Application Security Engineer
1 week ago
Assurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade, ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, authentication services, governance and assurance services as well as managed processes. In a dynamic digital and cyber landscape, where trust & collaboration are key, ATS continues to drive mutually beneficial business outcomes through collaboration with GovTech, government agencies and commercial partners to mitigate cyber risks and bolster security postures. You will be a member of the application security core center of competency under the Development & Innovation for Technology ProducTisation & Operations (DITTO) department. You will provide application security consultancy and support to the application teams in areas such as security assessments, DevSecOps, security training and awareness to raise the application security level of competency and standards of our people and organisation. Responsibilities Plan the application security roadmap to improve the way application security is practiced in the organisation. Develop secure application development practices, standards, guidelines, and solutions to raise the application security practices of our application teams. Maintain various application security processes and automated source code scanning platform in the organisation. Perform secure code quality reviews and conduct application penetration testing/vulnerability assessment. Support various types of application testing and delivery (e.g. CI/CD) within the organisation. Train and up-skill developers in the area of secure coding in various programming platforms such as Java, C#, PHP etc. and to write security acceptance criteria in user stories. Train the applications team to write security unit tests and perform secure coding assessments. Work with DevOps team to improve security in the CI/CD pipeline. At least 3-5 years combined work experience in software development, application security and cloud computing (e.g. Azure, AWS). Experience in conducting manual secure source code review in at least one of the following programming platforms in both waterfall and Agile approach: Java, PHP, Javascript, C#, Android, iOS. Experience in threat modelling and able to establish threat profiles for application projects to identify, quantify and remediate application security risks. Experience working with mobile and web application programming interfaces (API) architecture (e.g. REST, SOAP, SSL/TLS). Demonstrate knowledge in industry security best practices such as OWASP Top 10, OWASP application security verification standard. Experience on using SAST code scanning tools such as Checkmarx, Sonarqube, etc. Familiar with Agile Development process,CI/CD, DevOps concepts, tools (Git, Gitlab, Github, Jenkins, Ansible etc) and how automated security testing can be incorporated into CI/CI pipelines. Collaborate extensively with various teams (application, networking, infrastructure) to maintain, establish and deliver application security services for the organisation. Good verbal/written communications skills and experience interacting with various stakeholders. Strong interest and passion for the field of application security. Strong problem-solving and troubleshooting skills. Self-reliant with an analytical and creative mind. Experience working with industry APIs such as Apigee or equivalent. Certification in CISSP (Certified Information Systems Security Professional)DevOps related certifications e.g. Azure DevOps Engineer Expert or AWS DevOps Engineer Offensive Security Certified Professional (OSCP), Offensive Security Web Expert (OWSE)Experience in working with Government Commercial Cloud (GCC)Join us and discover a meaningful and exciting career with Assurity Trusted SolutionsThe remuneration package will commensurate with your qualifications and experience. Interested applicants, please click "Apply Now". We thank you for your interest and please note that only shortlisted candidates will be notified. By submitting your application, you agree that your personal data may be collected, used and disclosed by Assurity Trusted Solutions Pte. Ltd. (ATS), GovTech and their service providers and agents in accordance with ATS's privacy statement which can be found at: or such other successor site. A wholly-owned subsidiary of GovTech. We promote a learning culture and encourage you to grow and learn. #J-18808-Ljbffr
-
Application Security Engineer
1 week ago
Singapore Equinix, Inc. Full timeWho are we?Equinix is the world's digital infrastructure company, shortening the path to connectivity to enable the innovations that enrich our work, life and planet. A place where bold ideas are welcomed, human connection is valued, and everyone has the opportunity to shape their future. Help us challenge assumptions, uncover bias, and remove...
-
Application Security Engineer
2 weeks ago
Singapore Emmbr Full timeGet AI‐powered advice on this job and more exclusive features. Direct message the job poster from Emmbr. Bring your passion for secure coding and modern DevSecOps practices into a global business where security is built into every stage of development. You'll play a key role in strengthening product security by embedding best practices, guiding developers,...
-
Application Security Engineer
2 weeks ago
Singapore Equinix Full time $1,200,000 - $2,000,000 per yearWho are we? Equinix is the world's digital infrastructure company, shortening the path to connectivity to enable the innovations that enrich our work, life and planet. A place where bold ideas are welcomed, human connection is valued, and everyone has the opportunity to shape their future.Help us challenge assumptions, uncover bias, and remove...
-
Application Engineer
2 weeks ago
Singapore INSIDER SECURITY PTE. LTD. Full timeRoles & Responsibilities Be the technical expert of InsiderSecurity solutions for our users Achieve customer success by understanding user requirements and supporting users to achieve strong cybersecurity with our solutions Advise customers on the deployment architecture and best practices for our products Deploy and configure our solutions in customer data...
-
Application Security Engineer
4 days ago
Singapore ADDX Full time**Who are we?** - Here at ADDX, we believe in a future where everybody can access financial ecosystems easily, fairly, and safely. That is why we’ve built the world’s first fully regulated platform for digital securities, licensed by the Monetary Authority of Singapore. In 2021, we raised USD 50 million in Series A funding led by Japan Investment...
-
Application Security Engineer
1 week ago
Singapore Doctor Anywhere Full time**About Doctor Anywhere** At Doctor Anywhere, we are guided by the core belief that healthcare should be simple, accessible and efficient for everyone. Since our launch in 2017, we've been disrupting the healthcare industry by developing innovative solutions to bridge gaps in the healthcare ecosystem. Our services integrate both digital and offline...
-
Senior Application Engineer
6 days ago
Singapore Insider Security Pte Ltd Full timeResponsibilities: Be the technical expert of InsiderSecurity solutions for our users Achieve customer success by understanding user requirements and supporting users to achieve strong cybersecurity with our solutions Advise customers on the deployment architecture and best practices for our products Deploy and configure our solutions in customer data centers...
-
Backend Engineer II, Security Posture
2 weeks ago
Singapore Abnormal Security Full timeA leading cybersecurity firm in Singapore is seeking a Software Engineer II (Backend) to enhance their Security Posture Management team. This position involves designing and building robust applications, owning features, and contributing to innovative solutions. Applicants should have over 4 years of experience in backend development with proficiency in Go...
-
Software Engineer 2
2 weeks ago
Singapore Abnormal Security Full timeAbout the role At Abnormal AI, we are on a thrilling mission to safeguard the world's largest enterprises against relentless email and collaboration application cyber security attacks. Our suite of products empowers organizations to seamlessly visualize, expertly control, and fearlessly combat threats. The Security Posture Management (SPM) team is a critical...
-
GRC & Application Security Engineer
2 weeks ago
Singapore Monetary Authority of Singapore Full timeA central financial authority in Singapore seeks a Governance Risk and Compliance Specialist & Application Security Engineer. The role involves ensuring a robust cyber security governance culture, assessing vulnerabilities in software applications, and providing expert advice on ICT compliance. The ideal candidate will have over 5 years of experience in...