TRPD-26-05054
Application Security Architect / Lead (DevSecOps, Supply Chain Security)
Senior Application Security professional (10–15+ years) to own application security architecture and secure SDLC practices. The role focuses on architect/design reviews and implementing/testing security controls using SAST, DAST and SCA, with strong emphasis on software supply chain security (open-source and third-party components). You will integrate security into DevSecOps and CI/CD pipelines, drive vulnerability remediation across teams, and manage 1–2 AppSec workstreams; exposure to AI/ML model scanning and security is a plus.
Position summary
- Location
- India
- Workplace
- Hybrid
- Employment
- Full Time
- Experience
- Minimum 10 years and Maximum 16 years
Role overview
Why This Role Matters.
Senior Application Security professional (10–15+ years) to own application security architecture and secure SDLC practices. The role focuses on architect/design reviews and implementing/testing security controls using SAST, DAST and SCA, with strong emphasis on software supply chain security (open-source and third-party components). You will integrate security into DevSecOps and CI/CD pipelines, drive vulnerability remediation across teams, and manage 1–2 AppSec workstreams; exposure to AI/ML model scanning and security is a plus.
Your Impact
Deliver Enterprise Value
Help organisations solve complex business problems through modern technology, consulting expertise and measurable outcomes.
Collaboration
Work Across Teams
Collaborate with consultants, architects, engineers and client stakeholders throughout the project lifecycle.
Growth
Learn Continuously
Gain exposure to enterprise technologies, certifications, mentoring and real-world project experience.
Career Path
Grow With Ubique
Build a long-term consulting career with opportunities to take on greater responsibility and leadership over time.
Responsibilities
What You'll Be Doing.
Every role at Ubique contributes directly to solving meaningful business challenges for our clients.
Expertise in Application Security Architecture, Architect/Design Reviews, SAST, DAST, and Software Composition Analysis (SCA).
Strong understanding of Software Supply Chain Security, open-source dependencies, third-party components, and associated security risks.
Experience integrating security controls across the SDLC, DevSecOps, and CI/CD pipelines, with exposure to AI/ML model scanning and security.
Ability to manage 1–2 application security projects/workstreams, drive vulnerability remediation, and collaborate with Engineering, Development, DevOps, Architecture, and Security teams.
Technology stack
Tools & Technologies.
The platforms and technologies you'll use to build modern, enterprise-grade solutions.
Application Security
AppSec
Secure SDLC
Security Architecture
Design Review
Threat Modeling
SAST
DAST
SCA
Software Supply Chain Security
Open Source Security
Third-party Risk
SBOM
DevSecOps
CI/CD
Pipeline Security
Vulnerability Management
Remediation
AI/ML Security
Model Scanning
Requirements
Skills & Experience.
We value curiosity, collaboration and continuous learning. If you don't meet every requirement but believe you can make an impact, we'd still love to hear from you.
Essential
Required Qualifications
10–15+ years in Application Security and secure SDLC
Application Security Architecture
Architecture/Design Reviews
SAST (Static Application Security Testing)
DAST (Dynamic Application Security Testing)
SCA (Software Composition Analysis)
Software Supply Chain Security
Open-source dependency and third-party component risk management
Integrating security controls across SDLC
DevSecOps practices
CI/CD pipeline security integration
Vulnerability remediation management and coordination
Cross-functional collaboration with Engineering/Dev/DevOps/Architecture/Security
Managing 1–2 application security projects/workstreams
Preferred
Nice to Have
AI/ML model scanning and security exposure
What you'll gain
More Than Just A Job.
We're committed to helping every team member grow professionally, personally and technically while working on meaningful projects.
Global Exposure
Collaborate with international clients and multicultural teams on enterprise programmes.
Continuous Learning
Expand your expertise through mentoring, certifications and hands-on project experience.
Career Growth
Take ownership, develop leadership skills and grow your consulting career over time.
Flexible Working
Hybrid and remote collaboration designed around trust and delivering exceptional outcomes.
People First
Join a supportive culture where collaboration, respect and long-term relationships come first.
Enterprise Projects
Work on meaningful technology initiatives for leading organisations across industries.
Apply
Apply for Application Security Architect / Lead (DevSecOps, Supply Chain Security)
One page, about two minutes. We only ask for what we actually need to have a first conversation.