ARCHIVED
This job listing has been archived and is no longer accepting applications.
MisuJob - AI Job Search Platform MisuJob

Security Architect

Teleport

Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia permanent

Posted: January 8, 2026

Interested in this position?

Create a free account to apply with AI-powered matching

Job Description

Job Title

Security Architect – Governance, Risk, and Compliance & Platform Security

Role Overview

As a Security Architect, you will be responsible for defining and governing our enterprise security framework across a multi-cloud environment spanning GCP and Tencent Cloud.

This role focuses on security architecture, regulatory compliance, proactive monitoring design, and audit readiness, rather than day-to-day cloud operations. You will guide engineering and infrastructure teams on what must be built and why, ensuring security controls align with ISO 27001 and regional regulatory requirements across China and South-East Asia.

You will act as the bridge between compliance, security design, and engineering execution, ensuring security is embedded into platforms and applications by default.

Key Responsibilities

1. Proactive Security Monitoring & Threat Governance (Top Priority)

• Define a centralized security monitoring and alerting architecture across GCP, Tencent Cloud, and Cloudflare.
• Specify log sources, retention policies, and alerting standards to ensure real-time visibility into security events.
• Design threat detection use cases and “tripwires”, such as:
• Unauthorized MongoDB data access or exports
• Brute-force or abuse patterns on Java/Spring Boot APIs
• Privileged access or IAM changes in Tencent Cloud


• Work with DevOps and SRE teams to ensure monitoring controls are implemented, tested, and continuously improved.

2. Security Architecture & Standards

• Define and document security architecture blueprints and policies for applications and platforms operating across multiple regions.
• Establish identity, access control, and network isolation standards, ensuring least-privilege and segregation of duties.
• Define data protection requirements, including encryption at rest and in transit, secure key management, and access auditing for MongoDB.
• Specify defense-in-depth requirements, including expectations for Cloudflare (WAF, Zero Trust, DDoS) and application-level security controls.
• Review solution designs and provide security sign-off for new initiatives and major changes.

3. Secure SDLC & Vulnerability Management

• Define security requirements for Secure SDLC, including SAST/DAST expectations within CI/CD pipelines.
• Establish vulnerability severity criteria and remediation SLAs aligned with risk and regulatory impact.
• Ensure application security standards address OWASP Top 10 risks for Java/Spring Boot services.
• Partner with engineering teams to ensure security findings are tracked, resolved, and verified.

4. ISO 27001 & Regulatory Compliance (Core Focus)

• Lead the technical interpretation and implementation of ISO 27001 controls, acting as the primary security architecture point of contact.
• Translate regulatory requirements into practical technical and monitoring controls.
• Maintain continuous audit readiness by defining automated evidence collection for:
• Access reviews
• Logging and monitoring
• Vulnerability scans
• Configuration compliance


• Support internal and external audits with clear, well-documented security evidence.

5. China & South-East Asia Regulatory Knowledge

• Provide security guidance aligned with China’s regulatory frameworks (e.g., MLPS 2.0, data localization requirements).
• Advise teams on South-East Asia regulatory considerations, such as:
• Singapore (PDPA)
• Malaysia (PDPA)
• Indonesia (PDP Law)
• Thailand (PDPA)


• Ensure cross-border data access and storage designs are reviewed for regulatory impact and compliance risk.
• Work with legal, compliance, and product teams to ensure security architecture supports regional expansion.


Requirements:
Technical & Professional Requirements

Experience

• 3–4 years of experience in Security Architecture, Security Engineering, GRC, or Cloud Security Governance roles.

Application & Platform Security

• Strong understanding of Java/Spring Boot security concepts and OWASP Top 10 risks.
• Knowledge of MongoDB security controls, including RBAC, TLS, encryption, and audit logging.

Monitoring & Security Tooling

• Experience designing or governing SIEM / log management solutions (e.g., ELK, Datadog, or cloud-native tools).
• Familiarity with Cloudflare security capabilities (WAF, Zero Trust, DDoS), from a design and governance perspective.

Compliance & Regulation

• Working knowledge of ISO 27001 and how to translate controls into technical and operational requirements.
• Awareness of China and South-East Asia data protection and cybersecurity regulations and their impact on system design.


Benefits:
What Success Looks Like

• Clear, enforceable security standards adopted across engineering teams.
• Proactive detection of security risks through well-defined monitoring and alerting.
• Strong alignment between security architecture and regional regulatory requirements.
• Audit-ready posture for ISO 27001 with minimal manual effort.
• Security viewed as an enabler, not a blocker, by product and engineering teams.

Why Apply Through MisuJob?

AI-Powered Job Matching: MisuJob uses advanced artificial intelligence to analyze your skills, experience, and career goals. Our matching algorithm compares your profile against thousands of job requirements to find positions where you have the highest chance of success. This saves you hours of manual job searching and ensures you only see relevant opportunities.

One-Click Applications: Once you create your profile, applying to jobs is effortless. Your resume and cover letter are automatically tailored to highlight the most relevant experience for each position. You can apply to multiple jobs in minutes, not hours.

Career Intelligence: Beyond job matching, MisuJob provides valuable career insights. See how your skills compare to market demands, identify skill gaps to address, and understand salary benchmarks for your experience level. Make data-driven decisions about your career path.

Frequently Asked Questions

How do I apply for this position?

Click the "Register to Apply" button above to create a free MisuJob account. Once registered, you can apply with one click and track your application status in your dashboard.

Is MisuJob free for job seekers?

Yes, MisuJob is completely free for job seekers. Create your profile, get matched with jobs, and apply without any cost. We help you find your dream job without any hidden fees.

How does AI matching work?

Our AI analyzes your resume, skills, and experience to understand your professional profile. It then compares this against job requirements using natural language processing to calculate a match percentage. Higher matches mean better fit for the role.

Can I apply to jobs in other countries?

Absolutely. MisuJob features jobs from companies worldwide, including remote positions. Filter by location or look for remote opportunities to find jobs that match your preferences.

Ready to Apply?

Join thousands of job seekers using MisuJob's AI to find and apply to their dream jobs automatically.

Register to Apply