the Joint Commission International (JCI) and 19 hospitals have domestic accreditation from the National Accreditation Board for Hospitals (NABH). For more details, please refer to our website at: https://www.narayanahealth.org Athma: Software Development Centre is the technology arm of Narayana Health, a leading healthcare network spanning two countries. We at Athma SDC are engaged in building next-generation products for healthcare with the goal of making healthcare safe and affordable to patients. Our products are handling more than 10M transactions daily and help 7M patients navigate their health journeys. For more details, please refer to our website at - https://athma.health/saas Role: Application Security Architect As a vital member of our team, the Application Security Architect will play a key role in fortifying our organization's application security. You will be responsible for implementing and enhancing security measures, ensuring compliance, and collaborating with cross-functional teams to safeguard our products. Key Responsibilities: Develop and integrate security measures throughout the software development life cycle. Conduct security testing for mobile/web applications. Work with Cyber Security solutions, including Web/Mobile Application Security and API Management. Oversee and ensure compliance with regulatory standards and security best practices. Provide guidance in code reviews, emphasizing secure coding practices. Collaborate with cross-functional teams for security risk assessments, incident response, and remediation efforts. Communicate security concepts effectively to both internal and external stakeholders. Understand and apply knowledge of enterprise architecture, operations, and security controls. Good to have Relevant certifications in application security and cyber security. Experience - 8 to 13 Years Required Skills: Secure SDLC and Threat Modelling: Proven experience in implementing security throughout the software development life cycle. Ability to apply threat modeling methodologies for designing secure applications. Security Testing: Proficiency in conducting security testing for mobile applications and APIs. Experience with SCA, SAST, DAST, and other relevant security testing tools. Cyber Security Solutions: Familiarity with Cyber Security solutions, including Web/Mobile Application Security and API Management. Knowledge of Assessment frameworks and compliance obligations. Compliance and Standards: Experience in overseeing and ensuring compliance with security standards. Implementation and maintenance of security controls to meet compliance requirements. Code Reviews and Communication: Ability to provide guidance in code reviews, emphasizing security best practices. Strong communication skills to articulate complex security concepts to diverse stakeholders. Cross-functional Collaboration: Proven collaboration skills with cross-functional teams for security risk assessments and incident response. Enterprise Knowledge: Strong understanding of enterprise architecture, operations, and security controls.