Security Architect

Thakral One

Philippines

On-site

PHP 669,600 - 1,004,400

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A multinational consulting firm in the Philippines is seeking a Security Architect to support security and compliance assessments across various environments. The role involves evaluating security posture, documenting risks, and ensuring adherence to data privacy regulations. Ideal candidates should have experience in security governance and the ability to clearly document findings. This position focuses on screening and advisory outputs without implementing solutions.

Qualifications

  • Experience conducting security posture assessments in enterprise environments.
  • Experience in security governance and compliance practices.
  • Ability to document findings clearly in structured registers.

Responsibilities

  • Conduct security posture evaluations and validate license adherence.
  • Ensure compliance with data privacy and information security policies.
  • Assess risks relating to legacy technology components.
  • Identify security-related technical debt and document risks.

Skills

Security posture assessments
Infrastructure and application security reviews
Risk identification in legacy technology
Governance and compliance practices
Collaboration in multi-layer teams

Job description

As a Security Architect, you will support security and compliance assessment activities across legacy and hybrid environments. You will evaluate security posture, configuration hardening, operational risk exposure, and compliance alignment, focusing strictly on screening, observation, and advisory outputs. This role does not include implementation, remediation, vulnerability assessments, or penetration testing.

What You’ll Do and How You’ll Succeed

Security and Compliance Screening

  • Conduct security posture evaluations through privilege exposure reviews and read only analysis.
  • Document configuration hardening observations and identify operational security risks.
  • Validate license safe adherence for Oracle related components.
  • Ensure all findings support structured risk identification and advisory outputs.

Data Protection and Privacy Compliance Review

  • Ensure assessment activities comply with applicable data privacy and information security policies.
  • Adhere to the Data Privacy Act of 2012 (RA 10173) where required.
  • Ensure that no production data is exported outside controlled environments without proper authorisation.
  • Follow execution guardrails and maintain compliance with assessment boundaries.

Operational Security Risk Identification

  • Assess risks relating to legacy technology components, configuration practices, and infrastructure or application security posture.
  • Document findings in the Evidence Register and the Risk Register.

Support Technical Debt Quantification

  • Identify security related technical debt including end of life components, legacy authentication mechanisms, limited encryption posture, or outdated infrastructure.
  • Document risks with impact analysis and cost of inaction considerations.

Governance and Compliance Controls

  • Validate adherence to license safe protocol requirements, security guardrails, and approval processes for tools and scripts.
  • Ensure that no unlicensed features are triggered.
  • Ensure that no production data is exported.
  • Ensure that all tools used have prior security approval.

Scope Limitations

The following are not part of this engagement:

  • Vulnerability assessment
  • Penetration testing
  • Security remediation or implementation

Security responsibilities are limited to screening, observation, and advisory findings only.

We’d Love to Hear From You If…

Experience

  • You have experience conducting security posture assessments in enterprise environments.
  • You have worked on infrastructure and application security configuration reviews.
  • You can identify risks in legacy technology stacks.
  • You have experience in security governance and compliance practices.
  • You have supported mission critical or legacy environments.

Technical Expertise

  • You understand hybrid infrastructure security across on premise and cloud platforms.
  • You can review security posture across Oracle 10g, Oracle Forms and Reports, Ruby on Rails components, and hybrid environments.
  • You can analyse legacy security risks and document findings clearly in structured registers.

Ways of Working

  • You follow strict assessment methodologies and compliance boundaries.
  • You document findings clearly, accurately, and objectively.
  • You collaborate effectively within cross layer assessment teams.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Architect
Security Architect

Thakral One • Metro Manila

On-site
Oracle Database Architect
Oracle Database Architect

Thakral One • Quezon City

On-site
Full Stack Architect
Full Stack Architect

Thakral One • Metro Manila

On-site
PHP 4,305,000 - 5,536,000
Security Analyst – Client Trust & Support
Security Analyst – Client Trust & Support

Magnetic Inc • Quezon City

On-site
PHP 600,000 - 1,000,000
Security Analyst – Client Trust & Support - PH
Security Analyst – Client Trust & Support - PH

Athena • Quezon City

On-site
PHP 1,200,000 - 1,500,000
Security Analyst - Client Trust & Support - PH
Security Analyst - Client Trust & Support - PH

Athena • Quezon City

On-site
PHP 600,000 - 900,000
Security Analyst Client Trust And Support - PH
Security Analyst Client Trust And Support - PH

Athena • Philippines

On-site
PHP 800,000 - 1,200,000
Client Trust & Security Analyst (Enterprise)
Client Trust & Security Analyst (Enterprise)

Athena • Quezon City

On-site
PHP 600,000 - 900,000
Information Security Architect (Hybrid)
Information Security Architect (Hybrid)

blaseek • Manila

On-site
Security Architect
Security Architect

Capgemini Philippines Corp. • Pasay

On-site
PHP 1,500,000 - 2,100,000