Application Security Engineer

JOB DESCRIPTION

Job purpose:
We are seeking an experienced Application Security Engineer to join our team. This role will collaborate with other IT professionals as part of our security engineering team to anticipate and correct vulnerabilities in both client-facing and internal applications. The ideal candidate will not just be an expert in application security but have the expertise and capability to provide technical leadership and guidance on security best practices to the entire development team.
Key responsibilities:
Perform proof of concept testing for new security products
Evaluate new technologies and tools that will impact organization security.
Analyze proprietary and third-party software to identify and address security concerns.
Assess the organization’s security architecture and scan code to identify vulnerabilities.
Guide development teams on defensive coding and remediation techniques
Provide security training and guidance for developer teams
Review existing applications and software to identify security improvements
Install, configure, and use new security tools implemented by the organization
Develop and refine app and product security best practices
Maintain documentation of application security controls
Conduct penetration testing and provide retesting support
Serve as a subject matter expert on common attack vectors and application security for developer teams and organization leadership

JOB REQUIREMENT

4+ years of experience in an IT role, preferably in a security team
Experience assessing vulnerabilities in business software and systems.
Experience establishing software development policies.
Experience with application design, risk assessment, and penetration testing
Experience performing blackbox, greybox, and whitebox security assessments of applications using HTTP and/or proprietary protocols
Container DevSecOps experience
Proficient in at least one programming language such as Java, .NET, or Python
Deep knowledge of common security vulnerabilities
Knowledge of application architectural patterns (MVC, Microservices, etc.)
Knowledge of secure development lifecycle principles
Strong problem-solving and analytical skills
Education and Experience required: Bachelor’s degree in engineering, computer science, information security, or a related field
Prefer Qualifications
Experience with iOS or Android security
Certification in information security (CISSP, CISM, CEH, etc.)

WHAT'S ON OFFER

Competitive salary
13th salary and performance bonus
15 days Annual Leave and 5 days Sick Leave
Healthcare Insurance for employee
Laptop Provided
Career path, training courses
Other benefits of Company will be share details in the offer stage

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

Product

Technical Skills:

Security

Location:

Ho Chi Minh - Viet Nam

Working Policy:

Job ID:

J01301

Status:

Close

Related Job:

AI Engineer

Ho Chi Minh - Viet Nam


Product

  • AI
  • Python

#AI-Powered Insurance Solutions Develop and deploy machine learning models to support insurance recommendation, pricing, risk assessment, and claims automation Build and maintain AI-powered features integrated into our embedded insurance platform - from data pipelines to inference APIs Design and implement RAG (Retrieval-Augmented Generation) pipelines and LLMbased assistants for internal and customer-facing use cases Collaborate with product and engineering teams to translate business requirements into practical AI solutions Participate in the full ML/AI lifecycle: data collection, feature engineering, model training, evaluation, deployment, and monitoring Contribute to our internal AI agent framework - building, testing, and improving multiagent workflows using LangChain, LangGraph, or similar tools Ensure AI models and services meet performance, reliability, and compliance standards in a regulated (insurance) environment Participate in developing CI/CD workflows for AI/ML/Data pipelines. Contribute to Agent Development Toolkits (ADK) and the automated Software Development Life Cycle (SDLC) that accelerate AI-native feature delivery#R&D & Engineering Tasks Research and experiment with state-of-the-art AI/ML techniques and evaluate their applicability to insurance use cases Prototype new AI capabilities quickly, iterate based on feedback, and graduate successful experiments into production Document experiments, model architectures, and engineering decisions clearly for team knowledge sharing Stay current with the AI ecosystem (LLM advances, agent frameworks, tooling) and bring relevant insights back to the team Support Full Stack Engineers in using the AI Development Toolkit (ADK) to develop applications - guiding and enabling their use of the toolkit rather than building the applications yourself - and maintain a basic understanding of the SDLC to help ensure consistent engineering standards across the platform Contribute to and continuously enhance the system knowledge base, ensuring documentation, patterns, and learnings are accessible to the agents

Negotiation

View details

Backend Engineer

Ho Chi Minh - Viet Nam


Product

  • Typescript
  • NodeJS
  • Python
  • AI

Build the core gateway: a unified, OpenAI-compatible API in front of multiple providers (OpenAI, Anthropic, Google, plus self-hosted and OSS models). Own provider routing and reliability: load balancing, automatic failover, and cost and latency-aware routing. Build billing and metering that is correct, not approximate: per-request token accounting, usage ledgers, cost attribution per team, user, and key, budgets, and spend limits. Ship org controls: API key management, per-team and per-user quotas, rate limiting, and RBAC. Handle streaming and performance: low-overhead proxying, streaming responses, connection handling, and caching where it helps. Contribute to the Jan Agent and connect it to the router: route its model and tool calls through the gateway, and make agent traffic first-class in metering, controls, and observability. Make deliberate speed-versus-correctness calls: move fast where iteration is cheap, refuse to cut corners where a bug means a bad charge or a leaked key, and pay down debt on your own initiative.

Negotiation

View details

Senior Backend Engineer (Shop 6.0)

Ho Chi Minh - Viet Nam


Outsource

  • NodeJS
  • Azure

Design and develop the backend services for the core areas of Shop 6.0 (catalog, orders, payments, ERP Cloud integration) Define API boundaries and ensure consistent, scalable communication between services Own reliable data synchronization between the ERP Cloud and the platform, including error handling and recovery mechanisms Optimize systems for performance and scalability (caching, asynchronous processing, read/write optimization) Establish observability standards (logging, monitoring, alerting) across all backend services Conduct code reviews, promote best practices, and support less experienced team members

Negotiation

View details