Lead Cyber Security (Key & Vault Management Specialist)

atBank of Ayudhya PCL (Krungsri)

Scope Overview


Implement, and operate enterprise-grade cryptographic key management and secrets management solutions within a banking environment. The role will be responsible for ensuring secure key lifecycle management, HSM operations, vault administration, and compliance with regulatory and security standards.


Hands-on experience with Thales Luna HSM is highly preferred.


What you'll do

Cryptographic Key Management

  • Manage end-to-end cryptographic key lifecycle (generation, distribution, rotation, backup, archival, destruction).
  • Administer and operate Hardware Security Modules (HSMs), preferably Thales Luna HSM.
  • Define and enforce key management policies and procedures aligned with banking regulations and industry standards (e.g., PCI DSS, ISO 27001).
  • Support encryption key integration across banking applications, core systems, payment systems, and digital channels.
  • Conduct key ceremonies and maintain audit logs.

Vault & Secrets Management

  • Administer enterprise vault platforms (e.g., HashiCorp Vault or similar).
  • Manage secrets lifecycle (API keys, certificates, tokens, database credentials).
  • Configure access control policies, role-based access, and segregation of duties.
  • Integrate vault solutions with applications, DevOps pipelines, and cloud/on-prem infrastructure.
  • Monitor vault security posture and perform regular health checks.

Security & Compliance

  • Ensure compliance with regulatory requirements (BOT, PCI DSS, SWIFT CSP, etc.).
  • Perform risk assessments related to cryptographic controls.
  • Support audit activities and provide evidence for internal/external auditors.
  • Participate in incident response related to key compromise or vault breaches.

Architecture & Improvement

  • Contribute to cryptographic architecture design and secure key management framework.
  • Support post-quantum cryptography transition planning (if applicable).
  • Recommend best practices and continuous improvements for key and secrets management.


Apply now if you have these advantages

  • Bachelor’s degree or higher in computer science/ data science or any related field.

  • Minimum of 3-7 years of experience in Information Security or Cryptography (Banking Financial industries are advantage)


    · 3–7+ years of experience in Information Security or Cryptography.


    · Hands-on experience with HSM (Thales Luna preferred).


    · Experience in Vault or Secrets Management platforms (e.g., HashiCorp Vault).


    · Experience in banking or financial services environment is highly preferred.

  • Strong understanding of cryptographic principles (PKI, symmetric/asymmetric encryption, TLS, key wrapping, key derivation).
  • Experience with key lifecycle management processes.
  • Knowledge of PKI, certificate management, and CA integration.
  • Familiarity with PCI DSS encryption requirements.
  • Scripting skills (e.g., Bash, Python, PowerShell) are a plus


Why join Krungsri?

  • As a part of MUFG (Mitsubishi UFJ Financial Group), we a truly a global bank with networks all over the world.
  • We offer a striking work-life balance culture with hybrid work policies (3 days in office per week).
  • Unbelievable benefits such as attractive bonuses, employee loan with special rates and many more.



** Apply now before this role is close. **

Stay connected with KRUNGRI CAREER at:

  • FB: Krungsri Career(http://bit.ly/FacebookKrungsriCareer [link removed])
  • LINE: Krungsri Career (http://bit.ly/LineKrungsriCareer [link removed])

Talent Acquisition Department
Bank of Ayudhya Public Company Limited
1222 Rama III Rd., Bangpongpang, Yannawa, Bangkok 10120


หมายเหตุ ธนาคารมีความจำเป็นและจะมีขั้นตอนการตรวจสอบข้อมูลส่วนบุคคลเกี่ยวกับประวัติอาชญากรรมของผู้สมัคร ก่อนที่ผู้สมัครจะได้รับการพิจารณาเข้าร่วมงานกับธนาคารกรุงศรีฯ


Remark: The bank needs to and will have a process for verifying personal information related to the criminal history of applicants before they are considered for employment with the bank.


Applicants can read the Personal Data Protection Announcement of the Bank's Human Resources Function by typing the link from the image that stated below.

EN (https://krungsri.com/b/privacynoticeen)


ผู้สมัครสามารถอ่านประกาศการคุ้มครองข้อมูลส่วนบุคคลส่วนงานทรัพยากรบุคคลของธนาคารได้โดยการพิมพ์ลิงค์จากรูปภาพที่ปรากฎด้านล่าง

ภาษาไทย (https://krungsri.com/b/privacynoticeth)

Experience required
  • any or no experience
Salary
  • Negotiable
Job function
  • Security
Job type
  • Full-time

Company overview

Size:2000-5000 employees
Industry:Banking & Finance
Location:Bangkok
Founded in:1945
Ranking:4.5/5

Bank of Ayudhya Public Company Limited, commonly known as Krungsri, is the fifth-largest bank in Thailand in terms of assets, loans, and deposits.  Established on January 27, 1945, Krungsri offers a comprehensive range of banking and financial services to both individual and corp ...

Read more

Why join us:

Joining Krungsri means becoming part of a leading financial institution with a rich history and a strong commitment to innovation and excellence. As a member of the MUFG network, employees have access to international expertise and opportunities for global collaboration.&nbs ...

Read more

Job location: Yannawa
Head office: สำนักงานใหญ่ 1222 ถนนพระรามที่ 3 แขวงบางโพงพาง เขตยานนาวา กรุงเทพฯ 10120
Display map

Benefits

  • Professional development
  • Social Security
  • Annual bonus
  • Corporate Social Responsibility Initiatives
  • Dental Insurance
  • Health Insurance
  • Learning & Development Opportunities
  • Life Insurance
  • Performance bonus
  • Transport Allowance
WorkVenture gives you an inside look at what it's like to work at Bank of Ayudhya PCL (Krungsri), office & team photos, reviews and more. This is the Bank of Ayudhya PCL (Krungsri) Company Page. All content is posted anonymously by employees currently or previously working at Bank of Ayudhya PCL (Krungsri).Apply to GrabApply to ABBOTTApply to EGATApply to WV