2 дня назад
Security Architect
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Architect (Cloud Security): Defining security architecture and standards across financial products, applications, APIs, cloud platforms, and infrastructure with an accent on regulatory compliance, threat modeling, and secure distributed systems. Focus on reviewing web, mobile, AI-enabled, and data architectures, designing IAM and encryption controls, and guiding secure AWS and GCP implementations.
Location: Global, fully remote
Company
is a financial technology company building digital insurance and financial products that help people across Southeast Asia plan, save, spend, invest, exchange, and travel.
What you will do
- Define security architecture, patterns, and standards across products, applications, APIs, cloud environments, and integrations.
- Own architecture implementation and alignment with SC TRM and BNM RMiT, including control evidence, reviews, remediation, and audit support.
- Lead threat modeling, security design reviews, risk assessments, and architecture reviews for new products, major changes, third-party integrations, and critical systems.
- Design and review IAM, privileged access, network security, encryption, key management, secrets, logging, and threat detection controls.
- Review web, API, native mobile, AI-enabled, and data processing architectures for security and privacy risks.
- Partner with Engineering, Product, Cloud, Compliance, and Security teams while tracking remediation of material architecture risks.
Requirements
- Degree in Computer Science, Information Security, or a related field, or equivalent experience.
- At least 5 years of experience in security engineering, security architecture, or a related security role.
- Experience implementing and owning SC TRM and BNM RMiT requirements, including control operation, evidence, and audit remediation.
- Strong knowledge of cloud and application security, IAM, networking, encryption, secure design, and distributed systems.
- Hands-on familiarity with AWS, GCP, TypeScript/Node.js, Python, Swift, and Kotlin.
- Strong English communication is required for collaboration across global teams.
Nice to have
- Experience with ISO 27001, NIST, CIS, or OWASP frameworks.
Culture & Benefits
- Fully remote work from a global location.
- Collaboration across teams and colleagues from more than 20 nationalities.
- Opportunity to build next-generation financial applications and products.
- Work focused on improving access to insurance and broader financial services.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →