Security Architect

14 hours ago


Kuala Lumpur MYAIA Malaysia AIA Group Full time $80,000 - $180,000 per year

At AIA we've started an exciting movement to create a healthier, more sustainable future for everyone.

As pioneering innovators for over 100 years, we're now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live Healthier, Longer, Better Lives.

To get there, we need people with tech/digital/analytics expertise and passion to help develop positive, sustainable change through digitally enhanced experiences that will impact the lives of millions of people and create a healthier future for everyone.

If you believe in developing a better tomorrow, read on. 

About the Role

The Security Architect will lead the design, implementation, and maintenance of a robust security architecture tailored for AIA, ensuring the protection of digital assets, infrastructure, and sensitive financial data. This includes maintaining an enterprise security blueprint and integrating best practices aligned with regulatory standards such as ISO/IEC 27001, NIST, and relevant industry regulations.

You will collaborate closely with IT, development, and risk management teams to embed security measures across the technology infrastructure and software development lifecycle, using a risk-based and compliance-driven approach.

In this role, you will ensure that the security architecture supports business objectives and regulatory requirements. You will also lead the development of security frameworks, standards, and policies, while providing expert guidance on secure design and risk mitigation strategies across projects and operations.

Roles and Responsibilities:

Security Architecture & Design

  • Lead the development and implementation of enterprise security architecture strategies, frameworks, and mitigation plans.

  • Design secure systems and network architectures that align with business objectives, regulatory requirements, and industry best practices.

  • Translate business and technical requirements into robust, secure architecture solutions.

Governance & Assurance

  • Own the security review process and produce security design blueprints for ARB and other governance forums.

  • Provide architecture assurance to ensure alignment with enterprise roadmaps and standards.

  • Define and maintain security standards, guidelines, and reference architectures.

Risk Management & Compliance

  • Conduct threat modeling, and security impact analyses for new and existing solutions.

  • Stay current with regulatory changes affecting cybersecurity in the insurance and financial services sectors.

  • Evaluate emerging security technologies and recommend adoption where appropriate.

Collaboration & Advisory

  • Partner with solution architects, development teams, and business stakeholders to ensure secure design and implementation.

  • Present security architecture and risk mitigation strategies to ARB and senior leadership.

  • Provide advisory and assurance support to the Local Information Security (LIS) team during security incident investigations.

Documentation & Review

  • Review and endorse technical documents (e.g., impact analyses, functional designs, interface agreements) from a security perspective.

  • Contribute to the strategic direction of security investments and enterprise risk posture.

Leadership & Enablement

  • Serve as the technical subject matter expert for all security-related design decisions.

  • Mentor junior team members and promote security awareness across IT and business teams.

Minimum Job Requirements:

  • Minimum of 8 years of experience in IT security architecture design, risk management, or cybersecurity operations preferably within the financial services or insurance industries.

  • Strong knowledge of security architecture frameworks (e.g., SABSA, TOGAF with security extensions, ISO/IEC 27001, NIST, and COBIT).

  • Expertise in cloud security (AWS, Azure, GCP) and on-prem security controls.

  • Familiarity with identity and access management (IAM), network security, data protection, and encryption standards.

  • Practical experience with security technologies including firewalls, SIEM, IAM, DLP, and endpoint protection.

  • Understanding of DevSecOps and secure SDLC practices.

  • CISSP, CCSP, or equivalent would be an added advantage.

  • Cloud-specific security certifications (AWS Security Specialty, Azure Security Engineer) would also be an added advantage.

  • Hands-on experience in threat modeling, and implementation of security controls.

  • Regulatory compliance experience (RMIT, ISO 27001, SOC2, GDPR, PDPA).

  • Experience with Agile and Waterfall methodologies, and secure software development lifecycle (SDLC).

  • Ability to communicate complex security concepts to non-technical stakeholders.

  • Leadership and collaboration with cross-functional teams.
     

Build a career with us as we help our customers and the community live Healthier, Longer, Better Lives.

You must provide all requested information, including Personal Data, to be considered for this career opportunity. Failure to provide such information may influence the processing and outcome of your application. You are responsible for ensuring that the information you submit is accurate and up-to-date.


  • Security Architect

    1 week ago


    Kuala Lumpur, Malaysia Standard Chartered Full time

    **JOB SUMMARY** - As a Security Architect, you will have the opportunity to lead initiatives that protect our digital assets and maintain the trust of our customers. Your contributions will directly impact the resilience and integrity of our banking services in an increasingly complex cybersecurity landscape. If you are passionate about cybersecurity and...

  • Security Architect

    2 weeks ago


    Kuala Lumpur, Malaysia SoftwareOne Full time

    Job Function: Software & Cloud Services The role: **Role Description**: - Should possess the excellent interpersonal and communication skills required to partner with other leaders across the business to find opportunities and risks and develop and deliver solutions that support business strategies.**Expertise** - Collaborate with Application Owners,...

  • IT Security Architect

    2 weeks ago


    Kuala Lumpur, Malaysia Hyppies Full time

    **TL;DR** - Hunting for Security Architects! **Company**: A public-listed European firm with a vision for the future - to safeguard generations to come. Security is forefront of their operations - leadership of international teams is offered, to establish the standardised protocols and to address possible challenges. In return, internal career progression,...


  • Kuala Lumpur, Malaysia Verinon Full time

    Overview The Cloud Security Architect will be responsible for assessing and enhancing the security posture of client cloud environments, identifying vulnerabilities, and recommending remediation strategies. This role requires a strong focus on both technical security controls and process governance to ensure resilient, compliant, and secure cloud...


  • Kuala Lumpur, Kuala Lumpur, Malaysia FK Technology Sdn Bhd Full time 24,000 - 48,000 per year

    Fit-gap analysis: Review existing IT security architecture, identify design gaps, and recommend security enhancements by using security by design approachParticipate in IT Cybersecurity Design reviewsTake part in technical design reviews, integration, testing, and documentation activities concerning new IT systemsIT Security advisory: Serve as an IT security...


  • Kuala Lumpur, Kuala Lumpur, Malaysia Virtual Network Solutions Sdn Bhd Full time 90,000 - 150,000 per year

    Company DescriptionVirtual Network Solutions Sdn Bhd specializes in developing intelligent transport network solutions, data communication networks, optical access networks, data center solutions, and intelligent building systems. Our solutions enable clients to accelerate service delivery, enhance network reliability, and simplify operations and resource...

  • Security Architect

    3 days ago


    Kuala Lumpur, Kuala Lumpur, Malaysia AIA Malaysia Full time 120,000 - 180,000 per year

    At AIA we've started an exciting movement to create a healthier, more sustainable future for everyone.As pioneering innovators for over 100 years, we're now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live Healthier,...


  • Kuala Lumpur, Malaysia Bank Negara Malaysia Full time

    **Job Title : Application Security Architect** **ROLE PURPOSE**: baselines for implementation of IT security controls, and ensure effectiveness of the controls in the IT threats in maintaining confidentiality, integrity and availability of information assets in the Bank. **INTERCHANGEABLE/FEEDER JOBS**: Solution development, Architects, Application...

  • Security Architect

    2 days ago


    Kuala Lumpur, Malaysian, Malaysia JonDavidson Full time 120,000 - 180,000 per year

    The duties of the Security Architect include but are not limited to the following:1.    Keep up to date with the latest security and technology developments.2.    Research/ evaluate emerging cyber security threats and ways to manage them.3.    Plan for disaster recovery and create contingency plans in the event of any security breaches.4.  ...

  • Lead IT Architect

    2 weeks ago


    Kuala Lumpur, Malaysia Avensys consulting Full time

    **Lead IT Architect** The Lead IT Architect analyses, designs and develops roadmaps and implementation plans based on a current versus future state solutions architecture. He/she assesses near-term needs to establish technical requirements, integration of different product across areas such as Compute/Network/Storage. He/she analyses the current...