Senior DevSecOps Engineer

1 day ago


Singapore Singapore Power Full time $120,000 - $200,000 per year

Why Work for Us

We Power the Nation.

Make the most of your talents and develop products that can create impact on a national scale. We are an in-house software team, assembled to move with speed and deliver with quality.

We Build Reliable Solutions. For Customers, Company and Country.

You will be part of the Digital Technology Team and together, you will innovate, create, and deploy digital products that will empower more than 3,800 employees within SP Group and improve the quality of life for more than 1.7 million commercial, industrial and residential customers that SP Group serves. We build solutions that enable sustainable high-quality lifestyles and help consumers save energy and cost, as well as supporting national goals for a sustainable liveable city.

Now, imagine the impact you can create.

What You'll Do:

  • Serve as a key technical advisor for the DevSecOps strategy for the engineering teams.
  • Lead the planning and implementation of a comprehensive DevSecOps roadmap to mature our security posture.
  • Foster a culture of security as a shared responsibility across all engineering teams.
  • Mentor and coach engineers on secure coding practices, threat modeling, and vulnerability management.
  • Design, build, and maintain secure CI/CD pipelines, embedding security controls throughout the SDLC.
  • Lead technical implementation workstreams and mentor engineers on advanced security concepts.
  • Partner with development teams to embed security into engineering culture and processes.
  • Influence without direct authority, driving adoption of secure development practices across teams.
  • Develop and implement automation for security testing, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA).
  • Write secure, scalable, and maintainable code in languages such as Python, Go, or Java to build automation tools and security solutions.
  • Manage and secure infrastructure using Infrastructure as Code (IaC) tools like Terraform or CloudFormation.
  • Conduct threat modeling and risk assessments for new and existing applications.
  • Establish and manage a robust vulnerability management program, prioritizing and tracking the remediation of security findings.
  • Collaborate with engineering teams to integrate security controls into application architectures and designs.
  • Act as the primary point of contact for all security-related matters within the engineering organization.
  • Communicate complex cybersecurity concepts and risks to technical and non-technical stakeholders, including senior leadership.
  • Influence and drive consensus on security priorities and investments.
  • Prepare and present reports on the health of the DevSecOps program, including key metrics and KPIs.
  • Communicate a clear technical vision to executive leadership and cross-functional stakeholders.
  • Champion a security-first mindset while enabling rapid innovation and delivery.

What You'll Need:

  • Minimum of 7-10 years of experience in software engineering, DevOps, or a related technical role, with a strong focus on cybersecurity.
  • Proven experience in a lead or senior-level role, with a track record of driving large-scale security initiatives.
  • Demonstrated hands-on experience in building and securing CI/CD pipelines and cloud-native applications.
  • Experience working in a hybrid agile & waterfall environment and a deep understanding of the software development lifecycle (SDLC).
  • Proficiency in at least one major programming language (e.g., Python, Go, Java, or similar).
  • Expertise in CI/CD platforms such as Jenkins, or GitHub Actions.
  • Strong knowledge of cloud platforms (Azure, AWS or GCP) and their native security services.
  • Hands-on experience with containerization and orchestration technologies like Docker and Kubernetes.
  • Deep understanding of security tools and practices, including SAST, DAST, SCA, secrets management & scanning.
  • Familiarity with security frameworks and standards (e.g., OWASP Top 10, NIST, ISO
  • Proficiency with Infrastructure as Code (IaC) tools (e.g., Terraform).
  • Exceptional communication and presentation skills.
  • Strong leadership and mentoring abilities.
  • Excellent problem-solving and critical-thinking skills.
  • Proven ability to influence and collaborate with cross-functional teams and senior management.
  • High degree of adaptability and a continuous learning mindset.
  • Certified Information Systems Security Professional (CISSP) is a plus.
  • Certified DevSecOps Professional (CDP) is a plus.
  • Azure/AWS Certified Security - Specialty or other cloud-specific security certifications are a plus.
  • GIAC certifications (e.g., GCSA, GWEB) are a plus.

What We'll Provide:

  • Opportunity to work on the cutting edge of digital engineering practices
  • Collaborative and fast-paced work environment
  • Be at the forefront of shaping our company's digital future
LI-DNI
LI-NF1

Please click here "Apply", if you are keen to apply for this job.

Thank you for your interest in SP Group. You will be contacted if you are shortlisted for an interview.



  • Singapore nSearch Global Pte. Ltd. Full time $120,000 - $180,000 per year

    Our client, one of Asia-Pacific's leading organizations is looking for:Senior DevSecOps EngineerSupport the development and maintenance of Identity Management System (IMS2.0) redevelopment on the OutSystems low-code platformResponsibilities:Set up, maintain enterprise platform to support development, testing and maintenance of applications.Manage platform...


  • Singapore minden.ai Full time

    **Who we are.** minden.ai is a technology venture founded by Temasek in strategic partnership with DFI Retail Group and coalition partners BreadTalk Group, DBS Bank, PAssion Card, Mandai Wildlife Group, Singtel, GoJek, FoodPanda and Great Eastern. We are on a mission to redefine the engagement between brands and consumers in Southeast Asia. **The way we...


  • Singapore Singapore Technologies Engineering Ltd Full time

    Job ID: 18324 - Location: ST Engineering Hub, SG - Description: **About ST Engineering** **ST Engineering** is a global technology, defence, and engineering group with offices across Asia, Europe, the Middle East, and the U.S., serving customers in more than 100 countries. The Group uses technology and innovation to solve real-world problems and improve...


  • Singapore BitMEX Full time

    BitMEX is the world's leading cryptocurrency derivatives trading platform, which has pioneered cryptocurrency trading through relentless commitment to change, and continues to set benchmarks for innovation, liquidity, and security today. As the world's most advanced peer-to-peer crypto-products trading platform and API, BitMEX gives knowledge, confidence,...


  • Singapore NodeFlair Full time

    We are working with a tech company, and as part of their continued growth, NodeFlair has been engaged to search for a Senior DevSecOps Engineer to join their Singapore team.The package is competitive at SGD 72k-96k (excluding bonus). Role Summary Implement Atlassian tools (e.g., Jira, Bitbucket) and various development, testing, and automation tools Support...


  • Singapore Resorts World at Sentosa Pte Ltd Full time

    Job Responsibilities We are seeking a Senior Platform Engineer to join our team. This role is responsible for implementing platforms and automation that empower developers while ensuring compliance and operational excellence. You\'ll play a key role in streamlining development workflows, enhancing platform reliability, and embedding observability and...

  • DevSecOps Engineer

    7 hours ago


    Singapore ELLIOTT MOSS CONSULTING PTE. LTD. Full time

    Job Description We’re looking for an Application Operations Engineer to take ownership of one or two enterprise applications, covering day-to-day operations, patching, reliability, and production support. You’ll collaborate with build/architecture teams, strengthen our DevSecOps practices, and help maintain secure, scalable online services. Key...

  • DevSecOps Engineer

    1 week ago


    Singapore XCELLINK PTE. LTD. Full time

    We are seeking a skilled and proactive DevSecOps Engineer to join our dynamic technology team. The ideal candidate will be responsible for integrating security into every phase of the software development and deployment lifecycle, ensuring that our applications and infrastructure are robust, secure, and compliant with industry standards. Key Responsibilities...

  • Devsecops Engineer

    6 days ago


    Singapore ASTEK SINGAPORE INNOVATION TECHNOLOGY PTE. LTD. Full time

    ASTEK has been providing IT and Engineering solutions for some of the world’s largest industrial and services groups for more than 35 years with 10,000 passionate experts in 22 countries throughout Europe, APAC, Middle East and the Americas Currently, we are looking for **DevSecOps Engineer**which would be based in Singapore **Responsibilities**: -...

  • DevSecOps Engineer

    6 days ago


    Singapore ELLIOTT MOSS CONSULTING PTE. LTD. Full time $90,000 - $120,000 per year

    Job DescriptionWe're looking for an Application Operations Engineer to take ownership of one or two enterprise applications, covering day-to-day operations, patching, reliability, and production support. You'll collaborate with build/architecture teams, strengthen our DevSecOps practices, and help maintain secure, scalable online services.Key...