Wolters Kluwer

Principal Application & Product Architect

Wolters Kluwer  •  Pune, IN (Onsite)  •  2 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Join us at Wolters Kluwer and be part of a dynamic global technology company that makes a difference every day. We’re innovators with impact. We provide expert software and information solutions that the world’s leading professionals rely on, in the moments that matter most.

As part of this mission, we’re looking for a driven and experienced Divisional Security Lead – ATHIP (Advanced Technology and Health) to join our Application Security Center of Excellence (AppSec CoE).

About the role:

The Divisional Security Lead (DSL) for ATHIP is a senior Application Security SME embedded within the AppSec CoE and the ATHIP divisional CTO team. This role is responsible for ensuring that AppSec policies, standards, and best practices are consistently applied across all ATHIP development teams, and for guiding and aligning Portfolio Security Leads (PSLs) and Security Champions within the division.

The DSL acts as the central point of contact for application security strategy, training, and governance in ATHIP, and is empowered to drive divisional AppSec initiatives, provide expert guidance, and escalate security issues. The DSL operates with autonomy and seniority, reporting administratively to the Director of AppSec CoE and functionally to the ATHIP CTO.

The AppSec CoE is a centralized, cross-functional team that provides standardized tools, SOPs, and expert guidance for security-by-design development. It supports a federated model with a central team and a virtual network of Security Champions and Leads, collaborating with other Centers of Excellence and GIS teams to deliver secure, compliant, and innovative solutions.

The DSL role is responsible for aligning Application Security practices in the ATHIP division with Application Security CoE roadmap, best practices and initiatives to establish consistency across DXG organization.

Essential Duties and Responsibilities:

  • Guide, mentor, and align Portfolio Security Leads (PSLs) and Security Champions in the ATHIP division, ensuring AppSec policies and standards are upheld.
  • Serve as the primary AppSec SME for ATHIP, providing expert guidance, incident support, and escalation for security issues.
  • Ensure continuous threat modeling, scanning, regular security reviews, and timely vulnerability remediation across ATHIP portfolios.
  • Oversee training activities as part of mentoring PSLs and Security Champions, and ensure PSLs and Champions are enabled and empowered.
  • Provide quarterly AppSec briefings to the ATHIP CTO and prepare monthly AppSec reports.
  • Collaborate with Global Information Security (GIS) to support NIST attestation, incident management and exception filing.
  • Collaborate with the DevSecOps CoE in driving integration of security controls in CI/CD pipelines (SAST, SCA, DAST, container scanning, IaC checks) to track provenance and protect the integrity of software.
  • Validate and enforce ASVS-based security requirements across ATHIP services and applications.
  • Nominate, assess, and guide PSLs and Security Champions; provide fallback if PSLs/Champions are unavailable.
  • Collaborate with product managers, architects, Privacy Champions, and other CoEs to balance security and privacy requirements.
  • Participate in and drive certain AppSec CoE strategic programs, including AppSec Metrics & Resources, AppSec Tools Deployment, ASVS Gap Assessment & Remediation, and SBOM/Supply Chain Management.
  • Contribute to the AppSec CoE’s mission and align with its goals to equip teams with standards, tools, and training to identify and fix security issues early and efficiently.

Job Qualifications:

  • Bachelor’s degree.
  • GIAC GSEC, CISSP, or an equivalent baseline certification and one vendor-neutral Secure SDLC/AppSec certification (e.g., CSSLP) (preferred).
  • 12+ years of experience in application/product security, software engineering, or related roles.
  • Demonstrated success leading cross-functional security initiatives and improving operational workflows.
  • In case of an internal candidate, familiarity with Wolters Kluwer security policies and standards is required, and familiarity with ATHIP products is preferred.
  • Experience managing or indirectly influencing others in a matrixed or project-based environment.
  • Proficiency in one or more modern programming languages (Java, Python, C#, JavaScript).
  • Hands-on experience with security testing tools (SAST, SCA, DAST, IaC scanning, container/runtime scanning).
  • Experience embedding security checks in CI/CD (GitHub Actions, GitLab CI, Jenkins, Azure DevOps, Bitbucket etc.).
  • Understanding of security facilities and capabilities in at least one major cloud provider (AWS, Azure, GCP).
  • Strong business acumen with understanding of secure product strategy.
  • Ability to translate strategic direction into actionable operational execution.
  • Highly organized with strong attention to detail and process discipline.
  • Effective communicator, able to influence across functions and seniority levels.
  • Demonstrated ability to manage competing priorities in a fast-paced, matrixed environment.
  • Change-oriented mindset with a continuous improvement focus.

If you think that you have the needed requirements click on the apply button to join us and be the difference. If making a difference matters to you, then you matter to us.

Our Interview Practices

To maintain a fair and genuine hiring process, we kindly ask that all candidates participate in interviews without the assistance of AI tools or external prompts. Our interview process is designed to assess your individual skills, experiences, and communication style. We value authenticity and want to ensure we’re getting to know you—not a digital assistant. To help maintain this integrity, we ask to remove virtual backgrounds and include in-person interviews in our hiring process. Please note that use of AI-generated responses or third-party support during interviews will be grounds for disqualification from the recruitment process.

Applicants may be required to appear onsite at a Wolters Kluwer office as part of the recruitment process.

Wolters Kluwer

About Wolters Kluwer

Wolters Kluwer (EURONEXT: WKL) is a global leader in information, software solutions, and services for professionals in healthcare; tax and accounting; financial and corporate compliance; legal and regulatory; corporate performance and ESG. We help our customers make critical decisions every day by providing expert solutions that combine deep domain knowledge with technology. Wolters Kluwer reported 2024 annual revenues of €5.9 billion. The group serves customers in over 180 countries, maintains operations in over 40 countries, and employs approximately 21,000 people worldwide. The company is headquartered in Alphen aan den Rijn, the Netherlands.

Equal Opportunity Employer

To ensure we continue to drive innovation that enables us to develop products and services to best serve our customers, we cultivate a workplace culture rooted in mutual respect, bringing forward insights from a wide range of backgrounds, perspectives, and experiences. We are also committed to complying with laws requiring equal opportunity in hiring, promotion, and other employment decisions.

All qualified applicants will receive consideration without regard to race, color, religion, sex (including pregnancy, gender identity, transgender status, and sexual orientation), national origin, disability, age, genetic information, veteran status, or any other characteristic protected by applicable law, and we do not tolerate discrimination on any of these bases.

Beware of Recruitment Fraud! 🔒

Scammers may pose as Wolters Kluwer, offering fake job opportunities and requesting personal info or payments. Protect yourself:

- Apply only via our secure Workday hub on our Careers page.

- Our recruiters never ask for banking info or payments.

- We don't use public email accounts (e.g., Hotmail, Yahoo, Gmail).

Report suspected fraud: thirdpartyincident@wolterskluwer.com. If you've made a payment, contact local authorities.

Read more here - https://careers.wolterskluwer.com/en/recruitment-fraud-alert

Industry
IT & Software
Company Size
10,000+ employees
Headquarters
Alphen aan den Rijn, NL
Year Founded
1836
Social Media