Cybersecurity Architect

MediCard Phils., Inc.

Philippines

Hybrid

PHP 1,500,000 - 2,100,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

14th month pay
Annual performance bonus
Retirement plan
HMO for dependents
15 days VL and 15 days SL
Group life insurance

Job summary

MediCard Phils., Inc. is seeking a Security Architect to design, govern, and assure secure technology solutions across applications, cloud, and enterprise systems.

You will embed security-by-design and define guardrails to align with risk appetite, working closely with architecture, cybersecurity, and business stakeholders. The role requires 5+ years in security architecture, strong IAM and cloud security knowledge, and the ability to coordinate with cross-functional teams in a hybrid work

Qualifications

  • Bachelor's degree in Computer Science, IT, Cybersecurity, Engineering, or related field.
  • At least 5 years of experience in security architecture or related areas.
  • Strong knowledge of security architecture principles and threat modeling.
  • Experience designing security controls for applications, cloud, networks, and data.
  • Knowledge of identity and access management and data protection.

Responsibilities

  • Define security architecture principles, standards, and guardrails for enterprise solutions.
  • Align security decisions with enterprise architecture and risk appetite.
  • Embed security-by-design into application, cloud, and infrastructure architectures.
  • Review designs for authentication, authorization, encryption, logging, and vulnerability management.
  • Define IAM architectures including SSO, MFA, conditional access, roles, and governance.
  • Perform security risk assessments and threat modeling for new systems and changes.
  • Define cloud security architectures and guardrails for Azure.
  • Prepare and maintain security architecture documents and design reviews.
  • Provide security guidance to cross-functional teams.

Skills

Security architecture
Zero trust
Threat modeling
IAM
Azure security
Security-by-design
Risk management

Education

Bachelor's degree
Master's degree (advantage)

Tools

Microsoft Entra ID
Azure

Job description

At MediCard, we believe that diversity and inclusion are essential to fostering innovation, collaboration, and growth. We are committed to creating a workplace where everyone, regardless of gender, race, ethnicity, sexual orientation, disability, or any other characteristic, feels valued and empowered to contribute their unique perspectives and talents.

Our inclusive hiring practices ensure that we attract, hire, and retain the best talent from all backgrounds. We strive to provide equal opportunities for all candidates and promote a culture of respect, fairness, and transparency. We are dedicated to continuously improving our processes and policies to eliminate biases and barriers, ensuring that every employee has the support and resources they need to thrive.

Work Location: AIA Head Office, Makati City

Work Set-Up: Hybrid, 3-4 days onsite per week

About the role

A Security Architect is responsible for designing, governing, and assuring secure technology solutions across applications, cloud platforms, infrastructure, data, integrations, and enterprise systems. The role defines security architecture standards, security design patterns, identity and access controls, data protection requirements, threat mitigation strategies, and security guardrails to ensure solutions are resilient, compliant, and aligned with enterprise risk appetite. The Security Architect works closely with enterprise architecture, cybersecurity, infrastructure, application, data, operations, vendors, and business stakeholders to embed security-by-design across technology initiatives and support the organization's digital transformation goals.

Key responsibilities

  • Define and maintain security architecture principles, standards, reference architectures, reusable design patterns, and security guardrails for enterprise technology solutions.

  • Align security architecture decisions with enterprise architecture direction, cybersecurity strategy, regulatory requirements, audit expectations, and business risk appetite.

  • Embed security-by-design principles into application, cloud, infrastructure, network, integration, data, and platform architectures from planning through implementation.

  • Review solution designs to ensure appropriate security controls are included for authentication, authorization, encryption, logging, monitoring, hardening, vulnerability management, and secure configuration.

  • Design identity and access management architectures covering single sign-on, multi-factor authentication, conditional access, role-based access control, privileged access, service accounts, and access governance.

  • Define security requirements for sensitive data protection, encryption, masking, tokenization, key management, secrets management, retention, and secure data exchange.

  • Perform security risk assessments and threat modeling for new systems, major changes, cloud solutions, integrations, and high-risk technology initiatives.

  • Define cloud security architectures and guardrails for Microsoft Azure, including network security, identity, encryption, key management, workload protection, logging, monitoring, policy enforcement, and secure landing zones.

  • Prepare, review, and maintain security architecture documents, security design reviews, threat models, control mappings, architecture decision records, and security standards.

  • Provide security architecture guidance, coaching, and advisory support to application teams, infrastructure teams, cloud engineers, data teams, operations, vendors, and business stakeholders.

About you

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field; a Master's degree is an advantage.

  • At least 5 years of relevant experience in security architecture, cybersecurity, information security, cloud security, infrastructure security, application security, or solution architecture.

  • Strong knowledge of security architecture principles, security-by-design, zero trust, defense-in-depth, least privilege, secure SDLC, threat modeling, and risk-based control design.

  • Experience designing security controls for applications, cloud platforms, infrastructure, networks, APIs, integrations, databases, data platforms, and enterprise systems.

  • Knowledge of identity and access management, including Microsoft Entra ID, single sign-on, multi-factor authentication, conditional access, role-based access control, privileged access management, and access governance.

  • Knowledge of data protection, encryption, key management, secrets management, tokenization, data masking, privacy controls, secure data exchange, and audit logging.

  • Experience performing security design reviews, threat models, risk assessments, control assessments, and remediation planning for technology initiatives.

  • Strong analytical thinking, problem-solving, communication, documentation, stakeholder management, risk articulation, and technical facilitation skills.

  • Ability to work with cross-functional teams, including cybersecurity, enterprise architecture, infrastructure, application teams, data teams, operations, risk, compliance, vendors, and business stakeholders.

  • Ability to manage multiple security architecture reviews, balance priorities, assess dependencies, and support delivery under changing business, security, technology, and regulatory requirements.

For your appreciation, these are some of the benefits that we are offering.

Guaranteed 14th-month pay

Annual Performance Bonus (Subject to both company and individual performance)

Retirement Plan

HMO with free 2 dependents (upon hire for Principal and upon regularization for the eligible dependents)

15 days VL and 15 days SL (Pro-rated for mid-year hire)

Group Life Insurance

Protection benefits, and a lot more w/c will be discussed during the job offer stage.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Solutions Architect
Solutions Architect

MediCard Phils., Inc. • Philippines

Hybrid
PHP 1,800,000 - 2,400,000
Guaranteed 14th-month pay
Annual Performance Bonus
Retirement Plan
+4
Information Security Governance Lead
Information Security Governance Lead

MediCard Phils., Inc. • Philippines

Hybrid
PHP 900,000 - 1,600,000
14th-month pay
Performance bonus
Retirement plan
+4
IT Solutions Architect
IT Solutions Architect

MediCard Phils., Inc. • Philippines

Hybrid
PHP 1,800,000 - 2,400,000
Guaranteed 14th-month pay
Annual Performance Bonus
Retirement Plan
+1
Data Engineering Lead
Data Engineering Lead

MediCard Phils., Inc. • Philippines

Hybrid
PHP 1,200,000 - 1,800,000
Guaranteed 14th-month pay
Annual Performance Bonus
Retirement Plan
+3
Security Architect (Hybrid | Cubao)
Security Architect (Hybrid | Cubao)

Accenture in the Philippines • Philippines

Hybrid
PHP 1,500,000 - 2,100,000
Competitive salary package
Performance bonus & 13th Month Pay
Day 1 HMO & Life Insurance
+5
Cloud Architect
Cloud Architect

AIA Hong Kong and Macau • Hinoba-an

On-site
PHP 1,200,000 - 2,400,000
Cloud Architect
Cloud Architect

AIA Hong Kong and Macau • Philippines

On-site
PHP 1,200,000 - 1,800,000
Cloud Architect
Cloud Architect

AIA (Web) • Philippines

On-site
PHP 1,200,000 - 2,000,000
Cloud Architect
Cloud Architect

AIA • Philippines

On-site
PHP 1,500,000 - 2,500,000
Cybersecurity Engineer
Cybersecurity Engineer

Drake International Philippines • Philippines

On-site
PHP 900,000 - 1,350,000
Work life balance
Global presence
Professional growth opportunities