19 days ago
Singapore, SingaporeEntry Level
Responsibilities
- Review platform and product code for security issues and guide engineers toward secure solutions.
- Build internal tools, libraries, and automation to improve security testing and enforcement.
- Continuously test internal and external applications for vulnerabilities.
- Support third-party application security reviews and penetration tests.
- Educate engineering and product teams on secure coding and design practices.
- Monitor emerging threats and attack techniques and assess their relevance to company systems.
Requirements
- Have an adversary-first mindset and think critically about how systems could be compromised.
- Understand common attacker tools and techniques and how insecure development practices are exploited, including the OWASP Top 10.
- Have programming experience in at least one modern language: Go, Python, or TypeScript.
- Communicate security concepts clearly to technical and non-technical audiences.
- Demonstrate self-motivation and a genuine drive to keep learning.
- Preferred: exposure to blockchain technologies and cryptocurrency systems and their security implications.
- Preferred: experience with security tooling, CTFs, bug bounties, or open-source security contributions.
- Preferred: prior internship or work experience in a fast-moving startup environment.
Benefits
- Hands-on exposure across the full security lifecycle with mentorship from experienced engineers.
- Opportunity to work at a rapidly growing, fully licensed programmable bank and contribute work that reaches production quickly.
- High-ownership environment alongside engineers from Monzo, Atom Bank, Blockdaemon, GXS, and Grab.