Khám phá việc làm Cloud & Infrastructure nổi bật.
Xem ngay

Medior Enterprise Security Architect

De Heus Asia
+2
Tòa nhà Sofic, 10 Đường Mai Chí Thọ, Quận 2, An Khánh, TP Hồ Chí Minh
Tại văn phòng
Đăng 5 ngày trước
Lĩnh vực:
An Ninh Mạng

3 Lý do để gia nhập công ty

  • Professional & global working environment
  • Lots of training & development opportunities
  • Health-care insurances by international provider

Mô tả công việc

REPORT TO: Group Security Manager (CISO)

JOB PURPOSE:

- The Medior Enterprise Security Architect defines, maintains and operationalizes architecture for security services and security solutions across De Heus. The role translates security policy and principles into practical security design patterns, guardrails and approval criteria that can be applied consistently across regions and business units.

- The role provides the security authority to review, challenge and approve designs produced by Cloud & Infra, Applications, Data & Analytics, OT and other teams from a security perspective, ensuring alignment with global security guardrails, standards and risk decisions. The role does not own or replace the full architecture responsibility of those teams; those teams remain responsible for secure designs within their own domains.

- The architect supports architecture reviews, service catalog development, exception handling and security design decisions, while working closely with a senior architecture counterpart during the transition period.

 

ACCOUNTABILITIES:

1. Security Architecture Definition & Maintenance

- Define and maintain architecture for security services and security solutions across De Heus.

- Develop practical security design patterns, standards interpretations and guardrails for regional and local execution.

- Document security architecture decisions, reusable patterns and design guidance in a clear and usable way.

 

2. Security Design Review & Approval

- Review, challenge and approve designs submitted by Cloud & Infra, Applications, Data & Analytics, OT and other teams from a security perspective.

- Provide structured security feedback to improve alignment of peer-team designs with global security standards and guardrails.

- Prepare security architecture review materials and support Architecture Review Board decisions and follow-up actions.

 

3. Security Service Catalog & Exception Governance

- Contribute to the security service catalog and help define clear business, functional and technical ownership.

- Support governance of exceptions, compensating controls and remediation commitments.

- Help define and maintain security architecture KPIs and inputs for the central security dashboard.

 

4. Cross-Team Collaboration & Field Enablement

- Contribute to the security service catalog and help define clear business, functional and technical ownership.

- Support governance of exceptions, compensating controls and remediation commitments.

- Help define and maintain security architecture KPIs and inputs for the central security dashboard.

 

5. Cross-Team Collaboration & Field Enablement

- Work with Regional Security Delivery Specialists to enable knowledge transfer and practical security implementation guidance for business units.

- Build understanding of De Heus platforms, organization, priorities and delivery model to apply security guidance in a practical and business-relevant way.

- Align with the Enterprise Architect, CIO leadership and global IT functions on shared platforms and governance.

 

6. Professional Growth & Transition Support

- Learn actively from a senior architecture counterpart during the transition period.

- Build deeper knowledge of De Heus security standards, architecture governance, business priorities and platform landscape.

- Continuously strengthen knowledge in security architecture, secure design principles and stakeholder management.

 

RESULT:

- A coherent set of security architecture patterns, standards and guardrails is in place and adopted across projects and regions.

- Security review inputs and approval decisions are timely, clear and well documented.

- Designs from peer teams show measurable improvement in alignment with global security standards and guardrails.

- The security service catalog is structured and maintained with clear ownership.

- Exception governance is structured and supports measurable reduction of long-term risk.

- Business units and regional teams receive usable security guidance that supports implementation and handover.

- The role shows measurable growth in independence, quality of review and confidence in design decisions during the transition period.

Yêu cầu công việc

Qualifications:

- Bachelor's degree in Computer Science, Information Technology, Cyber Security or a related field. Equivalent experience may be considered.

- Certifications such as CISSP, CISM, CCSP, TOGAF, SABSA or relevant vendor certifications are an advantage.

 

Experience:

- Around 3 to 5 years of relevant experience in security architecture, security engineering, security solution design or closely related technical roles across IT and Cloud. Experience with OT is an advantage.

- Experience translating security policies or standards into practical technical guardrails, patterns or implementation guidance.

- Experience reviewing technical designs from a security perspective in collaboration with infrastructure, application, data, analytics and engineering teams.

- Working knowledge of identity and access management, segmentation, secure remote access and privileged access concepts.

- Familiarity with exception handling, documentation and security governance processes.

- Experience within De Heus IT or in a closely related De Heus technology role is a strong advantage, because knowledge of the organization, stakeholders, platforms and ways of working can partly compensate for fewer years in a formal security architecture role.

- Experience supporting implementation teams with practical security guidance and knowledge transfer is an advantage.

 

Competencies:

- Able to translate security policy and principles into practical and implementable security guidance.

- Strong security review mindset and ability to assess peer-team designs objectively.

- Structured and clear in documentation, architecture artefacts and service ownership thinking.

- Good stakeholder engagement across global, regional and local teams.

- Able to work effectively with Cloud & Infra, Applications, Data & Analytics, OT and delivery teams without role overlap.

- Strong learning agility and willingness to grow into broader architecture accountability over time.

- Open to coaching, feedback and structured development during the transition period.

- Disciplined, reliable and comfortable working in a governance-driven environment.

 

Language(s):

- Fluency in English at CEFR Level B2 is mandatory (both written and spoken), as the role requires daily collaboration with global, regional and local teams across De Heus.

 

Other Requirements:

- Full-time global role with occasional travel.

- Location independent: the role can be based at any De Heus global hub. The current preference is HCMC, Vietnam.

- Reporting line into the central CISO Office; close collaboration with a senior architecture counterpart during the transition period.

Tại sao bạn sẽ yêu thích làm việc tại đây

  • 13th month salary, KPI bonus, annual salary review
  • Annual Health Check, Year End Party
  • Company Trip, Team Building, Family Day
  • Health Insurance (Generali care 24/24 Insurance)
  • Birthday Gift, Staff Gift

De Heus LLC

Mô hình công ty
Non-IT
Lĩnh vực công ty
Nông Nghiệp
Quy mô công ty
1000+ nhân viên
Quốc gia
Vietnam
Thời gian làm việc
Thứ 2 - Thứ 6
Làm việc ngoài giờ
Không có OT

Việc làm tương tự dành cho bạn

Nhận các việc làm tương tự qua email Nhận thông báo