We are looking for an experienced Solution Architect to lead the design and governance of secure, scalable, and compliant technology solutions within a financial services (insurance) enterprise environment. This role requires strong expertise in modern application frameworks, application security, and network architecture, particularly in designing API Gateway–based communication between frontend channels and backend core insurance systems. The Solution Architect will ensure solutions meet regulatory requirements, enterprise security standards, and business needs while supporting digital transformation initiatives across the insurance value chain.
Key Responsibilities
- Design end-to-end solution architectures for digital insurance platforms, including customer portals, agent systems, and core backend services.
- Define and enforce architecture standards aligned with financial services regulatory, security, and compliance requirements.
- Architect secure and scalable frontend-to-backend communication using API Gateways, supporting omnichannel access (web, mobile, partner integrations).
- Design and review network topology, including API gateways, load balancers, firewalls, DMZ, and secure connectivity to internal and external systems.
- Ensure application and API security best practices are embedded in solution designs, including:
- OWASP Top 10
- Secure API design (OAuth2, OpenID Connect, JWT, mTLS)
- Data encryption in transit and at rest
- Analyze and remediate findings from penetration testing, vulnerability assessments, and security audits, working closely with security teams.
- Collaborate with development, infrastructure, DevOps, security, and risk teams to ensure solutions comply with enterprise policies and regulatory expectations.
- Provide architectural oversight during development, testing, deployment, and production support.
- Evaluate and recommend technologies, frameworks, and platforms suitable for high availability, resiliency, and disaster recovery.
- Produce and maintain architecture artifacts, including solution designs, integration diagrams, and security models.
Required Qualifications
- Bachelor’s degree in Computer Science, Information Technology, or a related field (or equivalent professional experience).
- Proven experience as a Solution Architect or Technical Architect in a financial services or insurance enterprise environment.
- Strong knowledge of modern application frameworks and architectures (e.g., React, Angular, Spring Boot, .NET Core, Node.js, microservices).
- Solid understanding of application security, with hands-on experience addressing:
- Penetration testing findings
- Vulnerability scanning results
- Secure coding and secure API practices
- Strong experience with API Gateway platforms (e.g., Kong, Apigee, AWS API Gateway, Azure API Management).
- In-depth understanding of enterprise network architecture, including:
- Frontend and backend segregation
- API gateway placement
- Load balancing, firewall rules, and secure connectivity
- Familiarity with insurance systems, data sensitivity, and regulatory considerations (e.g., customer data protection, auditability, resiliency).
- Experience with cloud platforms (AWS, Azure, or GCP) and hybrid architectures is an advantage.
- Exposure to CI/CD pipelines and DevSecOps practices is preferred.
Soft Skills
- Strong analytical and problem-solving skills with a risk-aware mindset.
- Excellent communication skills, able to translate complex technical concepts into business-relevant discussions.
- Ability to influence architecture decisions across cross-functional teams without direct authority.
- High level of accountability and ownership in a regulated, enterprise environment.