Ubique Systems

TRPD-26-05054

Application Security Architect / Lead (DevSecOps, Supply Chain Security)

Senior Application Security professional (10–15+ years) to own application security architecture and secure SDLC practices. The role focuses on architect/design reviews and implementing/testing security controls using SAST, DAST and SCA, with strong emphasis on software supply chain security (open-source and third-party components). You will integrate security into DevSecOps and CI/CD pipelines, drive vulnerability remediation across teams, and manage 1–2 AppSec workstreams; exposure to AI/ML model scanning and security is a plus.

Position summary

Location
India
Workplace
Hybrid
Employment
Full Time
Experience
Minimum 10 years and Maximum 16 years
Apply now

Role overview

Why This Role Matters.

Senior Application Security professional (10–15+ years) to own application security architecture and secure SDLC practices. The role focuses on architect/design reviews and implementing/testing security controls using SAST, DAST and SCA, with strong emphasis on software supply chain security (open-source and third-party components). You will integrate security into DevSecOps and CI/CD pipelines, drive vulnerability remediation across teams, and manage 1–2 AppSec workstreams; exposure to AI/ML model scanning and security is a plus.

Your Impact

Deliver Enterprise Value

Help organisations solve complex business problems through modern technology, consulting expertise and measurable outcomes.

Collaboration

Work Across Teams

Collaborate with consultants, architects, engineers and client stakeholders throughout the project lifecycle.

Growth

Learn Continuously

Gain exposure to enterprise technologies, certifications, mentoring and real-world project experience.

Career Path

Grow With Ubique

Build a long-term consulting career with opportunities to take on greater responsibility and leadership over time.

Responsibilities

What You'll Be Doing.

Every role at Ubique contributes directly to solving meaningful business challenges for our clients.

01

Strong engineering background with 10–15+ years of experience in Application Security and secure SDLC.

02

Expertise in Application Security Architecture, Architect/Design Reviews, SAST, DAST, and Software Composition Analysis (SCA).

03

Strong understanding of Software Supply Chain Security, open-source dependencies, third-party components, and associated security risks.

04

Experience integrating security controls across the SDLC, DevSecOps, and CI/CD pipelines, with exposure to AI/ML model scanning and security.

05

Ability to manage 1–2 application security projects/workstreams, drive vulnerability remediation, and collaborate with Engineering, Development, DevOps, Architecture, and Security teams.

Technology stack

Tools & Technologies.

The platforms and technologies you'll use to build modern, enterprise-grade solutions.

01

Application Security

02

AppSec

03

Secure SDLC

04

Security Architecture

05

Design Review

06

Threat Modeling

07

SAST

08

DAST

09

SCA

10

Software Supply Chain Security

11

Open Source Security

12

Third-party Risk

13

SBOM

14

DevSecOps

15

CI/CD

16

Pipeline Security

17

Vulnerability Management

18

Remediation

19

AI/ML Security

20

Model Scanning

Requirements

Skills & Experience.

We value curiosity, collaboration and continuous learning. If you don't meet every requirement but believe you can make an impact, we'd still love to hear from you.

Essential

Required Qualifications

10–15+ years in Application Security and secure SDLC

Application Security Architecture

Architecture/Design Reviews

SAST (Static Application Security Testing)

DAST (Dynamic Application Security Testing)

SCA (Software Composition Analysis)

Software Supply Chain Security

Open-source dependency and third-party component risk management

Integrating security controls across SDLC

DevSecOps practices

CI/CD pipeline security integration

Vulnerability remediation management and coordination

Cross-functional collaboration with Engineering/Dev/DevOps/Architecture/Security

Managing 1–2 application security projects/workstreams

Preferred

Nice to Have

AI/ML model scanning and security exposure

What you'll gain

More Than Just A Job.

We're committed to helping every team member grow professionally, personally and technically while working on meaningful projects.

Global Exposure

Collaborate with international clients and multicultural teams on enterprise programmes.

Continuous Learning

Expand your expertise through mentoring, certifications and hands-on project experience.

Career Growth

Take ownership, develop leadership skills and grow your consulting career over time.

Flexible Working

Hybrid and remote collaboration designed around trust and delivering exceptional outcomes.

People First

Join a supportive culture where collaboration, respect and long-term relationships come first.

Enterprise Projects

Work on meaningful technology initiatives for leading organisations across industries.

Apply

Apply for Application Security Architect / Lead (DevSecOps, Supply Chain Security)

One page, about two minutes. We only ask for what we actually need to have a first conversation.

Your CV

Optional. A line or two is plenty.