Cyber Security Specialist
JOB DESCRIPTION
JOB REQUIREMENT
WHAT'S ON OFFER
CONTACT
Job Summary
Company Type:
Product
Technical Skills:
Security, IT inhouse
Location:
Ho Chi Minh - Viet Nam
Working Policy:
Job ID:
J00768
Status:
Close
Related Job:
Senior IT Product Manager (Business Workflow Platform)
Ho Chi Minh - Viet Nam
Outsource
- Product Management
Product Strategy & LeadershipDefine and drive product vision, roadmap, and strategic direction for enterprise workflow platforms Lead prioritization and investment decisions balancing business value, scalability, risk, and operational efficiency Drive continuous improvement, innovation, and AI-native product transformation initiatives Monitor market trends, emerging technologies, and enterprise workflow best practicesPlatform Modernization & Product DeliveryLead migration and modernization initiatives from legacy platforms to next-generation workflow solutions Collaborate with Product, Engineering, UX, and Architecture teams to deliver scalable enterprise capabilities Ensure high-quality product delivery through Agile product management and execution practices Drive operational excellence, standardization, and platform optimizationService Management & Operational GovernanceEnsure service reliability, platform performance, SLA alignment, and operational stability Implement data-driven monitoring, analytics, and KPI tracking to support decision-making Support governance, security, compliance, and risk management activities Collaborate with stakeholders to ensure smooth adoption and change managementTechnical & Stakeholder ManagementTranslate business needs into clear and scalable technical and product requirements Provide leadership on software architecture, cloud technologies, workflow platforms, and AI-driven capabilities Manage communication, alignment, and engagement across global business and technology stakeholders Collaborate with strategic vendors and technology partners to ensure long-term product and service qualityAgile Leadership & Team EnablementPromote Agile mindset, collaboration, and iterative product delivery practices Empower cross-functional teams to deliver value, improve continuously, and operate effectively Mentor teams and contribute to product management and operational best practices
Negotiation
View detailsSenior AI DevSecOps Engineer
Ho Chi Minh - Viet Nam
Product
- Devops
- AWS
- Azure
- Security
Management of CI/CD Pipeline: Ensure automation, security, and scalability across all stages of the development lifecycle. Infrastructure & Security: Design and implement secure multi-cloud infrastructure solutions leveraging cloud services, containerization, and orchestration tools. Policy as Code: Define and enforce security and compliance policies across Kubernetes clusters using OPA or Kyverno, ensuring guardrails are automated and auditable. AI & Platform Automation: Drive the adoption of AI-powered tools and workflows to automate infrastructure operations, optimize CI/CD pipelines, accelerate root cause analysis, improve security posture, and enhance engineering productivity. Observability & Alerting: Build and maintain a comprehensive observability stack with proactive alerting, dashboards, and runbooks for critical business flows and security events. Secret & Credential Management: Design and enforce secrets management practices across all environments ensuring zero hardcoded credentials in codebases and pipelines. Incident Response & On-Call: Own and continuously improve incident response processes, define runbooks, lead post-mortems, track MTTR, and participate in on-call rotation to maintain platform reliability and SLO adherence. Threat Modelling & Penetration Testing: Conduct regular threat modelling sessions with engineering teams and coordinate or perform penetration testing activities to proactively identify attack surfaces before they reach production. Code Security: Conduct regular code reviews and static/dynamic analysis to identify and remediate security vulnerabilities. Compliance and Best Practices: Ensure compliance with industry standards and best practices. Collaboration: Collaborate with development, operations, and security teams to foster a culture of automation and security-first thinking. Mentorship: Mentor junior engineers and other team members on security best practices. Documentation: Maintain thorough and up-to-date documentation of security policies, procedures, and incident reports. Trend Scouting: Stay updated with the latest trends in technology and AI to integrate innovative solutions into our processes.
Negotiation
View detailsLead Penetration Tester
Ho Chi Minh, Ha Noi - Viet Nam
Outsource
- Security
- Pentest
Conduct authorized penetration testing for various digital platforms, including web applications, mobile applications, APIs, infrastructure, and cloud environments. Identify and document security vulnerabilities, validate and exploit when necessary, covering areas such as authentication, authorization, session management, input validation, encryption, access control, and business logic issues. Perform security assessments according to industry standards (e.g. OWASP Top 10, OWASP API Security Top 10, OWASP Mobile Security Testing Guide) and relevant security practices. Analyze application flows, user journeys, transaction processes, access controls, and data handling mechanisms to uncover potential security risks. Conduct vulnerability assessment and manual verification to reduce false positives, confirming actual exploitability in authorized environments. Retest to validate remediation effectiveness and ensure vulnerabilities are properly resolved. Support security testing activities within the software development life cycle (SDLC), including security requirement review, threat analysis, test planning, and release security validation. Stay updated with emerging cyber threats, attack techniques, security risks, and security testing best practices. Lead the planning, scoping, and execution of penetration testing activities across assigned projects. Define the penetration testing approach, test strategy, testing scope, priorities, timelines, and required evidence based on project and client requirements. Guide and mentor penetration testers or security engineers in testing methodology, vulnerability validation, reporting quality, and remediation discussions. Review vulnerability findings, risk ratings, evidence, and remediation recommendations to ensure accuracy, consistency, and practical value. Serve as the main technical point of contact for penetration testing activities, working with client stakeholders, security teams, development teams, DevOps, infrastructure teams, and compliance teams. Facilitate vulnerability walkthroughs, risk clarification sessions, remediation discussions, and retesting alignment with relevant stakeholders. Support estimation, planning, status tracking, issue escalation, and delivery reporting for security testing activities. Contribute to improving security testing processes, reporting templates, testing checklists, knowledge sharing, and reusable testing practices. Support regulatory, audit, and compliance requirements by providing security testing evidence, reports, remediation status, and technical clarification when needed.