Application Security Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Application Security Engineer (Cybersecurity): Conducting security assessments, threat modeling, and code reviews for a large-scale government project with an accent on integrating security into the software development lifecycle. Focus on designing secure CI/CD pipelines, implementing DevSecOps principles, and mentoring development teams on secure coding practices.
Location: Hybrid (Singapore)
Company
European technology leader specializing in Consulting, Digital Services, and Software with over 51,000 employees worldwide.
What you will do
- Perform security risk assessments of development environments, DevOps workflows, and CI/CD processes.
- Conduct comprehensive security assessments, threat modeling, and code reviews to identify application vulnerabilities.
- Review and improve identity and access management, network security, and data protection measures.
- Guide application teams on adopting secure development practices and integrating SAST, DAST, and VAPT tools.
- Audit and optimize CI/CD pipelines to align with DevSecOps principles.
- Mentor internal teams on secure coding practices across JavaScript, Node.js, Java, C#, and Python.
Requirements
- Must be based in Singapore
- At least 3 years of experience in application security or software development with a security focus.
- Strong expertise in DevSecOps, cybersecurity, and risk assessment.
- Hands-on knowledge of secure software development lifecycle (SSDLC) principles and tools.
- Experience with vulnerability assessments across common web and mobile technologies.
- Ability to translate complex security requirements into practical, actionable advice.
Culture & Benefits
- Hybrid working mode for better work-life balance.
- 18 days of annual leave.
- Comprehensive health insurance including GP, hospitalization, dental, and optical coverage.
- Annual performance-based bonus.
- Training programs, certification opportunities, and learning incentives.
- Regular team-building activities and social events.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →