1 month ago
Ho Chi Minh City, VietnamMid Level
Responsibilities
- Identify, classify, track, and help resolve high- and critical-risk security findings across cloud environments, clusters, container images, endpoints, CI/CD pipelines, and related systems.
- Design and improve CI/CD security controls including secret detection, CVE scanning, policy-based gates, and standardized rollout patterns.
- Deploy scanning, sensing, and guardrail solutions across AWS, GCP, Kubernetes clusters, and registries to reduce runtime and infrastructure attack surface.
- Implement key rotation, access policies, RBAC, and authentication controls to address credential leakage, IAM misconfigurations, and excessive permissions.
- Conduct security assessments, participate in incident handling, and build documentation and dashboards that improve security visibility.
- Collaborate with TechOps, SRE, engineering teams, and stakeholders while supporting cloud infrastructure, platform reliability, and other TechOps initiatives.
Requirements
- At least 3 years of hands-on experience in Cloud Security, DevSecOps, or Infrastructure Security roles.
- Hands-on experience securing and managing GCP environments, including IAM, Service Accounts, GKE, Security Command Center, and Artifact Registry.
- Strong SRE or Infrastructure Security background with expertise in GitLab, ArgoCD, Kubernetes, container security, and infrastructure-as-code.
- Experience with automated CVE, secrets, and image scanning and with driving complex vulnerability remediation plans in production.
- Deep understanding of Linux systems, networking, RBAC, and zero-trust security patterns in multi-cloud environments.
- Preferred experience securing AI platforms such as Vertex AI and Gemini, including model-access governance, prompt injection assessment, LLM red-teaming, and GenAI governance controls.
- Preferred Python or Bash scripting experience and experience using Datadog or Honeycomb for proactive security monitoring and reporting.
- Preferred hands-on experience with AWS security and infrastructure controls.
Benefits
- Competitive salary based on experience, 13th-month salary, and year-end bonus.
- Flexible working time, 12 work-from-home days per year, and at least 12 days of paid annual leave plus 10 days of paid sick leave.
- Personal learning and well-being budget, team-building budget, lunch and parking allowance, and access to internal training, international conferences, Udemy, and LinkedIn Learning.
- Employee Assistance Program supporting mental health and well-being.
- Music events, learning activities, and a dynamic music-focused workplace.
Tech Stack
Categories
SecuritySite Reliability
