Senior DevSecOps Engineer

JOB DESCRIPTION

Manage and execute security assessments for agile projects & ensure project timelines are met.
Identify opportunities to automate and standardize information security controls and for the supported groups
Analyze source code to mitigate identified weaknesses and vulnerabilities within the system
Scan and analyze applications with automated tools, and perform manual testing if necessary
Collaborate with application teams to ensure that any identified security vulnerabilities are remediated in a timely manner.
Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behaviour, conduct and business
practices, and escalating, managing and reporting control issues with transparency.
Utilize Static & Dynamic Application Security Testing (SAST/DAST), Interactive Application Security Testing (IAST), and Component Vulnerability Management (CVM) tools such as Fortify, Snyk, BurpSuite, ZAP etc to uncover additional vulnerabilities 

JOB REQUIREMENT

Qualifications:
At least 5-7 years of relevant experience in DevSecOps (worked with tools in the area of Static Analysis, Dynamic Analysis, Container Analysis, Third Party Library analysis/Software Composition Analysis…)
Has experience in Pentesting in the area of infra/web/mobile/API
Consistently demonstrates clear and concise written and verbal communication.
Must have a strong understanding of Linux, Kubernetes, working knowledge of CI/CD process, Jira & Programming language Python for automation
Has exposure in Vulnerability Management
Education:
Bachelor’s degree/University degree or equivalent experience
Master’s degree preferred

WHAT'S ON OFFER

Why join with us
We build a professional & fun working environment.
We focus on your growth, yes the long-term growth.
We develop the future-ready digital bank platform.
Benefits
Competitive salary and bonus.
Opportunities for your professional growth in fintech, especially in digital banking 
Social insurance (max), premium medical insurance
Parking allowance, snacks, and coffee.
Monthly team-building and social activities.

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

Outsource

Technical Skills:

Security, Devops

Location:

Ho Chi Minh - Viet Nam

Working Policy:

Salary:

Negotiate

Job ID:

J01215

Status:

Close

Related Job:

Senior Information Security Officer (Security Control & Compliance)

Ho Chi Minh - Viet Nam


Product

  • Security

Responsible for implementing, operating, and monitoring application security controls and compliance activities to ensure that enterprise applications are secure, resilient, and compliant with internal policies and external regulatory requirements. #Key Responsibilities: Responsibilities and accountabilities Application Security Implement and operate application security solutions including WAF, DDoS protection, and PAM (Privileged Access Management). Monitor privileged access activities, detect abnormal behavior, and escalate security risks. Collaborate with development and infrastructure teams to ensure security-by-design across the application lifecycle (SDLC/DevSecOps). Support application vulnerability assessment activities and track remediation progress. Compliance & Policy Management Support the development, maintenance, and updates of information security policies and procedures. Ensure compliance with internal security standards and external regulatory requirements (e.g., audit requirements, SSC, Stock Exchange regulations if applicable). Prepare documentation and reports for internal and external audits. Security Monitoring & Reporting Monitor application-related security events and access activities. Analyze and report security risks, vulnerabilities, and incidents to management. Track remediation status of identified security issues and ensure timely resolution. Security Awareness & Training Support the execution of information security awareness programs for employees. Assist in developing training materials and communication related to application security best practices. Project Support & Implementation Participate in research, testing, and deployment of new application security solutions. Support security-related initiatives in digital transformation and system upgrade projects. Contribute to security requirement definition in IT and business projects.

Negotiation

View details

Microsoft D365 F&O Senior Developer

Ho Chi Minh - Viet Nam


Outsource, Product

  • Dynamics 365 FO

Developing, customizing, and extending D365 F&O solutions using X++, SQL DB, .NET, and other relevant technologies, adhering to development guidelines and best practices. Customizing and configuring D365 F&O to align with specific business requirements, such as creating new modules, entities, forms, and reports, as well as modifying existing features. Diagnosing and resolving technical issues, working closely with functional consultants and customers to ensure timely problem resolution. Designing and troubleshooting SQL DB data structures of D365 F&O. Managing source code and application lifecycle with Azure DevOps and LCS tools, including source code repositories, builds, pipelines, and automation. Designing and implementing data integrations between D365 F&O and other enterprise systems to ensure consistent data flow and integrity across the organization. Collaborating with functional consultants and business analysts to clarify business requirements and technical specifications. Deploying the implemented solution, as well as performing system upgrades and applying necessary patches.

Negotiation

View details

DFT Engineer

Ho Chi Minh, Ha Noi - Viet Nam


Outsource

  • Chip DFT
  • DFT

Manage technology in projects and provide technical guidance or solutions for work completion Provide technical guidance or solutions Develop and guide team members in enhancing their technical capabilities and increasing productivity Prepare and submit status reports for minimizing exposure and risks on the project or closure of escalations Ensure process compliance in the assigned module and participate in technical discussions or review.

Negotiation

View details