Cloud Security Architect
At Provido, we’re more than a technology company. We are a global hub of innovation, creativity, and engineering excellence.
Our teams design and deliver intelligent, secure, and high-performance digital solutions that help organizations modernize operations, scale their platforms, and succeed in an increasingly digital world.
As part of a dynamic international ecosystem, we bring together forward-thinking engineers, technology specialists, designers, and delivery professionals who transform ideas into scalable, real-world solutions with measurable business impact.
If you are motivated by challenge, inspired by technology, and ready to grow with a company that truly invests in its people, your journey starts here.
👉 Why We Need You
The Cloud Security Architect is responsible for designing, governing, and continuously improving secure cloud architecture across the organization, with primary focus on Microsoft Azure environments. This role defines security patterns, guardrails, and architecture standards for Azure landing zones, identity and access management, network security, data protection, key management, workload security, logging, monitoring, and compliance controls. The architect will work closely with cloud engineering, infrastructure, application, DevSecOps, security operations, risk, and business teams to ensure cloud services are securely designed, deployed, and operated in alignment with enterprise security policies, regulatory expectations, and industry best practices. While the role may provide guidance across multi-cloud environments where required, Azure security architecture, governance, and control implementation shall be the principal area of responsibility.
👉 What You’ll Be Doing
Design and maintain secure Azure cloud architecture standards, reference architectures, and reusable security patterns for infrastructure, platform, application, and data workloads.
Define and govern Azure landing zone security controls, including management group structure, subscription governance, Azure Policy, resource tagging, network segmentation, security baselines, and compliance guardrails.
Architect identity and access security solutions using Microsoft Entra ID, privileged access controls, conditional access, role-based access control, managed identities, and least-privilege access principles.
Provide security architecture guidance for Azure networking, including hub-and-spoke models, private endpoints, network security groups, Azure Firewall, DDoS protection, application gateways, and secure connectivity patterns.
Define data protection and cryptographic control requirements for Azure workloads, including Key Vault, encryption, secrets management, certificate management, backup, recovery, and secure data storage controls.
Embed security into cloud delivery pipelines by advising DevSecOps teams on infrastructure as code, secure configuration, policy-as-code, vulnerability management, container security, and automated compliance checks.
Partner with security operations teams to ensure Azure logging, monitoring, threat detection, Microsoft Defender for Cloud, Microsoft Sentinel, and incident response requirements are incorporated into cloud designs.
Review cloud solution designs, identify security risks, document architecture decisions, and provide pragmatic remediation guidance to support secure adoption of Azure services.
👉 What You Bring to the Team
Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related discipline.
5+ years of experience in cybersecurity, cloud security, infrastructure security, security architecture, or a related technical security role.
Strong hands-on knowledge of Microsoft Azure security services, including Microsoft Entra ID, Azure Policy, Key Vault, Defender for Cloud, Sentinel, Azure Firewall, private networking, and secure workload configuration.
Experience designing secure Azure landing zones, identity architectures, network security models, logging architectures, and cloud governance controls for enterprise environments.
Ability to translate security, risk, compliance, and business requirements into practical cloud architecture decisions, design documents, and implementation guidance.
Working knowledge of security frameworks and control standards such as ISO 27001, NIST Cybersecurity Framework, CIS Controls, cloud security benchmarks, and regulatory compliance expectations.
Strong communication, stakeholder management, documentation, and influencing skills, with the ability to engage both technical teams and senior business stakeholders.
👉 Preferred Skills
Microsoft certifications such as Microsoft Certified: Azure Security Engineer Associate, Azure Solutions Architect Expert, Cybersecurity Architect Expert, or equivalent Azure-focused security credentials.
Professional certifications such as CISSP, CCSP, CCSK, SABSA, TOGAF, or equivalent architecture, cloud security, or governance certifications.
Experience with infrastructure as code and automation tooling such as Bicep, ARM templates, Terraform, Azure DevOps, GitHub Actions, or equivalent deployment pipelines.
Exposure to application security, container security, Kubernetes security, API security, zero trust architecture, secure software delivery, and cloud-native workload protection.
Familiarity with AWS or Google Cloud security concepts is beneficial; however, Microsoft Azure security expertise is the primary requirement for this role.
Experience supporting audit, risk assessment, control evidence collection, cloud compliance reporting, and remediation planning in regulated or compliance-focused environments.
👉 Why You’ll Love Working with Us
☐ Employee Benefits & Advantages
At Provido, we value our employees and nurture a culture of progress and creativity. Our team members enjoy a supportive, inclusive, and growth-focused environment.
☐ Competitive Compensation & Performance Incentives
Provido offers an attractive salary package and performance-based bonuses to recognize and reward your contribution.
☐ Flexible Working Options
We support remote and hybrid working models to help you maintain a healthy work-life balance.
☐ Health & Well-being Support
We provide comprehensive health insurance, wellness initiatives, and resources to support both physical and mental well-being.
☐ Career Advancement & Development Programs
We invest in continuous learning through training programs, mentorship, and clearly defined career development paths.
☐ Team-Oriented & Inclusive Workplace
Our culture is built on diversity, inclusion, and collaboration. Every voice matters and innovation is encouraged.
☐ Team Events & Social Activities
We organize regular team-building activities and social events to strengthen relationships and create a positive, connected workplace.
- Division
- Provido
- Location
- Malaysia
- Remote status
- Fully Remote
- Employment type
- Contract
- Job Category
- Tech Job
About Provido
Provido provides wholesale IT, network, data storage and processing infrastructure services: the layer applications stand on. Every service level is defined up front, then measured and reported, month after month.