1 day ago
Seoul, Korea, SouthStaff+
Responsibilities
- Lead security initiatives to protect critical assets and data and continuously improve the organization’s security posture.
- Act as a security subject matter expert and embed security throughout the software development lifecycle.
- Develop and maintain security-focused libraries, tools, and automation scripts.
- Collaborate with engineering teams to apply secure-by-design principles across code, APIs, and infrastructure and identify vulnerabilities through code reviews.
- Define, document, and enforce security policies, standards, and procedures with software engineering, platform engineering, and Infosec teams.
- Drive adoption of security best practices through hands-on implementation and mentoring.
- Perform threat modeling for new and existing applications and evaluate, recommend, and implement security and governance tools.
- Lead penetration testing and vulnerability assessments.
- Serve as a primary incident-response leader and conduct detailed analysis and forensic investigations during security incidents.
Requirements
- Bachelor’s or master’s degree in computer science, information security, or a related field, or equivalent practical experience.
- Strong software engineering skills and experience building secure applications and services.
- Ability to write, review, and optimize security-conscious code using secure coding patterns, input validation, and encryption.
- Deep understanding of cryptography, PKI, secure authentication protocols, and authentication/authorization in microservices environments.
- Network security expertise including firewalls, VPNs, WAFs, and microsegmentation.
- Experience integrating security guardrails and tools into design, coding work, and CI/CD pipelines.
- Experience securing services operating on AWS, Azure, and GCP.
- Proficiency in at least one scripting language such as Python or Bash and one general-purpose programming language such as Go or Java.
- Strong documentation and communication skills, including explaining complex security risks to technical and non-technical audiences.
- Ability to lead projects and manage priorities.
- Preferred: contributions to open-source security tools or frameworks.
- Preferred: professional spoken and written English proficiency.
- Preferred: AWS Certified Security – Specialty or an equivalent Azure/GCP certification.
Benefits
- All interviews are conducted remotely.
- The hiring process may vary by role and schedule.
- The posting may close early when recruitment is complete.
About Coupang
Coupang builds and operates a South Korea–focused e-commerce marketplace with an end-to-end logistics network (Rocket Delivery), plus food delivery, video streaming, and fintech under brands such as Coupang, Eats, and Play. Revenue comes from first-party retail, third-party marketplace services, advertising, and memberships (Rocket WOW). Founded in 2010, the company is headquartered in Seattle and is publicly listed on the NYSE (CPNG).
