Current jobs related to Application Security Solution Architect - hong kong - Hong Kong Exchanges and Clearing Limited (HKEX)


  • hong kong, Hong Kong SAR China JNL Consulting Limited Full time

    Application Solution Architect Are you passionate about shaping the future of enterprise technology? Our client, a globally recognized insurance powerhouse, is seeking an experienced Application Solution Architect to join their dynamic team. This is your opportunity to drive innovation, elevate engineering excellence, and influence the architectural...

  • Solution Architect

    4 days ago


    Hong Kong Island, Hong Kong SAR China Swing Consulting Ltd. Full time

    Solution architect proactively delivers business values by acting as the lead for the translation of business objectives and requirements into functional solutions. He needs to engage business partners and lead brainstorming sessions and identify areas for process improvements. Work closely with Enterprise Architect and Senior Solution Architect to ensure...


  • Hong Kong Island, Hong Kong SAR China Ambition Full time

    Application Solution Architect, Insurance, 80k We are looking for a hands‑on Application Solution Architect to design modern, scalable, and resilient digital systems that power business growth. You will translate strategy into real‑world solutions, champion engineering excellence, and guide development teams toward cloud‑native, API‑first, and...

  • Solutions Architect

    4 days ago


    Hong Kong Island, Hong Kong SAR China Nextlink (HK) Technology Co., Ltd. Full time

    Add expected salary to your profile for insights Nextlink is a leading Cloud Solution Provider for AWS in Hong Kong. Specializing in cloud services, the company delivers innovative solutions including Infrastructure Modernization, Security, AI and Machine Learning that enhance scalability, security, and efficiency for businesses. With a strong focus on...

  • Solutions Architect

    4 days ago


    Hong Kong Island, Hong Kong SAR China Classy Wheeler Limited Full time

    Solutions Architect (Software Applications) - IC Client Description Regional IT solutions provider Job Description Responsible to design / review all application architectures in projects / presales Work closely with Line of Business, Client Service Unit to sharp and identify client propositions, develop and execute client engagement plans to drive the...


  • Hong Kong Island, Hong Kong SAR China Classy Wheeler Limited Full time

    Senior Solution Architect (Applications) Client Description Job Description As a Senior Solution Architect in Digital team, you will have the opportunity to help shape and deliver on a strategy to build mind share and broad use of PCCW Digital Solution within strategic accounts locally and globally. Your broad responsibilities will include: owning the...


  • Hong Kong, Hong Kong SAR China JNL Consulting Limited Full time

    Are you passionate about shaping the future of enterprise technology? Our client, a globally recognized insurance powerhouse, is seeking an experienced Application Solution Architect to join their dynamic team. This is your opportunity to drive innovation, elevate engineering excellence, and influence the architectural direction of mission-critical...


  • hong kong, Hong Kong SAR China Pinpoint Asia Full time

    Our client, a prominent Life Insurance Group in the APAC region, is seeking a dynamic, hands‑on Solution Architect to spearhead the transition toward target state architecture. This involves implementing event‑driven and API‑first microservices architecture, as well as promoting best practices in software engineering and DevOps. What you’ll be doing...


  • Hong Kong Island, Hong Kong SAR China Swing Consulting Ltd. Full time

    SW9400 |20 Oct 2017 Application Architect Lead the design and development of the digital technology including Mobile and Web. Lead development teams to build the digital application platform. Lead the platform architecture solutions and roadmaps. Manage architecture documentation. Understanding of architecture issues on Information Security Management, IT...


  • Hong Kong Island, Hong Kong SAR China Pinpoint Asia Full time

    Our client, a prominent Life Insurance Group in the APAC region, is seeking a dynamic, hands-on Solution Architect to spearhead the transition toward target state architecture. This involves implementing event-driven and API-first microservices architecture, as well as promoting best practices in software engineering and DevOps. What you'll be doing...

Application Security Solution Architect

2 weeks ago


hong kong, Hong Kong SAR China Hong Kong Exchanges and Clearing Limited (HKEX) Full time

Job Summary The Application Security Solution Architect (ASSA) for HKEX Group is accountable for translating group-wide information and cyber security strategy, policy and control requirements into secure application solutions. They will focus on application-level security architecture, design, processes and controls. The role balances the unique business objectives of a global exchange against the inherent security threat and risk profile applicable to critical national infrastructure. Responsibilities Architectural Oversight: Ensure that the information and cybersecurity architecture and solution designs for applications are engineered according to specifications and within acceptable risk tolerance levels, focusing on application-specific contexts. Support Development Teams: Collaborate with development teams to implement application-specific threat modeling, secure coding practices, and the effective use of application security assurance tools to enhance the security of software products. Integration Architecture Recommendations: Provide expert recommendations on application-level integration architecture, focusing on secure coding practices, web application firewalls, software composition analysis, static and dynamic code scanning, Software Bill of Materials (SBOM), and security measures within CI/CD pipelines, all crucial for securing application deployments. Application Security Assurance Tool Experience: Leverage experience with application security assurance tools, including onboarding, triaging issues, and assisting developers, to ensure that applications are built and maintained with robust security measures. Collaboration with Security Engineering: Work closely with the Security Engineering team to integrate security solutions into application development processes, ensuring that security is a fundamental aspect of the application lifecycle. Requirement Creation and Review: Develop and review functional and non-functional security requirements specifically tailored for application projects, ensuring these requirements enhance the security posture of applications. System Architecture Review: Conduct thorough reviews of application architecture and designs to ensure that all solutions have undergone appropriate security assurance and meet established security acceptance criteria, thereby protecting applications from vulnerabilities. Security Reference Patterns Development: Create and present application security reference patterns and technical security standards that guide secure application development, ensuring compliance with the Information Security Policy. Data Security: Create or review implementation of data layer protective and detective control patterns for data storage technologies, from high level SAAS applications to specific technologies, such as databases, Kafka queues, object storage systems. Kubernetes / Cloud Security Expertise: Apply knowledge of Kubernetes / Cloud security technologies to enhance the security of applications deployed in containerized environments, addressing specific risks associated with cloud-native applications. Application Architecture Understanding: Demonstrate a comprehensive understanding of application architecture to apply relevant security controls and systems, minimizing cybersecurity risks specific to the application's design and functionality. Collaborative Project Delivery: Work collaboratively with project delivery and operational teams to ensure that applications are delivered on time and meet high-quality security standards throughout the system delivery lifecycle. Governance Participation: Actively participate in governance forums, such as the Architecture Community and Working Group, to contribute to the development of application security strategies and best practices. Qualifications Academic and Professional Qualifications Required: Relevant university degree in Computer Science, Information Management, or related field, or equivalent experience. Experience with information security and enterprise architecture methods and frameworks (e.g., SABSA, TOGAF, NIST CSF). Cyber security certifications (e.g., SABSA, CCSP, CISSP) or security-specific cloud certifications (AWS, Azure, GCP, Alibaba Cloud, Kubernetes) would be favourably looked upon. Required Knowledge and Experience: Significant and wide experience in the information and cyber security industry. Subject matter expertise in application threat modelling, secure coding practices (e.g., Java or C++, or other languages such as .NET, Node.js, Go) and DevSecOps practices. Experience with automated build and deployment pipelines, and securing artefacts in a pipeline. Experience with software and system assurance methodologies and vulnerability/risk management practices. Experience operating SAST, SCA, DAST, IAST and SBOM. Automation scripting using Python and APIs. Experience with industry best-practice IT design/operation methods (e.g., Agile, Waterfall, ITIL, COBIT). Recent experience delivering security solutions in public and/or private cloud. Optional Knowledge and Experience: Experience with security Kubernetes technologies, secrets management, PKI, service mesh (Istio), etc. Experience developing/contributing to security policies and standards. Experience securing automated build and deployment pipelines and artefacts. Familiarity with internal audit, risk and control management. Relevant information security experience with global exchanges, regulated financial market infrastructure or critical national infrastructure is advantageous. Skills and Core Competencies: Strong, articulate, consensus-building communicator with business acumen and technology knowledge. Ability to explain information security concepts to diverse audiences and manage stakeholders effectively. Capable of delivering in a fast-moving, high-pressure environment with multiple workstreams. Personal Qualities: Open, approachable, and team-oriented; strong oral and written communication. HKEX is committed as an Equal Opportunity Employer. Diversity is one of our core values and we look to support, respect diverse perspectives, abilities, culture and experiences within our workplace. Location HKEX - TKO Shift N/A Scheduled Weekly Hours 40 Worker Type Permanent Seniority level Mid-Senior level Employment type Full-time Job function Information Technology Note: This description reflects the content to be used, excluding referrals and unrelated postings. #J-18808-Ljbffr