Job Summary
HCLTech is seeking a highly experienced Principal Security Architect to define, govern, and implement the security architecture strategy across its Physical AI portfolio comprising:
- VisionX (Physical AI Intelligence Platform)
- SmartTwin (Digital Twin & World Model Platform)
- TraceX (Asset & Workflow Intelligence Platform)
- iEdgeX (Edge Autonomy & Operations Platform)
This role will serve as the central security authority responsible for ensuring that all platforms, AI models, edge infrastructure, digital twins, data pipelines, APIs, agents, and operational workflows are secure by design and compliant with enterprise, regulatory, and
Key Responsibilities
Security Architecture Leadership Define and maintain the security architecture roadmap across: VisionX SmartTwin TraceX iEdgeX Establish: Secure-by-design principles Security reference architectures Security design reviews Platform security standards Act as the final security approver for major architectural decisions. AI & Agentic Security Define security controls for: LLMs VLMs Agentic AI Multi-agent systems Knowledge Graphs RAG systems AI copilots Establish protections against: Prompt injection Data poisoning Model theft Model tampering Hallucination abuse Agent exploitation Unauthorized tool execution Edge Security Define security architecture for: Jetson devices Edge gateways Industrial PCs Distributed AI deployments Own: Secure boot TPM integration PKI Device certificates Edge hardening OTA security Fleet security governance Application & Platform Security Lead security architecture for: APIs Microservices Event-driven systems Kubernetes platforms Cloud-native services Establish: Secure coding standards Threat modeling Security testing frameworks Runtime protection strategies Data Security & Governance Define controls for: Video data AI training data Digital Twin data Asset intelligence data Operational data Own: Encryption Data masking Tokenization Data retention policies Data residency requirements Identity & Access Management Define: RBAC ABAC Zero Trust Architecture Identity Federation SSO Privileged Access Management Ensure secure access across: Customers Partners Operators Administrators AI Agents Security Governance & Compliance Lead compliance alignment with: ISO 27001 NIST Cybersecurity Framework SOC 2 PCI DSS (Banking) RBI Guidelines GDPR Industry-specific security standards Establish: Security r
Skill Requirements
Enterprise Security Architecture Strong expertise in: Security Architecture Frameworks Threat Modeling Secure Design Reviews Risk Assessment Security Governance Cloud Security Hands-on experience with: Azure Security AWS Security GCP Security Technologies: IAM Key Vault KMS Secrets Management Cloud Security Posture Management Kubernetes & Container Security Strong experience with: Kubernetes Security OpenShift Security Container Security Service Mesh Security Tools: Aqua Prisma Cloud Wiz Sysdig Falco AI Security Experience securing: LLM Applications Agentic AI Systems RAG Systems AI APIs Knowledge Graphs Understanding of: OWASP Top 10 for LLM Applications Prompt Injection Data Leakage Model Abuse AI Governance Edge Security Strong expertise in: Secure Boot TPM Device Identity PKI Firmware Security Edge Hardening OTA Security Experience with: NVIDIA Jetson Industrial Edge Devices IoT Security Application Security Experience with: Secure SDLC OWASP Top 10 API Security SAST DAST Dependency Management Data Security Strong understanding of: Encryption Data Loss Prevention Data Classification Privacy Controls Data Governance Identity & Access Management Experience with: RBAC ABAC SSO OAuth OpenID Connect Active Directory Identity Federation Preferred Skills Physical AI Security Experience with: Vision AI Platforms Digital Twin Platforms Video Analytics Platforms Industrial AI Systems NVIDIA Ecosystem Exposure to: DeepStream TensorRT Omniverse Isaac Sim NIM DevSecOps Experience with: GitHub Advanced Security Azure DevOps Security CI/CD S