Job Description

Job requirements: Security Architecture & Design Develop and maintain security architecture standards, patterns, and roadmaps. Embed principles across cloud, on-prem, application, data, network, and endpoints. Review solution designs and recommend secure architectures (cloud, segmentation, encryption, monitoring). Translate business needs into secure, scalable, compliant designs. Drive secure-by-design adoption across projects and platforms. Technology Governance & Assurance Perform architectural assessments and security evaluations for major IT changes. Validate cybersecurity tool configurations against standards. Ensure compliance with ISO 27001, NIST CSF, CIS, GDPR, RBI/SEBI guidelines. Align with enterprise architecture and global cybersecurity strategy. Cybersecurity SME Domain Expertise Provide deep subject-matter expertise across: Cloud Security (AWS, Azure, GCP) using Prisma Cloud, Wiz, Defender for Cloud. Endpoint Protection with EDR/XDR (CrowdStrike, SentinelOne). Network Security (Firewalls, Zero Trust, IDS/IPS). Application & API Security (WAF, API Gateways, DevSecOps). Data Security & Encryption (DLP, CASB, KMS, HSM). Zero Trust Architecture enterprise-wide adoption. Stakeholder Engagement & Advisory Act as trusted advisor to IT, Security, Cloud, and Business teams. Guide project managers and engineers through secure design. Support vendor evaluations and third-party security due diligence. Documentation & Communication Create architecture blueprints, HLD/LLD, security patterns, and diagrams. Document risks, gaps, and mitigation strategies. Maintain reusable security reference architectures and templates.

5+ years
Required Skills & Experience: • Strong hands-on experience with Microsoft Active Directory (installation, multi-forest/domain management, GPO, DNS/DHCP, Trust, AD replication). • In-depth knowledge of Microsoft Entra ID (Azure AD), especially password protection features and custom banned password lists. • Experiences in monitoring, analytics tools like SCOM, Zabbix, Splunk, Azure log analytics, ELK etc. • Advanced PowerShell scripting skills for automation and reporting. • Experience with regulatory compliance projects (e.g., HKMA C-RAF, SOX, GDPR) is a plus. • Excellent analytical, troubleshooting, and communication skills. • 10-15 years of IT experience, with at least 5 years in AD/Entra ID environments. Preferred Certifications: • Microsoft Certified for AD and Entra ID. Education level: Degree or equivalent in engineering/ IT field

Apply for this Position

Ready to join ? Click the button below to submit your application.

Submit Application