Application Security Architect
Ubicación Bangalore, State of Karnataka, India Fecha de publicación 16 enero 2026 ID de la oferta 21145- Own delivery of AppSec outcomes for critical applications and platforms
- Lead hands-on threat modelling, architecture reviews, and remediation execution
- Set and enforce security release gates and acceptance criteria
- Actively reduce critical and high-risk vulnerabilities through Deep Code reviews, root cause analysis, direct remediation guidance
- Ensure development teams understand the importance of application security principles
- Continuously liaise with various product teams to analyse application vulnerabilities
- Create and guide a team of local application security subject matter experts
- Serve as final technical authority for AppSec decisions on high-stakes initiatives
- Unblock engineering teams and resolve security-delivery conflicts
- Report clear, actionable risk status to senior leadership
- Develop organisational processes and methods for security, privacy and related assets
- Continuously evaluate vulnerabilities and risks in software platforms, interfaces and applications
- Perform SW Threat modelling, Security Risk Assessment across various technology stacks
- Create product security requirements and concepts; promote ‘secure by design’ approach
- Triage and remediation planning for discovered vulnerabilities aligned to program deadlines
- Engage with internal and external partners to ensure alignment to commitments
- Mentor SW teams on secure coding, best practices, industry standards, tools, and processes
- Seek to build-in security during development of software systems and applications
- Ensure that organisational processes stay current; contribute to the Quality Management System
- Qualification: B.E / B.Tech / M.E / M.Tech (Computer Science or related fields)
- 12–15+ years in software engineering, application security, or architecture experience
- Proven history of executing and delivering AppSec improvements at scale
- Deep hands-on expertise in: Secure SDLC and application architecture, OWASP Top 10, API Security Top 10, Threat modelling (STRIDE or equivalent)
- Strong experience securing Modern architectures (cloud, APIs, microservices, containers, Kubernetes) & Legacy enterprise systems (monoliths, SOA, on-prem)
- Strong understanding of Authentication & authorization (OAuth2, OIDC, SAML), Cryptography, secrets management, secure configuration
- Deep experience integrating security into CI/CD pipelines
- Experience with ISO 27001/27002 and NIST Cybersecurity Framework
- Experience in identifying potential attacks and threat vectors and offer mitigation
- Experience with vulnerability management tools like Blackduck, Trivy, Prisma cloud, Tenable etc.
- Proficient in Security assessments, Authentication and access control
- Understanding of penetration testing, Applied cryptography and security protocols preferable
- Experience with AppSec practices for Infrastructure, connected devices etc.
- Good understanding of cryptographic primitives and their underlying principles preferable
- Good understanding of networking protocols, such as TCP/IP and UDP.
- Good understanding of Content Delivery Networks and their integration into applications
- Active in the security community. Regularly attends meetups or conferences
- Working understanding of Agile Development processes
- Lead without authority in a matrix organization
- Excellent communication skills – verbal and written
- Ability to translate complex ideas into simple solutions to implement
- Hybrid working model.
- Family Mediclaim benefits including parents & Term life insurance Cover.
- Wide portfolio of training opportunities including but not limited to Conferences, Workshops, Education reimbursement & Online learning.
- A wide range of Career Path to explore based on Individual strengths and aspirations.
- Quarterly and Annual awards for outstanding individuals and Quality of Life Improvement Program
Conoce METTLER TOLEDO
Echa un vistazo a “un día en METTLER TOLEDO”. No importa dónde trabajes en esta empresa, el ambiente de equipo se manifiesta. METTLER TOLEDO puede ser precisamente el lugar al que perteneces.
-
- Lead- Software Test Bangalore, India 01/14/2026
- SAP Professional Bangalore, India 12/22/2025
- Senior Engineering Manager Bangalore, India 12/16/2025
- Software Engineer Senior-Test Bangalore, India 07/01/2025
- Technical Writer Professional Bangalore, India 06/27/2025
-
Saved Jobs
Conectémonos
Únete a nuestra Comunidad de Talentos y recibe actualizaciones personalizadas sobre nuestras oportunidades.
Somos una empresa que ofrece igualdad de oportunidades y valoramos la diversidad en nuestra empresa. Damos consideración para el empleo sin distinción de raza, color, religión, sexo, edad, origen nacional, discapacidad, orientación sexual, identidad de género, información genética, estado de veterano protegido o cualquier otra clasificación protegida. Conoce Tus derechos de EEO como solicitante según la ley.
METTLER TOLEDO se esfuerza por hacer que www.mt.com sea accesible para todos y cada uno de los usuarios. Si deseas ponerse en contacto con nosotros en relación con la accesibilidad de nuestro sitio web o necesitas ayuda para completar el proceso de solicitud, ponte en contacto con nosotros en esta dirección de correo electrónico EEO@mt.com.