Application Security Engineer

JOB DESCRIPTION

Job purpose:
We are seeking an experienced Application Security Engineer to join our team. This role will collaborate with other IT professionals as part of our security engineering team to anticipate and correct vulnerabilities in both client-facing and internal applications. The ideal candidate will not just be an expert in application security but have the expertise and capability to provide technical leadership and guidance on security best practices to the entire development team.
Key responsibilities:
Perform proof of concept testing for new security products
Evaluate new technologies and tools that will impact organization security.
Analyze proprietary and third-party software to identify and address security concerns.
Assess the organization’s security architecture and scan code to identify vulnerabilities.
Guide development teams on defensive coding and remediation techniques
Provide security training and guidance for developer teams
Review existing applications and software to identify security improvements
Install, configure, and use new security tools implemented by the organization
Develop and refine app and product security best practices
Maintain documentation of application security controls
Conduct penetration testing and provide retesting support
Serve as a subject matter expert on common attack vectors and application security for developer teams and organization leadership

JOB REQUIREMENT

4+ years of experience in an IT role, preferably in a security team
Experience assessing vulnerabilities in business software and systems.
Experience establishing software development policies.
Experience with application design, risk assessment, and penetration testing
Experience performing blackbox, greybox, and whitebox security assessments of applications using HTTP and/or proprietary protocols
Container DevSecOps experience
Proficient in at least one programming language such as Java, .NET, or Python
Deep knowledge of common security vulnerabilities
Knowledge of application architectural patterns (MVC, Microservices, etc.)
Knowledge of secure development lifecycle principles
Strong problem-solving and analytical skills
Education and Experience required: Bachelor’s degree in engineering, computer science, information security, or a related field
Prefer Qualifications
Experience with iOS or Android security
Certification in information security (CISSP, CISM, CEH, etc.)

WHAT'S ON OFFER

Competitive salary
13th salary and performance bonus
15 days Annual Leave and 5 days Sick Leave
Healthcare Insurance for employee
Laptop Provided
Career path, training courses
Other benefits of Company will be share details in the offer stage

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

Product

Technical Skills:

Security

Location:

Ho Chi Minh - Viet Nam

Working Policy:

Job ID:

J01301

Status:

Close

Related Job:

Senior Frontend Engineer (Platform)

Ho Chi Minh - Viet Nam


Outsource

  • ReactJS
  • Typescript

Develop and uphold frontend templates, boilerplates, and libraries to assist product teams in enhancing efficiency. Play a role in enhancing the design system and component library. Aid frontend teams in incorporating and leveraging guidelines, templates, and tools. Ensure an efficient and scalable frontend development setup with contemporary toolchains. Assess the compatibility of new frontend technologies with our existing landscape. Assist in initiating new frontend projects with adherence to predefined standards, best practices, and toolchains. Contribute to establishing and refining frontend standards and best practices within the organization.

Negotiation

View details

QA Engineer - Manual

Ho Chi Minh - Viet Nam


Product

  • Manual Test

Responsible for complete manual QA of web, mobile, and payment processes including functionality, integration, regression, exploratory testing, and User Acceptance Testing (UAT). Develop risk-based testing strategies for releases, including scoping, estimating, preparing test data, defining entry and exit criteria. Ensure seamless end-to-end flows across frontend, backend, and integrations with third-party systems, covering multiple countries, currencies, and payment methods. Conduct API testing using tools like Postman, verifying payment lifecycle and handling of failures such as refunds, settlements, retries, idempotency, and webhooks. Manage defect reporting and triage, communicate quality status and risks effectively, and make evidence-based decisions on whether to proceed with releases. Enhance regression testing coverage and QA processes, fostering close collaboration with Product and Engineering teams.

Negotiation

View details

Embedded Software Engineer (Application Software (ASW), Chinese Speaking)

Ho Chi Minh, Ha Noi - Viet Nam


Outsource

  • Embedded
  • C/C++

Analyze customer function requirements Translate them into detailed specifications for CRPs Design solutions aligned with customer needs and implemented ASW software using ASCET Conduct verification activities, including unit and component testing, for each release cycle Integrat calibration parameters to optimize function performance and efficiency Evaluate vehicle test results to ensure compliance with performance standards Investigate and resolve issues reported by stakeholders such as APP, TPM, and customers

Negotiation

View details