Назад
Company hidden
2 месяца назад

DevOps Security Engineer (DevSecOps)

Формат работы
hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Malaysia
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

DevOps Security Engineer (DevSecOps): Implementing and maintaining security measures within a DevOps environment with an accent on automation and integration. Focus on integrating security controls into the software development lifecycle and conducting regular vulnerability assessments.

Location: Kuala Lumpur, Malaysia (Hybrid: 2 days WFH). Applicants must be eligible or have legal authorization to work in Malaysia.

Company

hirify.global is a global financial services provider operating a dynamic trading platform.

What you will do

  • Implement and maintain automated security measures within the DevOps environment.
  • Collaborate with development teams to integrate security practices into the software development lifecycle (SDLC).
  • Configure and manage security controls including firewalls, access controls, and encryption technologies.
  • Perform security assessments and regular vulnerability scans to identify and remediate issues.
  • Monitor security systems for timely detection and response to security incidents.
  • Share security best practices and provide guidance across engineering teams.

Requirements

  • Up to 3 years of experience in DevOps security or IT security roles.
  • Strong understanding of SSL/TLS, SSH, IPSec, and firewall management.
  • Familiarity with security standards such as OWASP Top 10 and PCI DSS.
  • Experience using vulnerability scanners and penetration testing tools.
  • Practical knowledge of DevOps principles, agile development, and continuous delivery pipelines.
  • Must have legal authorization to work in Malaysia.

Nice to have

  • Familiarity with NIST Cybersecurity Framework and ISO 27001.
  • Exposure to secure coding practices, such as input validation and output encoding.
  • Basic knowledge of security incident response and mitigation.

Culture & Benefits

  • Hybrid work model with 2 days working from home.
  • Annual leave from 22 to 30 days based on tenure.
  • Comprehensive health and life insurance from day one.
  • Summer perk: Friday afternoons off.
  • Birthday leave and referral bonuses.
  • Paid time off for training and professional education.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →