Application Security Engineer

2 months ago


Singapore SINGAPORE MARITIME INSTITUTE Full time
Roles & Responsibilities

You will be a key member of the R&D Digital Translation team established under the Singapore Maritime Institute. The R&D Digital Translation team develops and operates digital and cyber products and translates R&D projects to real world implementations for the maritime industry.


You will provide application security consultancy and support to the application teams in areas such as security assessments, DevSecOps, security training and awareness to raise the application security level of competency and standards of our people and organisation.


Key Responsibilities

1. Plan the application security roadmap to improve the way application security is practiced in the organisation.

2. Develop secure application development practices, standards, guidelines, and solutions to raise the application security practices of our application teams.

3. Maintain various application security processes and automated source code scanning platform in the organisation.

4. Perform secure code quality reviews and conduct application penetration testing/vulnerability assessment.

5. Support various types of application testing and delivery (e.g. CI/CD) within the organisation.

6. Train and up-skill developers in the area of secure coding in various programming platforms such as Java, C#, PHP etc. and to write security acceptance criteria in user stories.

7. Train the applications team to write security unit tests and perform secure coding assessments

8. Work with DevOps team to improve security in the CI/CD pipeline


Requirements:

1. At least 3-5 years combined work experience in software development, application security and cloud computing (e.g. Azure, AWS)

2. Background in Computer Science or related field required

3. Experience in conducting manual secure source code review in at least one of the following programming platforms in both waterfall and Agile approach: Java, PHP, Javascript, C#, Android, iOS 4. Experience in threat modelling and able to establish threat profiles for application projects to identify, quantify and remediate application security risks.

5. Experience working with mobile and web application programming interfaces (API) architecture (e.g. REST, SOAP, SSL/TLS)

6. Demonstrate knowledge in industry security best practices such as OWASP Top 10, OWASP application security verification standard

7. Experience on using SAST code scanning tools such as Checkmarx, Sonarqube, etc.

8. Familiar with Agile Development process, CI/CD, DevOps concepts, tools (Git, Gitlab, Github, Jenkins, Anslbe etc) and how automated security testing can be incorporated into CI/CI pipelines

9. Collaborate extensively with various teams (application, networking, infrastructure) to maintain, establish and deliver application security services for the organisation

10. Good verbal/written communications skills and experience interacting with various stakeholders 11. Strong interest and passion for the field of application security.

12. Strong problem-solving and troubleshooting skills.

13. Self-reliant with an analytical and creative mind.


Additional

1. Experience working with industry APIs such as Apigee or equivalent.

2. Certification in CISSP (Certified Information Systems Security Professional)

3. DevOps related certifications e.g. Azure DevOps Engineer Expert or AWS DevOps Engineer

4. Offensive Security Certified Professional (OSCP), Offensive Security Web Expert (OWSE)

5. Experience in working with Government Commercial Cloud (GCC)


Tell employers what skills you have

iOS
Troubleshooting
Application Security
Azure
Cloud Computing
Pipelines
SOAP
REST
User Stories
Agile
Application Development
Security Training
C#
Software Development
CISSP
Agile Development

  • Singapore ANEXT BANK PTE. LTD. Full time

    Roles & ResponsibilitiesWe’re on a mission to make financial services accessible and effortless for SMEs. As one of Singapore’s latest digital wholesale banks fully regulated by MAS, we’re committed to continuous innovation to bring about simpler, safer and more rewarding financial services. #bringingaboutwhatsnextWe are looking for a passionate...


  • Singapore Crypto Full time

    About the RoleCrypto.com is seeking a highly skilled Application Security Engineer to join our team. As a key member of our Security Team, you will play a critical role in ensuring the security and integrity of our systems and applications.ResponsibilitiesConduct security vulnerability assessments and penetration testing to identify and remediate potential...

  • Process engineer

    1 week ago


    Singapore The Chemical Engineer Full time

    Why Patients Need You Whether you are involved in the design and development of manufacturing processes for products or supporting maintenance and reliability, engineering is vital to making sure customers and patients have the medicines they need, when they need them. Working with our innovative engineering team, you'll help bring medicines to the...

  • Security engineer

    6 days ago


    Singapore LZ Security & Service GmbH Full time

    Job Responsibilities: Formulation and implementation of security response plan and security assurance for the whole life cycle of the system. Handle 7 × 24 hour security incident response. Vulnerability management; anti-phishing tasks. Requirements: 5 years+ security experience. Experienced in intrusion detection, event tracing and log analysis. Familiar...

  • Security engineer

    1 week ago


    Singapore LZ Security & Service GmbH Full time

    Job Responsibilities:Formulation and implementation of security response plan and security assurance for the whole life cycle of the system. Handle 7 × 24 hour security incident response. Vulnerability management; anti-phishing tasks. Requirements:5 years+ security experience. Experienced in intrusion detection, event tracing and log analysis. Familiar...

  • Process engineer

    1 week ago


    Singapore The Chemical Engineer Full time

    POSITION SUMMARY Incumbent will be responsible for leading product manufacturing campaigns from the start of production, and providing technical supervision with respect to quality and EHS until completion and release of the material.POSITION RESPONSIBILITIESDevelop Manufacturing/Operating Instructions and necessary Standard Operating Procedures.Develop,...


  • Singapore The Chemical Engineer Full time

    About us At Exxon Mobil, our vision is to lead in energy innovations that advance modern living and a net-zero future. As one of the world’s largest publicly traded energy and chemical companies, we are powered by a unique and diverse workforce fueled by the pride in what we do and what we stand for. The success of our Upstream, Product Solutions and Low...


  • Singapore ROBERT BOSCH SECURITY SOLUTIONS PTE. LTD. Full time

    About the RoleWe are seeking a highly skilled and experienced Senior Security Systems Engineer to join our team at Robert Bosch Security Solutions PTE. LTD.Job DescriptionAs a Senior Security Systems Engineer, you will be responsible for designing and implementing cost-competitive security solutions that meet the needs of our clients. Your primary focus will...


  • Singapore BYTEDANCE PTE. LTD. Full time

    Roles & ResponsibilitiesAbout the Company Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create...


  • Singapore Careerally Pte Ltd Full time

    Key Highlights:Permanent PositionUp to $18,000 + Bonus + comprehensive benefits packageThe Head of Security Engineering will oversee and enhance the security architecture, managing the design and execution of all security engineering initiatives. This leader will drive both proactive and reactive security measures, collaborate across teams, and ensure the...


  • Singapore CAREERALLY PTE. LTD. Full time

    The Head of Security Engineering will oversee and enhance the security architecture, managing the design and execution of all security engineering initiatives. This leader will drive both proactive and reactive security measures, collaborate across teams, and ensure the infrastructure, applications, and data are protected against modern threats....

  • Security Engineer

    1 month ago


    Singapore NETS Singapore Full time

    Position Summary   The Security Engineer plays a critical role in helping to design, implement and maintain various security tools that together form a layered defence against cyber threats.   Key Responsibilities   Security Tools Engineering Work with vendors to drive security projects end-to-end to implement effective security protection for the...

  • Security engineer

    1 week ago


    Singapore ANEXT BANK PTE. LTD. Full time

    We’re on a mission to make financial services accessible and effortless for SMEs. As one of Singapore’s latest digital wholesale banks fully regulated by MAS, we’re committed to continuous innovation to bring about simpler, safer and more rewarding financial services. #bringingaboutwhatsnextWe are looking for a highly motivated Bank Security Engineer...


  • Singapore CAREERALLY PTE. LTD. Full time

    Job Title: Head of Security Engineering Careerally Pte Ltd is seeking a seasoned Head of Security Engineering to lead our security engineering initiatives and drive security measures across our cloud and on-premise environments. This role will oversee the design and execution of all security engineering initiatives, ensuring our infrastructure, applications,...


  • Singapore This Is An IT Support Group Full time

    Key Highlights: Permanent Position Up to $18,000 + Bonus + comprehensive benefits package The Head of Security Engineering will oversee and enhance the security architecture, managing the design and execution of all security engineering initiatives. This leader will drive both proactive and reactive security measures, collaborate across teams, and ensure...


  • Singapore Careerally Pte Ltd Full time

    Key Highlights: Permanent Position Up to $18,000 + Bonus + comprehensive benefits package The Head of Security Engineering will oversee and enhance the security architecture, managing the design and execution of all security engineering initiatives. This leader will drive both proactive and reactive security measures, collaborate across teams, and ensure...

  • Security Engineer

    2 weeks ago


    Singapore GXS BANK PTE. LTD. Full time

    Roles & ResponsibilitiesAbout The TeamWe are the bank's security engineering team - our mission is simple - we make sure that we build and leverage secure systems and operate them at production scale in a secure way. Our engineering teams move fast and are constantly innovating, and our security engineers need to ensure we provide the right tools and...


  • Singapore This Is An IT Support Group Full time

    Key Highlights: Permanent Position Up to $18,000 + Bonus + comprehensive benefits package The Head of Security Engineering will oversee and enhance the security architecture, managing the design and execution of all security engineering initiatives. This leader will drive both proactive and reactive security measures, collaborate across teams, and ensure...

  • Security engineer

    3 weeks ago


    Singapore ANEXT BANK PTE. LTD. Full time

    We’re on a mission to make financial services accessible and effortless for SMEs. As one of Singapore’s latest digital wholesale banks fully regulated by MAS, we’re committed to continuous innovation to bring about simpler, safer and more rewarding financial services. #bringingaboutwhatsnext We are looking for a highly motivated Bank Security Engineer...


  • Singapore CAREERALLY PTE. LTD. Full time

    Roles & ResponsibilitiesThe Head of Security Engineering will oversee and enhance the security architecture, managing the design and execution of all security engineering initiatives. This leader will drive both proactive and reactive security measures, collaborate across teams, and ensure the infrastructure, applications, and data are protected against...