Product Security Engineer
7 days ago
Funding Societies | Modalku is the largest SME digital financing platform in Southeast Asia, expanding into a leading SME neobank. We are licensed and registered in Singapore, Indonesia, Thailand, Malaysia, and operating in Vietnam, and backed by Sequoia India, Softbank Vision Fund and SMBC bank amongst many others. Funding Societies | Modalku provides business financing to small and medium-sized enterprises (SMEs), which is funded by individual and institutional investors. And here at Funding Societies | Modalku we live by our core values:
- Serve with Obsession: Build win-win relationships for the long-term by having a customer obsession.
- Grow Relentlessly: Strive to become our best, most authentic selves.
- Enable Teamwork, Disable Politics: Only by forging togetherness, we help each other succeed.
- Test Measure Act: Stay curious and reinvent ourselves, through innovation and experimentation.
- Focus on Impact: Create impact through bias for action and tangible results.
**Requirements**:
Funding Societies is looking for a Product Security Engineer to join our growing Security team.
As a Product Security Engineer focused predominantly on Static Application Security Testing (SAST) and threat modelling, you will mainly be responsible for securing our software products. You will also be responsible for raising security awareness in our organisation. You will work with multiple stakeholders throughout the Software Development Life Cycle to identify security threats early and develop solutions to mitigate them. You would strengthen the existing security architecture reviews and manual / automated secure code reviews (SAST) capabilities in the team. You will also work with external security vendors and researchers in various security programs.
**Key responsibilities**:
- Conduct design and secure architecture reviews.
- Conduct manual and automated secure code reviews.
- Conduct threat modelling and penetration testing.
- Manage security bugs, including working with the relevant stakeholders to get the security bugs fixed according to the service level agreement.
- Raise security awareness, primarily in Engineering teams, by conducting security awareness trainings, secure code review trainings and discussions.
- Develop security tools, including monitoring tools, and build custom integration with various third-party security tools.
**Required qualifications**:
- A degree in Computer Science, Software Engineering, Information System, or related fields.
- 3+ years of experience in Web/Mobile Application Security (secure code reviews and secure architecture reviews).
- Knowledge around existing threat modelling frameworks, such as STRIDE and PASTA. Threat modelling as Code.
- Be well-versed in microservices architecture and possess extensive experience in Product Security (web and mobile).
- Basic knowledge around Continuous Integration (CI) pipelines and platforms, such as CircleCI and GitHub actions.
- Extensive experience in threat modelling, vulnerability assessment, and penetration testing.
- Good security knowledge, preferably in web and mobile security.
- Good understanding about software design and architecture.
- Web/Mobile development background will be an added advantage.
- Basic knowledge around software composition analysis, supply chain security issues (dependency confusion), and Supply chain Levels for Software Artefacts (SLSA) levels will be an added advantage.
- Good understanding about programming language, and is well-versed in any popular scripting languages, such as Python or JavaScript.
- Good communication skills, both written and verbal.
- Security certifications, such as OSWE (Advanced Web Attacks and Exploitation) will be an added advantage.
**Benefits**
- Time off - We would love you to take time off to rest and rejuvenate. We offer flexible paid vacations as well as many other observed holidays by country. We also like to have our people take a day off for special days like birthdays and work anniversaries.
- Flexible Working - We believe in giving back the control of work & life to our people. We trust our people and love to provide the space to accommodate each and everyone's working style and personal life.
- Medical Benefits - We offer health insurance coverage for our employees and dependents. Our people focus on our mission knowing we have their back for their loved ones too.
- Mental Health and Wellness - We understand that our team productivity is directly linked to our mental and physical health. Hence we have Wellness Wednesdays and we engage partners to provide well-being coaching. And we have our Great FSMK Workout sessions too to keep everyone healthy and fit
- Tech Support - We provide a company laptop for our employees and the best possible support for the right equipment/tools to enable high productivity
-
Duo Product Security Specialist
1 week ago
Singapore Duo Security Full timeDuo Security, now a part of Cisco, is the leading provider of Trusted Access security and multi-factor authentication delivered through the cloud. Duo’s mission is to make security simple for everyone. We were born from a hacker ethos and a desire to make the Internet a secure place. We believe in empowering people to follow their passions inside and...
-
Cyber Security Engineer
2 weeks ago
Singapore SYSCYBER SECURITY SOLUTIONS PTE. LTD. Full timeRoles & ResponsibilitiesJoin our security team and help secure our organization through maintaining, engineering, and deploying security solutions. We use industry-standard security tools, in an automated fashion, to ensure our security teams can operate effectively and provide security to the company.Responsibilities:As an individual contributor on our...
-
Product Security Engineer
7 days ago
Singapore Funding Societies Full time**Description**: Funding Societies | Modalku is the largest SME digital financing platform in Southeast Asia, expanding into a leading SME neobank. We are licensed and registered in Singapore, Indonesia, Thailand, Malaysia, and operating in Vietnam, and backed by Sequoia India, Softbank Vision Fund and SMBC bank amongst many others. Funding Societies |...
-
Security System Engineer
7 days ago
Singapore BluOcean Security Pte Ltd Full timeAs a System & Service Engineer, your primary responsibility will be to provide exceptional maintenance and troubleshooting services to our customers in the region. You will oversee a comprehensive range of after-sales services, including managing service cases, performing routine maintenance, handling power shut-down services, and addressing any other...
-
Senior Process Engineer
1 week ago
Singapore The Chemical Engineer Full timeJob Description Pfizer Singapore is recruiting permanent employees for manufacturing site expansion of PFIZER ASIA MANUFACTURING PTE LTD (PAMPL) in Singapore. Why Patients Need You Whether you are involved in the design and development of manufacturing processes for products or supporting maintenance and reliability, engineering is vital to making sure...
-
Manufacturing Process Engineer II
3 days ago
Singapore The Chemical Engineer Full timeJob Description Are you a dynamic and driven professional eager to make a significant impact in the field of science? Thermo Fisher Scientific Inc. is in search of a Process Engineer II to join our innovative team This role presents a ground-breaking opportunity to work with powerful technologies and be part of a world-class organization devoted to...
-
Product Security Engineer 2
2 weeks ago
Singapore ILLUMINA SINGAPORE PTE. LTD. Full timeRoles & ResponsibilitiesPosition SummaryAs a Product Security Engineer 2 at Illumina, you will contribute to the security of our medical instruments and connected software throughout the product lifecycle. This role requires a solid foundation in product security and software development, with a focus on implementing and supporting security controls in both...
-
Product Security Engineer
1 week ago
Singapore Advance Intelligence Group Full timeHeadquartered in Singapore, Advance Intelligence Group **a Series D 'Double Unicorn' valued at US$2 billion**, and also one of the largest independent technology startups based in Singapore. Founded in 2016, the Group has over 2000+ employees and has presence across South and Southeast Asia, Latin America and Greater China serving 1,000+ enterprise clients,...
-
Security Solution Engineer
1 week ago
Singapore PROGRESO NETWORKS & SECURITY PTE. LTD. Full time**Responsibilities**: - Provide implementation and post-sales support on PKI security products and solutions to customers and partners - Provide technical support to tenders’ submission, including technical compliance, technical solution proposal, bill of material, Proof-of-concept testing,etc. - Prepare technical solution proposals and documentation for...
-
Senior Process Engineer
2 days ago
Singapore The Chemical Engineer Full timeWhy Patients Need You Our breakthroughs would not make it to the hands of patients without our pharmaceutical manufacturing team. We rely on a team of dedicated and agile members, who understand the importance and impact of their role in Pfizer's mission. Patients need colleagues like you who take pride in their work and always look to improve outcomes. You...