1,188,603open jobs
66,647companies
211,778added this week
Browse all
Salary
$160k – $195k per year
Location
In office (Jersey City)
Seniority
Architect · 8+ years exp
Visa
H-1B filings in 12 months: 281 · for this role: 9 · green card filings: 17

Confirmed on the employer's own hiring board on Oct 4, 2026. First seen by Alion on Oct 3, 2026. EXL scores B on the Alion truth index.

Overview
Company
Impact
Profile match

EXL

EXL, legally ExlService Holdings, is a data analytics, AI and digital operations company headquartered in New York that runs outsourced business processes and builds data and AI solutions for insurers, healthcare organisations, banks, media and retail companies. Founded in 1999 and listed on Nasdaq, it has more than 60,000 employees across six continents, with large delivery centers in Noida, Gurgaon, Pune, Bengaluru and Chennai and a newer AI hub in Dublin. It hires data scientists and data engineers, GenAI and MLOps engineers, analytics managers, solution consultants and client partners, plus talent acquisition, finance and medical coding staff.

Principle Duties Developer enablement & secure coding support

  • Serve as the security architecture authority within the architecture organization, partnering with product architects, principal engineers, cloud partners (AWS, Azure, GCP), and business leaders to embed secure-by-design principles into hardware appliances, multi-tenant SaaS platforms, and globally distributed cloud infrastructure.
  • Coach and support developers in writing secure code, including secure patterns, common vulnerability classes, and secure use of frameworks and libraries.
  • Provide timely consulting on “how to do it right” (architecture, implementation details, and operational considerations) and help teams choose secure-by-default approaches.
  • Triage findings from SAST, SCA, DAST, container and IaC scanning; investigate, validate, and resolve false positives; and help teams prioritize true risk.
  • Partner with teams to tune security tools, reduce noise, and improve signal quality (rules, suppressions, baselines, and exception processes) while maintaining strong security posture.
  • Drive adoption of CNAPP, CWPP, WAF, service mesh security, API gateways, SIEM/SOAR, and cloud-native telemetry for protective monitoring, runtime defense, and incident-ready detection.

Secure by Design reviews

  • Conduct Secure by Design reviews for new applications and material changes to existing applications, validating security requirements and design decisions early.
  • Lead and facilitate threat modeling workshops; identify abuse cases, trust boundaries, and attack paths; and document mitigations and residual risk.
  • Review authentication/authorization design, data flows, secrets handling, logging/monitoring, and resiliency controls to ensure secure architectures.
  • Provide clear, actionable recommendations and track follow-through with engineering teams.
  • Translate regulatory and compliance requirements (FedRAMP, SOC2, ISO 27001, NIST SP 800-53, CSA CCM, SOX) into actionable, measurable, and auditable security architecture control objectives-shifting from audit-driven to architecture-driven alignment.

CI/CD and SDLC security

  • Advise on the security of CI/CD practices pipeline hardening, least privilege, artifact integrity, signing, provenance, and secure deployment patterns.
  • Advise on secure use of third-party dependencies and supply chain controls, including SCA governance and patch/vulnerability management workflows.
  • Collaborate with platform/tooling teams to integrate security controls into developer workflows with a focus on automation and self-service.

AI/ML security guidance

  • Provide security architecture guidance for AI/ML and GenAI-enabled applications, including model/data risk, prompt/agent design considerations, and safe integration patterns.
  • Help teams implement appropriate controls for data protection, access control, monitoring, and abuse prevention in AI/ML features.

Collaboration & communication

  • Act as a trusted partner to product, engineering, and leadership-translating security requirements into developer-friendly guidance.
  • Create and maintain secure coding guidance, reference architectures, and reusable patterns.
  • Support incident learnings by contributing to root cause analysis and preventative design improvements.

Principle Duties Developer enablement & secure coding support

  • Serve as the security architecture authority within the architecture organization, partnering with product architects, principal engineers, cloud partners (AWS, Azure, GCP), and business leaders to embed secure-by-design principles into hardware appliances, multi-tenant SaaS platforms, and globally distributed cloud infrastructure.
  • Coach and support developers in writing secure code, including secure patterns, common vulnerability classes, and secure use of frameworks and libraries.
  • Provide timely consulting on “how to do it right” (architecture, implementation details, and operational considerations) and help teams choose secure-by-default approaches.
  • Triage findings from SAST, SCA, DAST, container and IaC scanning; investigate, validate, and resolve false positives; and help teams prioritize true risk.
  • Partner with teams to tune security tools, reduce noise, and improve signal quality (rules, suppressions, baselines, and exception processes) while maintaining strong security posture.
  • Drive adoption of CNAPP, CWPP, WAF, service mesh security, API gateways, SIEM/SOAR, and cloud-native telemetry for protective monitoring, runtime defense, and incident-ready detection.

Secure by Design reviews

  • Conduct Secure by Design reviews for new applications and material changes to existing applications, validating security requirements and design decisions early.
  • Lead and facilitate threat modeling workshops; identify abuse cases, trust boundaries, and attack paths; and document mitigations and residual risk.
  • Review authentication/authorization design, data flows, secrets handling, logging/monitoring, and resiliency controls to ensure secure architectures.
  • Provide clear, actionable recommendations and track follow-through with engineering teams.
  • Translate regulatory and compliance requirements (FedRAMP, SOC2, ISO 27001, NIST SP 800-53, CSA CCM, SOX) into actionable, measurable, and auditable security architecture control objectives-shifting from audit-driven to architecture-driven alignment.

CI/CD and SDLC security

  • Advise on the security of CI/CD practices pipeline hardening, least privilege, artifact integrity, signing, provenance, and secure deployment patterns.
  • Advise on secure use of third-party dependencies and supply chain controls, including SCA governance and patch/vulnerability management workflows.
  • Collaborate with platform/tooling teams to integrate security controls into developer workflows with a focus on automation and self-service.

AI/ML security guidance

  • Provide security architecture guidance for AI/ML and GenAI-enabled applications, including model/data risk, prompt/agent design considerations, and safe integration patterns.
  • Help teams implement appropriate controls for data protection, access control, monitoring, and abuse prevention in AI/ML features.

Collaboration & communication

  • Act as a trusted partner to product, engineering, and leadership-translating security requirements into developer-friendly guidance.
  • Create and maintain secure coding guidance, reference architectures, and reusable patterns.
  • Support incident learnings by contributing to root cause analysis and preventative design improvements.

Qualifications

  • 8+ years related IT experience; 5+ years' experience in security application tools
  • 6+ years' experience in application security reviews of new architecture; 5 + years of experience with public and hybrid cloud (AWS, Azure and GCP) environments.
  • Strong software development background with the ability to read, understand, and advise on production code and design decisions.
  • Demonstrated expertise in threat modeling and secure architecture review for modern web and API-based applications.
  • Expertise securing CI/CD and SDLC processes (pipeline security, secrets management, artifact integrity, build/release controls, and automation).
  • Experience with application security tooling and processes, including managing findings and resolving false positives (SAST/SCA/DAST and related scanning in pipelines).
  • Working knowledge of AI/ML security risks and mitigations for applications that use ML models or GenAI components.
  • Strong collaborative and consulting skills ability to influence without authority, communicate clearly, and deliver pragmatic, developer-friendly recommendations.

Salary Range - $160,000.00 - $195,100.00

The posted range is the hiring range for this role - a subset of the broader range available to employees over time - and reflects base salary across our national hiring scale. Final offers are based on several factors, including the candidate's skills and experience, internal pay equity, work location, market conditions for the role, and the specific scope and responsibilities of the position. The top of the range is reserved for candidates who notably exceed the requirements; the lower end applies to those with less experience or fewer preferred qualifications. For positions based in higher-cost zones (e.g., California, New York, New Jersey), actual compensation may exceed the posted range; your recruiter will share specifics during the process.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,188,603 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Jersey City
≈ $140k – $310k per year (Estimated) • In office • Urbana
Cybersecurity
GDPR
HIPAA
Apply
≈ $125k – $265k per year (Estimated) • In office • 8+ years exp • Milford
Python
AI/ML
Portkey
LLM
Kong AI Gateway
EU AI Act
NIST AI RMF
DevOps
GCP
Azure
AWS
Cybersecurity
STRIDE
Threat Modeling
DLP
Apply
$143k – $275k per year • In office • 6+ years exp • Bachelor's Degree • Redmond
Python
Rust
PowerShell
C#
C++
C#
.NET
DevOps
GCP
Azure
AWS
Linux
Windows
Cybersecurity
Threat Modeling
Microsoft Entra ID
Active Directory
Apply
≈ $121k – $254k per year (Estimated) • Remote (United States) • 10+ years exp • Seattle • San Francisco
DevOps
GCP
CI/CD
AWS
Cybersecurity
Okta
Zero Trust
Management
Slack
Google Workspace
Apply
≈ $145k – $302k per year (Estimated) • Remote (United States) • Contractor • 15+ years exp
Apply
$150k – $200k per year • Hybrid • 8+ years exp • San Jose
Databases
Snowflake
Databricks
Apache Kafka
AI/ML
dbt
LLM
LLM Guardrails
DevOps
GCP
Azure
CI/CD
AWS
Docker
Kubernetes
Apply
$90k – $150k per year • Remote (likely United States)
SQL
DevOps
GCP
Azure
AWS
Apply
$90k – $150k per year • Remote (likely United States)
SQL
DevOps
GCP
Azure
AWS
Apply
$130k – $170k per year • In office • Dallas
SQL
DevOps
GCP
Azure
AWS
Apply
$90k – $150k per year • Remote (United States)
SQL
DevOps
GCP
Azure
AWS
Apply
≈ $16k – $31k per year (Estimated) • Hybrid • 6+ years exp • Bachelor's Degree • Pune
Python
SQL
Bash
Python
SQLAlchemy
pySpark
Databases
Snowflake
Weaviate
Databricks
Delta Lake
Pinecone
FAISS
LookML
Apache Kafka
Google BigQuery
Amazon Redshift
Azure SQL Database
Microsoft Fabric
BigQuery
AI/ML
Copilot
LangChain
Claude
Spark
Airflow
LlamaIndex
Sentence-Transformers
MLFlow
dbt
Fine-tuning
Scikit-learn
Prompt Engineering
Chain-of-Thought
Great Expectations
Transformers
NumPy
LLM
RAG
Statsmodels
Time Series Forecasting
OpenAI
Anthropic
GPT-4
Knowledge Graph
DevOps
GCP
Azure DevOps
Azure
CI/CD
Git
AWS
Docker
GitHub
Amazon S3
Analytics
Tableau
Power BI
Seaborn
Matplotlib
Plotly
ETL/ELT
A/B Testing
Matillion
Fivetran
Azure Data Factory
Looker
Data Vault
Dimensional Modeling
Alation
Management
Agile
Scrum
Apply
≈ $16k – $32k per year (Estimated) • In office • 5+ years exp • Gurgaon
Analytics
Collibra
Apply
Data Engineer 2 days ago
$85k – $140k per year • In office • 10+ years exp • United States
Python
SQL
Python
pySpark
Databases
Snowflake
Amazon Redshift
AI/ML
Spark
Dagster
dbt
DevOps
Splunk
Git
AWS
Amazon S3
IAM
Amazon Kinesis
Analytics
ETL/ELT
Talend
AWS Glue
Apply
$30k – $42k per year • Remote (United States)
Cybersecurity
HIPAA
Management
Outlook
Microsoft Office
Apply
≈ $36k – $108k per year (Estimated) • Hybrid • 3+ years exp • Bachelor's Degree • Dublin
Apply
$150k per year • In office • Contractor • 5+ years exp • Jersey City
Apply
$40k – $60k per year • In office • Part-Time • High School Diploma • Jersey City
Apply
≈ $52k – $109k per year (Estimated) • In office • Full-Time • 1+ year exp • High School Diploma • Jersey City
Apply
In office • Full-Time • Jersey City
AI/ML
AI Agents
Human-in-the-Loop
Apply
≈ $134k – $256k per year (Estimated) • In office • Full-Time • 5+ years exp • Jersey City
AI/ML
AI Agents
LLM
Human-in-the-Loop
Agentic Workflows
Apply
See all jobs
This is one of many
1,188,603 more open roles from verified company boards, updated every day.