We are looking for an experienced DevSecOps / Platform Security Engineer to strengthen security across modern engineering platforms and software delivery.
This is a hands-on role focused on secure CI/CD, platform engineering, security automation and embedding secure-by-design practices across the development lifecycle.
Key Responsibilities:
- Design and enhance secure CI/CD pipelines and reusable automation patterns.
- Embed automated security testing and controls across the software development lifecycle.
- Develop Infrastructure-as-Code and self-service platform capabilities.
- Drive security automation, policy-as-code and automated compliance/evidence collection.
- Improve developer experience through better tooling, workflows and platform services.
- Develop AI and agent-based automation to improve engineering, security and operational processes.
- Provide security architecture and threat modelling guidance for new applications and technology changes.
- Lead key engineering workstreams and collaborate with application, cloud, platform and cybersecurity teams.
- Drive adoption of secure engineering standards and continuously improve platform security and resilience.
Requirements:
- 6-12 years of experience across DevSecOps, security engineering, platform engineering or cloud engineering.
- Strong knowledge of secure SDLC, CI/CD, SAST/DAST, SCA, container security, secrets management and policy-as-code.
- Experience with technologies such as Jenkins, GitLab CI/CD, Terraform, Docker, Kubernetes and AWS/Azure/GCP.
- Scripting and automation experience using Python, Bash, PowerShell or similar.
- Good understanding of IAM, vulnerability management, secure configuration and security standards such as OWASP, NIST and CIS.
To apply:
If you're interested to apply or find out more, please share across your CV or reach out to Chen Yi at ************* for a discussion. Due to anticipated high volume of applications, we regret to inform that only shortlisted candidates will be notified.
Reg: R1876389
Lic: 16S8060