Application Security Engineer
7 days ago
**Job Summary**:
**Job Type**
**Seniority**
Senior
**Years of Experience**
Information not provided
**Tech Stacks**
OpenID Strategy Container OAuth AWS Docker Jenkins SAML LDAP Google Cloud CI Microsoft Azure Java Kubernetes C#.NET PHP
**Position Overview**:
**Essential Duties & Responsibilities**:
- Act as a primary technical resource in development of a comprehensive security program to support various Software Development Lifecycles (SDLCs) and ensure that software developed in this SDLC is free of security vulnerabilities.
- Ensure cybersecurity requirements are met prior to production release.
- Review and understand code from both business logic and technical standpoint.
- Coordinate with developers to prioritize and remediate identified true positive vulnerabilities.
- Collaborate with software development and quality assurance teams to ensure code is free from security defects.
- Communicate cybersecurity standards applicable to technology and coding workflows.
- Working with Application Security Engineers, optimize security with existing technologies and processes.
- Provide technical guidance to developers and engineers on cybersecurity best practices.
- Review performance of controls such as threat modeling, SCA, SAST, DAST, IAST, RASP, Secrets Scanning, Container Scanning, Misconfiguration Identification, Secure Code Review, CI/CD Pipeline Security, Deployment Environment Security.
- Actively seek ways to improve secure software development processes.
**Additional Responsibilities**:
- Develop and maintain security policies, standards, and guidelines.
- Provide remediation guidance and recommendations to developers and administrators based on identified vulnerabilities and existing technology stack.
- Work with software development teams to prioritize and validate the urgency of mitigation of identified product vulnerabilities and security feature enhancement requests.
- Stay updated with the latest cybersecurity threats and trends and incorporate this knowledge into security architecture designs and practices.
- Conduct training and awareness programs to enhance the security posture of the organization. Participate in security audits and assist in regulatory compliance efforts.
- Work closely with IT operations and software development teams to ensure secure systems deployment and operations.
- Actively contribute to the organization’s cybersecurity strategy and roadmap.
**Minimum Qualifications**:
- Outstanding collaboration and communication skills.
- Any of the following combinations of education, professional experience, or both:
At least 2 years of experience in a relevant DevSecOps role and technical degree in computer / information science; or
At least 4 years of experience in a relevant DevSecOps role; or
At least 6 years of related field work experience, at least 1 year of which in a software development role, and at least 1 of which in a cyber security role and technical degree in computer / information science; or
- At least 8 years of relevant field experience, at least 1 year of which in a software development role, and at least 1 year of which in a cyber security role.
- Demonstrated experience working with technical and non-technical staff.
- Basic knowledge of a broad range of IT, Security, Controls and Service Delivery standards and frameworks for example, International Standards Organization (ISO) 27001, IT Infrastructure Library (ITIL), Control Objectives for IT (CoBIT), and Capability Maturity Model Integration (CMMI).
- Experience with Amazon Web Services (AWS), Google Cloud Platform (GCP), Microsoft Azure or other cloud platforms, with experience in developing and implementing software.
- Experience developing software in various coding languages such as Java, C#, PHP, etc.
- Safety is an essential function of this job.
- Consistent and regular attendance is an essential function of this job.
- Ability to execute multiple projects and tasks under tight deadlines.
- Provide off-hours support on an infrequent, but as needed basis. (Potential shifts may run 24/7 due to the needs of the business).
- Strong interpersonal skills with the ability to communicate effectively with guests and other Team Members of different backgrounds and levels of experience.
- Must be able to work varied shifts, including nights, weekends, and holidays.
**Additional Experience Recommended**:
- Professional certification in multiple programming languages (C#,.NET, Java, etc.) recommended.
- Professional certifications in cyber security (CISSP, OSCP, etc.) recommended.
- Experience with CI/CD and pipeline tools such as Jenkins, Docker, Kubernetes, and others.
- Knowledge of cloud platforms and services, with experience in cloud security.
- Experience with automated software and security testing tools and techniques.
- Ability to stay updated with the latest industry trends and advancements in cybersecurity.
- Understanding of enterprise software development practices.
- Experience wo
-
Application Security Engineer
2 weeks ago
Singapore Tata Consultancy Services (TCS) Full time $80,000 - $120,000 per yearJob Role: Application Security EngineerLocation: SingaporeJob Type: Permanent / FulltimeOverall Security solution Architect with 8 yrs of experienceAzure Certification, Security SpecialtyShall possess the necessary skills, knowledge and experience in the following areas:Security management frameworks and governance;Security risk analysis and...
-
Application Security Engineer
1 week ago
Singapore APAR INNOSYS PTE. LTD. Full time**Position Title**: Software Engineer (Application Security Engineer) **Location**: Singapore **Role**: Permanent Role with Apar Innosys Pte Ltd **About the Client** - The Urban Redevelopment Authority (URA) is Singapore’s land use planning and conservation authority. URA’s mission is to make Singapore a great city to live, work and play. -...
-
Application Security Engineer
2 hours ago
Singapore Assurity Trusted Solutions Pte Ltd Full timeAssurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade, ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, authentication services, governance and assurance services as well as managed processes. In a...
-
Application Security Engineer
2 weeks ago
Singapore Assurity Trusted Solutions Full time $120,000 - $180,000 per yearAssurity Trusted Solutions (ATS) is a wholly owned subsidiary of the Government Technology Agency (GovTech). As a Trusted Partner over the last decade, ATS offers a comprehensive suite of products and services ranging from infrastructure and operational services, authentication services, governance and assurance services as well as managed processes. In a...
-
Application Engineer
2 hours ago
Singapore INSIDER SECURITY PTE. LTD. Full timeDescription Be the technical expert of InsiderSecurity solutions for our users Achieve customer success by understanding user requirements and supporting users to achieve strong cybersecurity with our solutions Advise customers on the deployment architecture and best practices for our products Deploy and configure our solutions in customer data centers or...
-
Application Security Engineer
1 day ago
Singapore ADDX Full time**Who are we?** - Here at ADDX, we believe in a future where everybody can access financial ecosystems easily, fairly, and safely. That is why we’ve built the world’s first fully regulated platform for digital securities, licensed by the Monetary Authority of Singapore. In 2021, we raised USD 50 million in Series A funding led by Japan Investment...
-
Application Security Engineer
5 days ago
Singapore Doctor Anywhere Full time**About Doctor Anywhere** At Doctor Anywhere, we are guided by the core belief that healthcare should be simple, accessible and efficient for everyone. Since our launch in 2017, we've been disrupting the healthcare industry by developing innovative solutions to bridge gaps in the healthcare ecosystem. Our services integrate both digital and offline...
-
Senior Application Security Engineer
2 hours ago
Singapore Ascenda Full timeJoin to apply for the Senior Application Security Engineer role at Ascenda Great to Meet You! We are Ascenda. Ascenda powers the growth of leading financial services brands worldwide with premium rewards programs that differentiate their products, drive profitable customer behaviors, and create sustained engagement. We are behind the world-class rewards...
-
Senior Application Engineer
2 hours ago
Singapore Insider Security Pte Ltd Full timeResponsibilities: Be the technical expert of InsiderSecurity solutions for our users Achieve customer success by understanding user requirements and supporting users to achieve strong cybersecurity with our solutions Advise customers on the deployment architecture and best practices for our products Deploy and configure our solutions in customer data centers...
-
Senior Application Security Engineer
2 weeks ago
Singapore Ascenda Full time $180,000 - $250,000 per yearGreat to Meet You We are Ascenda Ascenda powers the growth of leading financial services brands worldwide with premium rewards programs that differentiate their products, drive profitable customer behaviors, and create sustained engagement. We are behind the world-class rewards propositions of major banks and fintechs around the globe, including brands...