What Jobs are available for Application Security in Singapore?

Showing 594 Application Security jobs in Singapore

Application Security Engineer

$120000 - $240000 Y Monetary Authority of Singapore (MAS)

Posted today

Job Viewed

Tap Again To Close

Job Description

What the role is

We are seeking an experienced Application Security Engineer to be part of the Platforms Architecture & Engineering (PAE) and strengthen our organisation's security posture by implementing robust security measures throughout our software development lifecycle. The ideal candidate will work closely with development teams and operation teams to ensure security is embedded in our applications from design to deployment.

What you will be working on

In this position, you will:

  • Conduct security assessments, threat modelling, and code reviews to identify vulnerabilities in applications
  • Design and implement security controls, authentication mechanisms, and encryption solutions
  • Develop and maintain secure coding guidelines and security standards
  • Collaborate with development teams to remediate security issues and provide guidance on secure coding practices
  • Conduct security awareness training sessions for development teams
  • Monitor and respond to security incidents related to application vulnerabilities
  • Evaluate and implement security tools and technologies
  • Maintain documentation of security processes and procedures

What we are looking for

  • Bachelor's degree in Computer Science, Information Security, or related field
  • At least 3 years of experience in application security or software development with security focus
  • Strong knowledge of secure coding practices and OWASP Top 10 vulnerabilities
  • Proficiency in common programming languages (e.g., .Net Core, Java, Python, JavaScript)
  • Experience with security testing tools and methodologies
  • Understanding of cryptography, authentication, and authorisation protocols
  • Knowledge of common security frameworks and standards (ISO 27001, NIST, etc.)
  • Security certifications (CISSP, CEH, OSCP, or equivalent)
  • Experience with cloud security (AWS, Azure, GCP)
  • Knowledge of DevSecOps practices and tools
  • Familiarity with containerisation and microservices security
  • Strong analytical and problem-solving abilities
  • Excellent communication and collaboration skills
  • Experience with security incident response

As part of the shortlisting process for this role, you may be required to complete a medical declaration and/or undergo further assessment.

This is a 2-Year Contract. All applicants will be notified on whether they are shortlisted or not within 4 weeks of the closing date of this job posting.

Is this job a match or a miss?
This advertiser has chosen not to accept applicants from your region.

Senior Application Security Engineer

Singapore, Singapore Acronis

Posted today

Job Viewed

Tap Again To Close

Job Description

Join to apply for the
Senior Application Security Engineer
role at
Acronis
Acronis is revolutionizing cyber protection—providing natively integrated, all-in-one solutions that monitor, control, and protect the data that businesses and lives depend on.
We are looking for a Senior Application Security Engineer to join our mission to create a #CyberFit future and protect all data, applications and systems across any environment. The application security team works to make Acronis applications more secure against all kinds of threats. You will work with good guys on responsible disclosure, find security bugs before bad guys do it, change development processes to prevent bugs, monitor attacks and respond, and create novel solutions to detect and protect applications.
What You'll Do
Threat modeling: Think about how attackers can compromise a system and what protections are needed.
Secure Software Development Lifecycle: Help developers write secure code that minimizes vulnerabilities by implementing secure coding standards, techniques, and best practices.
Security code reviews: Identify security vulnerabilities in source code before an application is deployed to production.
Vulnerability testing and analysis: Discover weaknesses once an application is deployed and advise development teams on remediation.
Conduct security assessments for software components developed in the company.
Validate external security reports and bug bounty submissions.
Take part in the SLDC process development and implementation.
Conduct post-mortem reviews of application security bugs.
Consult engineers on application security matters and train them on secure development practices.
What You Bring
Understanding of security models of Web/REST API, cloud, mobile and desktop apps.
Hands on experience with security assessment tools and attack techniques.
Code assessments in programming languages Go, Python, Ruby, C/C++, JavaScript. Basic programming skills with Go, Python or another language will come handy.
Strong communication skills.
2+ years in Application Security.
Strong knowledge of the modern web, mobile, and network security.
Published security research, open source tools, blog posts, proven history of bug bounty programs participation considered a strong advantage.
Please be ready to answer in an interview the following questions:
What is the Same Origin Policy? Share your knowledge about Cross-site scripting contexts.
Describe any attack like SQL injection, XXE, SSRF, or any other. Suggest right fixes and possible bypasses.
(Windows Security) Your opinion about LPE from Admin to the System user.
How to count possible compromised accounts?
Be ready to write a simple exploit or a few lines of code that allows checking some kind of attacking vector.
Who We Are
Acronis is a global cyber protection company that provides natively integrated cybersecurity, data protection, and endpoint management for managed service providers (MSPs), small and medium businesses (SMBs), enterprise IT departments and home users. Our all-in-one solutions are highly efficient and designed to identify, prevent, detect, respond, remediate, and recover from modern cyberthreats with minimal downtime, ensuring data integrity and business continuity. We offer the most comprehensive security solution on the market for MSPs with our unique ability to meet the needs of diverse and distributed IT environments.
Interview Practices
To maintain a fair and genuine hiring process, we kindly ask that all candidates participate in interviews without the assistance of AI tools or external prompts. Our interview process is designed to assess your individual skills, experiences, and communication style. We value authenticity and want to ensure we're getting to know you—not a digital assistant. To help maintain this integrity, we ask to remove virtual backgrounds and include in-person interviews in our hiring process.
Acronis is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, color, marital status, national origin, physical or mental disability, medical condition, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, gender identity or expression, or any other characteristic protected by applicable laws, regulations and ordinances.
#J-18808-Ljbffr

Is this job a match or a miss?
This advertiser has chosen not to accept applicants from your region.

Senior Application Security Engineer

Singapore, Singapore Ascenda

Posted today

Job Viewed

Tap Again To Close

Job Description

Join to apply for the
Senior Application Security Engineer
role at
Ascenda
Great to Meet You! We are Ascenda. Ascenda powers the growth of leading financial services brands worldwide with premium rewards programs that differentiate their products, drive profitable customer behaviors, and create sustained engagement.
We are behind the world-class rewards propositions of major banks and fintechs around the globe, including brands like American Express, Capital One, Brex, Robinhood, Ramp, HSBC, Virgin Money (Australia), SMBC (Japan), ICBC (China), Bradesco (Brazil), ANZ (Australia), HDFC (India) and many others.
We are a thriving global Loyalty as a Service company and experiencing rapid expansion. Join our dynamic finance team as one of its earliest leaders, contributing to the development of our financial planning strategies as we strive for hypergrowth. Our team spans 20 cities worldwide, with dual headquarters in Singapore and New York, totaling 250 team members.
Join us as a Senior Application Security Engineer in Singapore!
The Role
We are looking for a passionate Application Security Engineer who is keen to learn, grow and bring his/her experience in a fast-paced environment. We promote and do security through (we think) fun and cool stuff.
At Ascenda, our Security Engineers work closely with other engineers like the developers and devops teams, with the common goal of continually improving the security posture of our applications. On some days, we would be conducting pentests on our applications, other days we would be writing, implementing, and working on security engineering projects to suit our security needs.
We have achieved compliance with the most stringent security standards (PCI-DSS, SOC2, ISO27001).
Our partners are financial institutions and airlines, and they expect a very high level of availability, reliability and security.
Your Impact
Scope out and conduct penetration testing on our various applications, and work together with developers to propose and implement a fix for the findings.
Propose and implement projects (SAST/DAST, phishing exercises for example) that ultimately improve the security of our applications and the company as a whole. Suggestions are more than welcome!
Research, analyse, and evaluate the risks of introducing new technologies and tools to our current architecture from a security perspective.
Help Ascenda scale out security tasks and processes using automation.
Conceptualise and comprehend various security requirements, applying them to the company's context, and identifying any gaps. Propose and implement solutions to address these gaps.
Investigate and analyse the occasional security logs and take the necessary actions.
Occasionally provide technical and non-technical security advice to employees. This could range from questions related to "Is this a phishing email?" to "If we design our application in this way, what are the security concerns?".
Constantly be up to date with security trends, news and understanding of their relevance to our security posture.
Work together with the security team on creating security awareness training materials, targeted at both technical developers as well as non-technical people.
Be overall an independent and committed person with a strong tenacity to look into issues deeply.
We Expect You To Have
Experience in scoping and conducting penetration testing on web applications.
Experience in conducting source code reviews across various applications running on microservices architecture.
Knowledge of web application and API security vulnerabilities and how they can be exploited.
Knowledge in scripting (Bash, Python, Javascript, etc).
Knowledge in Linux, AWS, Kubernetes, Terraform, and the Software Development Lifecycle (SDLC).
Familiarity with the concepts of Industrial Security Certifications such as PCI-DSS, SOC2, ISO27001.
Technical Security Certifications such as CREST, OSCP, OSWE (or any of the other Offensive Security Certifications).
Independence and good communication skills, able to interact and work effectively with both technical and non-technical people.
It Will Be a Bonus If You Have
Deep knowledge of Cloud and Container vulnerabilities and exploiting them.
Deep knowledge in exploiting web applications running on ruby frameworks.
Bug Bounty findings and CVEs to your name.
Experience with playing CTFs (Share your writeups!).
Why Join Ascenda?
Ascenda offers the unique opportunity to lead in the loyalty ecosystem space, shaping the future of rewards programs. We are passionate, we keep things simple, we focus on results, we work together & we innovate!
Benefits
High growth environment & exponential career development
Mobile & flexible work environment
WFH office equipment allowance
Medical insurance coverage
Employee recognition programs
Competitive compensation
Travel perks & Employee rewards
Ascenda is dedicated to diversity and inclusion, welcoming candidates from all backgrounds.
Ready to power growth for the financial services industry? Apply now! Together, we'll redefine what's possible.
#J-18808-Ljbffr

Is this job a match or a miss?
This advertiser has chosen not to accept applicants from your region.

Application Security Engineer, Global Monetization

Singapore, Singapore BYTEDANCE PTE. LTD.

Posted today

Job Viewed

Tap Again To Close

Job Description

About Us

Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, including TikTok, Lemon8, CapCut and Pico as well as platforms specific to the China market, including Toutiao, Douyin, and Xigua, ByteDance has made it easier and more fun for people to connect with, consume, and create content.

Why Join ByteDance

Inspiring creativity is at the core of ByteDance's mission. Our innovative products are built to help people authentically express themselves, discover and connect - and our global, diverse teams make that possible. Together, we create value for our communities, inspire creativity and enrich life - a mission we work towards every day.

As ByteDancers, we strive to do great things with great people. We lead with curiosity, humility, and a desire to make impact in a rapidly growing tech company. By constantly iterating and fostering an "Always Day 1" mindset, we achieve meaningful breakthroughs for ourselves, our Company, and our users. When we create and grow together, the possibilities are limitless. Join us.

Diversity & Inclusion

ByteDance is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At ByteDance, our mission is to inspire creativity and enrich life. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too.

About the Team

As part of ByteDance's Security Department, Security BP team is not only responsible for the security and risk management of the Monetization business, but also plays an important role in connecting and building trust between the business and security team. Leveraging on various capabilities provided by the Security Department, we ensure the business and customer data are secured by providing high-quality services to the Monetization business, such as platform security, product security, business security and compliance governance.

Responsibilities

- Provide security engineering support to product teams to help identify potential security flaws in the early stages of SDLC.

- Continuously design and conduct penetration testing to determine if infrastructure components, systems and applications meet security standards in the staging/production environment.

- Discover security issues that appear under new threat scenarios, support incident response, forensics, remediation in a cross-functional environment driving towards incident resolution.

- Collaborate closely with other parts of the security team and product teams to design defense-in-depth controls that limit attackers' ability and improve our security postures.

- To identify risks and actively take ownership to resolve any potential security project issues.

- Continuously conduct security research and strive to innovate.

Minimum Qualifications

- Background in Computer Science, Computer Engineering, Information Systems or other STEM disciplines.

- Strong knowledge in some of these various disciplines: web application security, mobile app security, cloud security and thick client security.

- Solid experience in writing and reviewing code in at least one of the following programming languages: JavaScript (Node JS), Go, Python, Java, C++, Rust.

- Good project management skills and focused teamwork.

Preferred Qualifications

- Experience in independent supporting the application security of a business line

- CTF players, BugBounty experience with reputable statistics in HackerOne, BugCrowd etc.
Is this job a match or a miss?
This advertiser has chosen not to accept applicants from your region.

Web Application Security Engineer APAC

Singapore, Singapore Bank Julius Bär & Co. Ltd.

Posted today

Job Viewed

Tap Again To Close

Job Description

At Julius Baer, we celebrate and value the individual qualities you bring, enabling you to be impactful, to be entrepreneurial, to be empowered, and to create value beyond wealth. Let's shape the future of wealth management together.Julius Baer Group Ltd. acts in the sector Private Banking and is present in over 25 countries and around 60 locations. With the Headquartered in Zurich, we have offices in key locations including Bangkok, Dubai, Dublin, Frankfurt, Geneva, Hong Kong, London, Luxembourg, Madrid, Mexico City, Milan, Monaco, Mumbai, Santiago de Chile, São Paulo, Shanghai, Singapore, Tel Aviv and Tokyo. Join our global team and play a critical role in safeguarding our digital landscape as a Web Application Security Engineer. We're seeking a skilled expert to maintain and enhance the protection of our online platforms, ensuring the highest level of security for our clients worldwide.# **YOUR CHALLENGE***Main Job Responsibilities*** Work closely with our global team of engineers to ensure the smooth operation and maintenance of the Web Application Firewall (WAF) infrastructure* Enhance the security of web applications and APIs by implementing advanced protective measures on the WAF and configuring custom application-specific security policies* Onboard new web applications and APIs onto the WAF infrastructure, ensuring seamless integration and optimal security* Evaluate new or changed business requirements and assess their feasibility, as well as their impact on surrounding systems, standards, and guidelines* Troubleshoot technical issues related to WAF, identifying root causes and developing effective solutions* Participate in the 2nd and 3rd level support organization, providing on-duty support and collaborating with other teams to resolve incidents* Continuously improve the service reliability, security, performance, monitoring, and automation of the WAF infrastructure, with a focus on enhancing overall system availability and efficiency**Client Management (internal & external)*** Various IT functions, both regionally and globally* Local Legal and Compliance functions**Business Management*** Key local stakeholders include IT Service Owners, IT Infrastructure, IT Application Managers, IT Architecture and Project Managers* CRO functions – including Business Operational Risk, Information Security and Compliance functions* Global functions – IT Security Solutions, Security Architecture* Establish strong relationship with key stakeholders and across the internal IT**Regulatory Responsibilities &/OR Risk Management*** Ensure appropriate ethical and compliant behaviour within the area of responsibility by clear demonstration of appropriate values and behaviours including but not limited to standards on honesty and integrity, due care and diligence, fair dealing (treating customers fairly), management of conflicts of interest, competence and continuous development, adequate risk management, and compliance with applicable laws and regulations**RANK APPLICABLE TO THE POSITION*** Rank:
AD# **YOUR PROFILE***Professional and Technical*** Profound understanding of security best practices of web applications and APIs* Solid understanding of web communication protocols such as TLS, Websocket, etc* Hands-on operational experience with highly available and scalable web infrastructure* Hands-on experience with operating WAF or reverse-proxy solutions such as F5, Imperva, Nevis, Cloudflare, or open-source alternatives like ModSecurity* Experience in software engineering (Java, Spring Boot, React, Typescript) and operational experience with Kubernetes-based environments* Strong troubleshooting and structured problem-solving skills* Skilled in log analytics and correlation, with hands-on experience in Splunk, Elastic or similar toolings, to investigate incidents and identify root causes* Familiarity with the implementation of authentication and federation mechanisms such as SAML, OAuth and OIDC and FIDO* Good technical foundation of Linux operating systems and its command line tools* Relevant academic background (e.g., Bachelor's or Master's degree in Computer Science, Cybersecurity, or related field) or industry-recognized certifications (e.g. CISSP) with relevant practical knowledge is desired**Personal and Social*** Team player, strong collaborator with the willingness to take ownership* Excellent communication skills in spoken and written form* Strong desire to learn and develop new skills* Methodical and results-driven approach to new challenges and tasks* Independent and self-driven* Ability to thrive in a globally distributed team environment**Regulatory*** Good understanding of the technology regulatory framework in Singapore and Hong KongWe are looking forward to receiving your full job application through our online application tool. Further interesting job opportunities can be found on our .**job alert** by creating a candidate account .**The** **international reference in wealth management**Julius Baer is the leading Swiss wealth management group. We focus on servicing and advising sophisticated private clients from around the world, taking into account what truly matters to them – in their business and personal life, today and for future generations.Headquartered in Zurich, we are present in around 60 locations worldwide, including Bangkok, Dubai, Dublin, Frankfurt, Geneva, Hong Kong, London, Luxembourg, Madrid, Mexico City, Milan, Monaco, Mumbai, Santiago de Chile, Shanghai, Singapore, Tel Aviv, and Tokyo.At Julius Baer our employees enjoy the benefits of a global company with the support and collegiality of a much smaller one. We are growing quickly, but we remain dedicated to maintaining our accessible structure with flat hierarchies, and approachable and supportive leaders.With offices around the world, we offer an international and stimulating work environment and the opportunity to work with a diverse team of highly motivated colleagues, bringing the best of the bank to our clients.
Our core values of Care, Passion, and Excellence define the tone of how we interact with each other and our partners. **Committed to your success**Whether nurturing young talent with our renowned apprentice scheme, enabling ambitious university graduates to put theory into practice with our Graduate Programme, or providing first-class opportunities for experienced professionals, we look after our employees. We believe in continuous learning as a company and as individuals, which is why we put a focus on the health and well-being of our employees and offer flexible working options, a wide array of benefits, and extensive career development programmes.For more information visit
or contact us via the
.For recruiting agents, please see the additional information .
#J-18808-Ljbffr

Is this job a match or a miss?
This advertiser has chosen not to accept applicants from your region.

Application Security Engineer, Global Monetization

Singapore, Singapore ByteDance

Posted today

Job Viewed

Tap Again To Close

Job Description

Overview
Application Security Engineer, Global Monetization
As part of ByteDance's Security Department, Security BP team is responsible for the security and risk management of the Monetization business and plays a role in connecting and building trust between the business and security teams. The team provides high-quality services to secure the Monetization business and its data, including platform security, product security, business security and compliance governance.
Responsibilities
Provide security engineering support to product teams to help identify potential security flaws in the early stages of SDLC.
Continuously design and conduct penetration testing to determine if infrastructure components, systems and applications meet security standards in the staging/production environment.
Discover security issues that appear under new threat scenarios, support incident response, forensics, remediation in a cross-functional environment driving toward incident resolution.
Collaborate closely with other parts of the security team and product teams to design defense-in-depth controls that limit attackers' ability and improve our security postures.
Identify risks and actively own and resolve any potential security project issues.
Continuously conduct security research and strive to innovate.
Qualifications
Minimum Qualifications
Background in Computer Science, Computer Engineering, Information Systems or other STEM disciplines.
Strong knowledge in web application security, mobile app security, cloud security and thick client security.
Solid experience in writing and reviewing code in at least one of these languages: JavaScript (Node JS), Go, Python, Java, C++, Rust.
Good project management skills and focused teamwork.
Preferred Qualifications
Experience in independently supporting the application security of a business line.
CTF players, BugBounty experience with reputable statistics in HackerOne, BugCrowd, etc.
About Us
Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With a suite of more than a dozen products, ByteDance has made it easier and more fun for people to connect with, consume, and create content.
Why Join ByteDance
Our mission is to inspire creativity and enrich life. We strive to foster curiosity, humility, and impact in a rapidly growing tech company, with an "Always Day 1" mindset to achieve meaningful breakthroughs for ourselves, our company, and our users. We welcome diverse teams and viewpoints and value collaboration.
Diversity & Inclusion
ByteDance is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. We celebrate diverse voices and aim to reflect the communities we reach.
#J-18808-Ljbffr

Is this job a match or a miss?
This advertiser has chosen not to accept applicants from your region.

Web Application Security Engineer APAC

Singapore, Singapore Julius Baer

Posted today

Job Viewed

Tap Again To Close

Job Description

Join to apply for the
Web Application Security Engineer APAC
role at
Julius Baer
1 week ago Be among the first 25 applicants
Join to apply for the
Web Application Security Engineer APAC
role at
Julius Baer
At Julius Baer, we celebrate and value the individual qualities you bring, enabling you to be impactful, to be entrepreneurial, to be empowered, and to create value beyond wealth. Let's shape the future of wealth management together.
Julius Baer Group Ltd. acts in the sector Private Banking and is present in over 25 countries and around 60 locations. With the Headquartered in Zurich, we have offices in key locations including Bangkok, Dubai, Dublin, Frankfurt, Geneva, Hong Kong, London, Luxembourg, Madrid, Mexico City, Milan, Monaco, Mumbai, Santiago de Chile, São Paulo, Shanghai, Singapore, Tel Aviv and Tokyo. Join our global team and play a critical role in safeguarding our digital landscape as a Web Application Security Engineer. We're seeking a skilled expert to maintain and enhance the protection of our online platforms, ensuring the highest level of security for our clients worldwide.
YOUR CHALLENGE
Main Job Responsibilities
Work closely with our global team of engineers to ensure the smooth operation and maintenance of the Web Application Firewall (WAF) infrastructure
Enhance the security of web applications and APIs by implementing advanced protective measures on the WAF and configuring custom application-specific security policies
Onboard new web applications and APIs onto the WAF infrastructure, ensuring seamless integration and optimal security
Evaluate new or changed business requirements and assess their feasibility, as well as their impact on surrounding systems, standards, and guidelines
Troubleshoot technical issues related to WAF, identifying root causes and developing effective solutions
Participate in the 2nd and 3rd level support organization, providing on-duty support and collaborating with other teams to resolve incidents
Continuously improve the service reliability, security, performance, monitoring, and automation of the WAF infrastructure, with a focus on enhancing overall system availability and efficiency
Client Management (internal & external)
Various IT functions, both regionally and globally
Local Legal and Compliance functions
Business Management
Key local stakeholders include IT Service Owners, IT Infrastructure, IT Application Managers, IT Architecture and Project Managers
CRO functions – including Business Operational Risk, Information Security and Compliance functions
Global functions – IT Security Solutions, Security Architecture
Establish strong relationship with key stakeholders and across the internal IT
Regulatory Responsibilities &/OR Risk Management
Ensure appropriate ethical and compliant behaviour within the area of responsibility by clear demonstration of appropriate values and behaviours including but not limited to standards on honesty and integrity, due care and diligence, fair dealing (treating customers fairly), management of conflicts of interest, competence and continuous development, adequate risk management, and compliance with applicable laws and regulations
RANK APPLICABLE TO THE POSITION
Rank: AD
YOUR PROFILE
Professional and Technical
Profound understanding of security best practices of web applications and APIs
Solid understanding of web communication protocols such as TLS, Websocket, etc
Hands-on operational experience with highly available and scalable web infrastructure
Hands-on experience with operating WAF or reverse-proxy solutions such as F5, Imperva, Nevis, Cloudflare, or open-source alternatives like ModSecurity
Experience in software engineering (Java, Spring Boot, React, Typescript) and operational experience with Kubernetes-based environments
Strong troubleshooting and structured problem-solving skills
Skilled in log analytics and correlation, with hands-on experience in Splunk, Elastic or similar toolings, to investigate incidents and identify root causes
Familiarity with the implementation of authentication and federation mechanisms such as SAML, OAuth and OIDC and FIDO
Good technical foundation of Linux operating systems and its command line tools
Relevant academic background (e.g., Bachelor's or Master's degree in Computer Science, Cybersecurity, or related field) or industry-recognized certifications (e.g. CISSP) with relevant practical knowledge is desired
Personal and Social
Team player, strong collaborator with the willingness to take ownership
Excellent communication skills in spoken and written form
Strong desire to learn and develop new skills
Methodical and results-driven approach to new challenges and tasks
Independent and self-driven
Ability to thrive in a globally distributed team environment
Regulatory
Good understanding of the technology regulatory framework in Singapore and Hong Kong
We are looking forward to receiving your full job application through our online application tool. Further interesting job opportunities can be found on our Career site.
Is this not quite what you are looking for? Set up a
job alert
by creating a candidate account here.
Seniority level
Seniority level Mid-Senior level
Employment type
Employment type Full-time
Job function
Job function Information Technology
Industries Banking
Referrals increase your chances of interviewing at Julius Baer by 2x
Sign in to set job alerts for "Application Security Engineer" roles.
Application Security Engineer- Global Payment
Security Engineer - Application/Product Security, APAC
Application Security Engineer (AAD) (Contract)
Application Security Engineer Graduate (Security Assurance) - 2026 Start (BS/MS)
Application Security Engineer Intern, Security Assurance - 2025 Start
Application Security Engineer Graduate (Security Assurance) - 2026 Start (BS/MS)
Senior Application Security Engineer (Bangkok based, relocation provided)
Senior/Staff Application Security Engineer (Bangkok based, relocation provided)
Web Application Security Engineer (CIAM & WAF) APAC
Cyber Security Solution Architect, Cybersecurity, Technology Con
Cyber Security Solution Architect, (Cyber Transformation & Operation)
VP/AVP, End User Collaborative Service (Engineering), Future Ready Technology, Group Technology
Executive Systems Analyst (Network Specialist)
We're unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr

Is this job a match or a miss?
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Application security Jobs in Singapore !

Application Security Engineer- Global Payment

Singapore, Singapore ByteDance

Posted today

Job Viewed

Tap Again To Close

Job Description

Overview
Application Security Engineer - Global Payment role at ByteDance. The Security Assurance Team builds infrastructures, platforms and technologies to protect users, products and infrastructure, collaborating with cross-functional teams on secure-by-design solutions at scale.
Responsibilities
Provide security engineering support to product teams to help identify potential security flaws in the early stages of SDLC.
Continuously design and conduct penetration testing to determine if infrastructure components, systems and applications meet security standards in staging/production environments.
Identify security issues under new threat scenarios, support incident response and forensics, and drive remediation in a cross-functional environment toward incident resolution.
Collaborate with other security teams and product teams to design defense-in-depth controls that limit attackers' ability and improve security postures.
Identify risks and take ownership to resolve potential security project issues.
Continuously conduct security research and strive to innovate.
Qualifications
Minimum Qualifications
Background in Computer Science, Computer Engineering, Information Systems or other STEM disciplines.
Strong knowledge in web application security, mobile app security, cloud security and thick client security.
Experience in writing and reviewing code in at least one of: JavaScript (Node.js), Go, Python, Java, C++, Rust.
Good project management skills and focused teamwork.
Preferred Qualifications
Experience independently supporting the application security of a business line.
CTF players, BugBounty experience with reputable statistics on HackerOne, BugCrowd, etc.
About Us
Founded in 2012, ByteDance's mission is to inspire creativity and enrich life. With products including TikTok, Lemon8, CapCut and Pico, and platforms in China such as Toutiao, Douyin, and Xigua, ByteDance connects people to content in meaningful ways.
Why Join ByteDance
We pursue creativity through innovative products that help people express themselves, discover, and connect. Our global, diverse teams aim to create value for communities and users. We foster curiosity, humility, and impact with an "Always Day 1" mindset.
Diversity & Inclusion: ByteDance is committed to an inclusive space where employees are valued for their skills and perspectives. We celebrate diverse voices and strive to reflect the communities we reach.
Note: This listing is for the Global Payment role; other related Application Security Engineer roles and details may be listed separately.
We're unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr

Is this job a match or a miss?
This advertiser has chosen not to accept applicants from your region.

Advanced Application Security Analyst

Singapore, Singapore beBeeCybersecurity

Posted today

Job Viewed

Tap Again To Close

Job Description

IT Security Specialist

Seeking an experienced IT Security Specialist with a focus on Cyber Security to support our organization's security goals.

Key Responsibilities:
  • Perform application security assessments including SAST, SAC, DAST, and penetration testing to identify vulnerabilities and ensure secure application development.
  • Collaborate with development teams to integrate security requirements throughout the software development lifecycle.
  • Establish, promote, and enforce secure coding standards and best practices.
  • Develop, implement, and maintain security policies and standard operating procedures.
  • Partner with infrastructure teams to embed security into infrastructure architecture and design.
Technical Requirements:
  • Understanding of the SDLC and agile process.
  • Strong knowledge of web application security concepts such as OWASP Top 10.
  • Knowledge with security assessment tools such as Burp Suite.
  • Knowledge of programming languages such as Java, C#, Python, or Ruby.
  • Knowledge of scripting languages such as PowerShell, Python, or Bash.
Benefits
  • Opportunity to contribute to a dynamic team focused on ensuring the security of our systems.
  • Professional growth opportunities in a rapidly evolving field.
  • Flexible work arrangements.
Is this job a match or a miss?
This advertiser has chosen not to accept applicants from your region.

Associate Director, Application Security

Singapore, Singapore AIA Singapore

Posted today

Job Viewed

Tap Again To Close

Job Description

Associate Director, Application Security
At AIA we've started an exciting movement to create a healthier, more sustainable future for everyone.
As pioneering innovators for over 100 years, we're now transforming our organisation to be faster, simpler and more connected. Because we want to be even better equipped to develop digital solutions and experiences that help more people live Healthier, Longer, Better Lives.
To get there, we need people with tech/digital/analytics expertise and passion to help develop positive, sustainable change through digitally enhanced experiences that will impact the lives of millions of people and create a healthier future for everyone.
If you believe in developing a better tomorrow, read on.
About The Role
The incumbent will be managing team members in SG/Cyber Technology Centre (Malaysia)/Batam Technology Centre (Indonesia) and responsible for defining and overseeing the organization's application security architecture, ensuring alignment with target architectures and modern development practices.
What You'll Be Doing
Strategic Oversight of Security Architecture
Define, design, and implement the target application security architecture in line with organizational goals and industry/regulatory standards.
Establish a comprehensive application security strategy, ensuring seamless integration into enterprise architecture and technology roadmaps.
Conduct architectural reviews to identify risks and recommend mitigation strategies, focusing on secure and scalable solutions.
CI/CD Pipeline Security
Lead the integration of security controls into CI/CD pipelines, ensuring automated detection and remediation of vulnerabilities.
Secure Software Development Lifecycle (SDLC)
Develop and enforce secure development guidelines, ensuring security is incorporated at every stage of the SDLC.
Provide leadership in threat modelling, secure coding practices, and software code quality management across development teams.
Work with application teams to prioritize security requirements, balancing business objectives with technical risks.
Vulnerability Management and Mitigation
Oversee the overall strategy for SAST, DAST, to identifying and remediating vulnerabilities.
Ensure timely resolution of identified issues, coordinating efforts across development, QA, and DevOps teams.
Maintain and communicate detailed metrics and dashboards on the security posture of applications and pipelines.
Cross-Functional Collaboration
Partner with application teams to align security architecture with business needs and project timelines.
Act as the primary liaison between technical teams and executive leadership, effectively conveying security risks and architectural priorities.
WE ARE LOOKING FOR SOMEONE WITH | YOU WILL HAVE:
Bachelor's degree of computer science, Information Security, or a related field. A Master's degree would be an added advantage.
Information Systems Security professional certifications, such as CISSP, CSSLP, CEH, OSCP or CREST.
At least 15 years of experience in cybersecurity, with a focus on application security, security architecture, and secure development practices.
Proven expertise in designing and implementing security controls within CI/CD pipelines in Agile and DevOps environments.
Demonstrated success in defining and overseeing secure application architectures for cloud-native and hybrid environments.
Deep understanding of secure software development lifecycle (SDLC) methodologies and best practices.
A team-player with systematic problem-solving approach, and have sense of ownership and drive.
Must have strong people skill to lead a team effectively and demonstrable experience of working at the most senior levels of large and complex organizations.
Excellent interpersonal skills and stakeholders management.
Always have customer in mind when dealing with any situations/projects/deliverables.
Interprets customer needs, assesses requirements and identifies solutions to non-standard requests.
Able to negotiate with, influence and engage others in complex and conflicting situations across multiple parties to drive a positive outcome.
Good communication skills and the communication network of the incumbent is expected to be internally within the enterprise (80%) and external with Vendors and Service Providers (20%).
Build a career with us as we help our customers and the community live Healthier, Longer, Better Lives.
You must provide all requested information, including Personal Data, to be considered for this career opportunity. Failure to provide such information may influence the processing and outcome of your application. You are responsible for ensuring that the information you submit is accurate and up-to-date.
ABOUT AIA
For over a century, AIA has served the ever-changing needs of our customers across Asia-Pacific. Our Purpose to help millions of people live Healthier, Longer, Better Lives is at the heart of everything we do.
As pioneering innovators, we're now transforming AIA to be faster, simpler and more connected to create better solutions and impactful experiences for our customers and communities. AIA encourages and enables our people to act with clarity, courage and humanity in service of our Purpose.
JOIN US
At AIA, we believe in empowering every one of our people to find their 'better' - in the work they do, the career they build, the life they live and the difference they make. Whether it's investing better wellbeing, inspiring better learning, building better relationships, or making a better impact on customers, a career at AIA will challenge you to find new ways to pursue your 'better'.
AIA is committed to building a vibrant, diverse, and inclusive workforce for all employees to thrive in. Join us if you believe in creating a better tomorrow!
Seniority level
Director
Employment type
Full-time
Job function
Information Technology
Insurance
#J-18808-Ljbffr

Is this job a match or a miss?
This advertiser has chosen not to accept applicants from your region.
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Application Security Jobs