Principal Security Engineer

JOB DESCRIPTION

Partner with Product & Engineering teams to identify cyber attack risks in the system and define tactical and strategic mitigation plans
Conduct complete security lifecycle architecture and technical assessments, including but not limited to design requirements assessment, threat modelling, and risk assessment
Build and champion a standardized set of security requirements and design patterns for internal systems and product offerings.
Maintain SLA's by watching for new vulnerabilities, monitoring existing vulnerabilities, working on false-positives and detection logic changes
Actively participate in company's Software Development Lifecycle (SDLC)
Monitor current and proposed laws, regulations, industry standards and ethical requirements related to privacy and information security.
Influence security strategy and roadmap by leveraging the collective strength of the security team and articulating the capabilities needed to effectively manage the cyber-attack risk
Drive Security QBR in partnership with Product & Engineering   
Represent the company within the security community and with customers on topics related to the security of the company's products and services. 

JOB REQUIREMENT

3+ years in a senior security leadership role  
6+ years’ experience working in a security focused role in the technology or other technology heavy industry (e.g. Financial Services) 
Superb communication and interpersonal skills.
Consistent track record designing and integrating security controls in cloud-based architectures
Significant experience conducting threat modelling and risk assessments of cloud services, demonstrating clear ability to identify unique vulnerabilities
Expert level knowledge at all layers of the information security stack with hands-on security engineering experience on AWS, GCP, TFE, Azure, Kubernetes, etc.
Prior experience working with engineering teams on design and implementation of best-practices for security as code
Have the mindset of "First-Time-Right" and "Secure-By-Default"
Working knowledge of the MITRE ATT&CK, NIST CSF, and CIS Critical Control frameworks
Certified Information System Security Professional (CISSP) or Certified in Risk and Information Systems Control (CRISC) certifications preferred
BS or MS in Computer Science, Information Systems, Engineering or a related field

WHAT'S ON OFFER

Flexible working time and the ability to work remotely from wherever you are, it is a significant advantage for bank candidates.
Attractive income (base salary & performance bonus) in Viet Nam fintech markets
Full-salary paid for social insurance & Premium healthcare package
20 days of annual leave, 10 days of sick leave and public holidays.
Devices provided (Macbook, mouse, monitor…)
Frequent team bonding and company activities/ events.
Work in newly innovated office and open working space.
Improve English skills, learn more about thinking and working style. Fully adopt Agile way of working, lean team structure.
Working with many talented people with good manners from 13 various cultural backgrounds: US, UK, India, China, Spain, etc,…
Empowered to listen creative ideas, and there is no distance between bosses and employees. 

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

Digital Bank, Product

Technical Skills:

Security

Location:

Ho Chi Minh - Viet Nam

Working Policy:

Salary:

Negotiation

Job ID:

J01123

Status:

Close

Related Job:

.NET Engineer

Ho Chi Minh - Viet Nam


Product

  • .NET
  • ReactJS
  • Angular

Take an active role in shaping requirements: Partner with stakeholders to understand their needs and translate them into effective technical solutions. Craft clean, scalable, and maintainable code: Build robust and high-performance applications using .NET languages, adhering to best practices and design patterns. Ensure quality through rigorous testing: Write comprehensive unit and integration tests, and participate in testing and debugging efforts to maintain high quality standards. Contribute to continuous improvement: Review, refactor, and maintain existing code to optimize performance and ensure long-term code health. Document your work effectively: Create clear and concise technical documentation to support ongoing development and maintenance. Collaborate effectively within a cross-functional team: Work closely with engineers, product managers, designers, and testers to achieve shared goals.

Negotiation

View details

Lead Data Engineer

Ho Chi Minh, Ha Noi - Viet Nam


Outsource

  • Data Engineering
  • Management

Architect, develop, and maintain scalable data infrastructure, including data lakes, pipelines, and metadata repositories, ensuring the timely and accurate delivery of data to stakeholders. Work closely with data scientists to build and support data models, integrate data sources, and support machine learning workflows and experimentation environments. Develop and optimize large-scale, batch, and real-time data processing systems to enhance operational efficiency and meet business objectives. Leverage Python, Apache Airflow, and AWS services to automate data workflows and processes, ensuring efficient scheduling and monitoring. Utilize AWS services such as S3, Glue, EC2, and Lambda to manage data storage and compute resources, ensuring high performance, scalability, and cost-efficiency. Implement robust testing and validation procedures to ensure the reliability, accuracy, and security of data processing workflows. Stay informed of industry best practices and emerging technologies in both data engineering and data science to propose optimizations and innovative solutions.

Negotiation

View details

Windows Engineer (C++/C#) - GSaaS

Ho Chi Minh - Viet Nam


Product

  • C/C++

Develop and maintain applications using C# (WinUI framework) and C++ (Qt framework and Win32 API). Participate in the company's software development projects and collaborate with cross-functional teams on software architecture. Develop new features according to requirements, provide development documentation, and participate in code reviews. Troubleshoot, debug, and optimize performance for existing software features and applications. Write high-quality, testable code, ensuring adherence to high code quality standards. Research and integrate new technologies to enhance software products. Mentor junior developers and contribute to team knowledge sharing.

Negotiation

View details