Application Security Engineer

JOB DESCRIPTION

Job purpose:
We are seeking an experienced Application Security Engineer to join our team. This role will collaborate with other IT professionals as part of our security engineering team to anticipate and correct vulnerabilities in both client-facing and internal applications. The ideal candidate will not just be an expert in application security but have the expertise and capability to provide technical leadership and guidance on security best practices to the entire development team.
Key responsibilities:
Perform proof of concept testing for new security products
Evaluate new technologies and tools that will impact organization security.
Analyze proprietary and third-party software to identify and address security concerns.
Assess the organization’s security architecture and scan code to identify vulnerabilities.
Guide development teams on defensive coding and remediation techniques
Provide security training and guidance for developer teams
Review existing applications and software to identify security improvements
Install, configure, and use new security tools implemented by the organization
Develop and refine app and product security best practices
Maintain documentation of application security controls
Conduct penetration testing and provide retesting support
Serve as a subject matter expert on common attack vectors and application security for developer teams and organization leadership

JOB REQUIREMENT

4+ years of experience in an IT role, preferably in a security team
Experience assessing vulnerabilities in business software and systems.
Experience establishing software development policies.
Experience with application design, risk assessment, and penetration testing
Experience performing blackbox, greybox, and whitebox security assessments of applications using HTTP and/or proprietary protocols
Container DevSecOps experience
Proficient in at least one programming language such as Java, .NET, or Python
Deep knowledge of common security vulnerabilities
Knowledge of application architectural patterns (MVC, Microservices, etc.)
Knowledge of secure development lifecycle principles
Strong problem-solving and analytical skills
Education and Experience required: Bachelor’s degree in engineering, computer science, information security, or a related field
Prefer Qualifications
Experience with iOS or Android security
Certification in information security (CISSP, CISM, CEH, etc.)

WHAT'S ON OFFER

Competitive salary
13th salary and performance bonus
15 days Annual Leave and 5 days Sick Leave
Healthcare Insurance for employee
Laptop Provided
Career path, training courses
Other benefits of Company will be share details in the offer stage

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

Product

Technical Skills:

Security

Location:

Ho Chi Minh - Viet Nam

Working Policy:

Salary:

Negotiation

Job ID:

J01301

Status:

Close

Related Job:

Presales Consultant

Ho Chi Minh - Viet Nam


Outsource

  • Presale
  • Network
  • Security
  • System

Support Sales & Product Managers: Deliver presales technical consultancy and solution design. Lead Customer Engagements: Conduct technical presentations, product demos, and Proof of Concepts (PoCs). Develop Technical Documents: Analyze customer requirements and prepare solution proposals, architecture designs, and BOMs. Assist with RFP/RFI Responses: Support partner enablement, opportunity qualification, and tender compliance. Conduct Training Workshops: Provide training for partners/resellers and internal teams. Maintain Technical Certifications: Obtain and maintain certifications for relevant vendor technologies. Build Product Expertise: Develop deep knowledge of company solutions to support sales and marketing initiatives. Provide Post-Sales Support: Ensure smooth handover and contribute to customer satisfaction. Offer Market Insights: Support solution positioning and provide content recommendations. Support Business Growth: Perform other duties as required.

Negotiation

View details

DevOps Engineer

Ha Noi - Viet Nam


Outsource

  • Devops

Client Consulting: Directly engage with clients to design solutions and implement DevSecOps practices. Tool Deployment & Configuration: Deploy, install, and configure DevSecOps and CI/CD tools, including: Container Orchestration: Kubernetes, OpenShift Source Code Management: GitLab, GitHub Automation Tools: Jenkins, GitLab CI Artifact Management: Nexus, JFrog Code Scanning: SonarQube, Semgrep, BlackDuck, Coverity Observability Solutions: Deploy, install, and configure logging, monitoring, and tracing systems. CI/CD Pipeline Development: Build and optimize CI/CD pipelines for application delivery. Operational Support: Provide ongoing operational and administrative support for DevSecOps tools and solutions. Research & Innovation: Conduct R&D on emerging technologies in DevOps, DevSecOps, Cloud-Native, and AI.

Negotiation

View details

Software Engineer

Ho Chi Minh - Viet Nam


Outsource

  • Azure
  • .NET

Creating API-based and event-driven integration solutions Developing integration solutions following Azure best practices and cloud-native patterns Constructing integrations using Azure Integration Services like Logic Apps, Functions, API Management, Service Bus, and Event Hubs Installing and managing SAP integrations, such as SAP S/4HANA, SAP PI/PO, or SAP BTP Integration Suite Building and maintaining integrations using C# and the .NET ecosystem Utilizing Infrastructure as Code practices with tools like Terraform Ensuring secure authentication, authorization, and API security utilizing OAuth and best practices Working with architects, developers, and clients to devise end-to-end integration solutions Assisting in deployments, monitoring, and continuous improvement of integration platforms, ensuring reliability and observability in production environments

Negotiation

View details