Key Responsibilities
- Design end-to-end solution architectures for digital insurance platforms, including customer portals, agent systems, and core backend services.
- Define and enforce architecture standards aligned with financial services regulatory, security, and compliance requirements.
- Architect secure and scalable frontend-to-backend communication using API Gateways, supporting omnichannel access (web, mobile, partner integrations).
- Design and review network topology, including API gateways, load balancers, firewalls, DMZ, and secure connectivity to internal and external systems.
- Ensure application and API security best practices are embedded in solution designs, including:
- OWASP Top 10
- Secure API design (OAuth2, OpenID Connect, JWT, mTLS)
- Data encryption in transit and at rest
- Analyze and remediate findings from penetration testing, vulnerability assessments, and security audits, working closely with security teams.
- Collaborate with development, infrastructure, DevOps, security, and risk teams to ensure solutions comply with enterprise policies and regulatory expectations.
- Provide architectural oversight during development, testing, deployment, and production support.
- Evaluate and recommend technologies, frameworks, and platforms suitable for high availability, resiliency, and disaster recovery.
- Produce and maintain architecture artifacts, including solution designs, integration diagrams, and security models.
Required Qualifications
- Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent professional experience).
- Proven experience as a Solution Architect or Technical Architect in a financial services or insurance enterprise environment.
- Strong knowledge of modern application frameworks and architectures (e.g., React, Angular, Spring Boot, .NET Core, Node.js, microservices).
- Solid understanding of application security, with hands-on experience addressing:
- Penetration testing findings
- Vulnerability scanning results
- Secure coding and secure API practices
- Strong experience with API Gateway platforms (e.g., Kong, Apigee, AWS API Gateway, Azure API Management).
- In-depth understanding of enterprise network architecture, including:
- Frontend and backend segregation
- API gateway placement
- Load balancing, firewall rules, and secure connectivity
- Familiarity with insurance systems, data sensitivity, and regulatory considerations (e.g., customer data protection, auditability, resiliency).
- Experience with cloud platforms (AWS, Azure, or GCP) and hybrid architectures is an advantage.
- Exposure to CI/CD pipelines and DevSecOps practices is preferred.
Soft Skills
- Strong analytical and problem-solving skills with a risk-aware mindset.
- Excellent communication skills, able to translate complex technical concepts into business-relevant discussions.
- Ability to influence architecture decisions across cross-functional teams without direct authority.
- High level of accountability and ownership in a regulated, enterprise environment.
- Collaborative and proactive, with the ability to balance innovation and compliance.
- Strong documentation, presentation, and stakeholder management skills.
Added Advantage
- Experience with LLMOps or AI/ML platform architecture, including:
- Deployment and governance of large language models in enterprise environments
- Secure integration of LLMs with APIs and backend systems
- Model monitoring, versioning, and risk controls (e.g., data privacy, hallucination mitigation)
- Familiarity with responsible AI principles, especially in regulated financial services contexts.
Why You'll Love Working With Us
- Up to 24 Days Annual Leave
- Flexible & Hybrid Working
- Performance Bonus
- Enhanced EPF Contributions
- Comprehensive Insurance Coverage
- Training & Development (In-House & External)
- Travel Allowance & Expense Benefits
- Company Trips & Team Events
- Long Service Rewards
- Individual Expenses Benefits
*OKU candidates with physical (mobility-related) disabilities or hearing impairment are encouraged to apply.*