Security Engineer
1 week ago
Job Purpose:
The Security Engineer is responsible for safeguarding both cloud and on-premises infrastructures by designing, implementing, and maintaining security controls that protect company assets, systems, and data. This role plays a key part in vulnerability management, incident response, and security monitoring — ensuring compliance with internal and international standards.
The Security Engineer also supports threat intelligence, DLP operations, VAPT initiatives, and automation of security workflows across hybrid environments.
Responsibilities:
Security Architecture & Implementation
• Design and maintain secure architectures for AWS and on-premises environments, implementing security groups, IAM policies, GuardDuty, Security Hub, and WAF configurations.
• Integrate CDN and WAF providers such as Cloudflare, EdgeNext, and CDNetworks for DDoS mitigation, bot management, and web-application protection.
• Work closely with Network and Systems teams to implement secure routing, VPN (Connexa, OpenVPN), and firewall policies (Juniper, Cisco ASA).
• Enforce Zero-Trust and least-privilege principles across all systems and cloud workloads. Threat Intelligence & Monitoring
• Operate and maintain OpenCTI (Open Cyber Threat Intelligence) to collect, correlate, and analyze threat intelligence feeds and indicators of compromise (IOCs).
• Correlate OpenCTI data with SIEM logs and GuardDuty findings to improve detection capabilities.
• Contribute to the creation of actionable threat reports and share intelligence with incident response and SOC teams.
• Continuously assess new and emerging threats affecting the company's infrastructure and cloud footprint. Data Loss Prevention (DLP) & Compliance
• Manage and monitor Data Loss Prevention (DLP) alerts and workflows (e.g., Digital Guardian or Microsoft Purview DLP).
• Investigate, validate, and classify DLP alerts to ensure proper escalation of potential data leaks.
• Work with managers and department heads to validate incidents, document findings, and implement corrective actions.
• Ensure adherence to security standards and compliance frameworks (e.g., ISO 27001, NIST 800-53, GDPR).
• Develop and maintain incident validation and DLP record-keeping templates for audits and reporting
Vulnerability Assessment & Penetration Testing (VAPT)
• Plan, perform, and document Vulnerability Assessments and Penetration Tests across both on-premises and cloud systems.
• Coordinate remediation activities with Network, Systems, and DevOps teams to ensure timely patching of identified vulnerabilities.
• Use tools such as Nessus, OpenVAS, Metasploit, Burp Suite, and AWS Inspector to assess infrastructure and application security posture.
• Track vulnerabilities and mitigation status through centralized dashboards and weekly reports. Security Automation, Incident Response & Continuous Improvement
• Automate detection and response processes using Terraform, GitLab pipelines, and AWS automation workflows (Lambda, EventBridge).
• Participate in incident response, performing root-cause analysis and implementing preventive measures.
• Conduct regular security awareness training, tabletop exercises, and post-incident reviews.
• Recommend and implement continuous improvements to strengthen overall security posture of the infrastructure.
Documentation & Collaboration
• Maintain up-to-date documentation including security architecture diagrams, threat models, risk registers, and incident reports.
• Collaborate with Network Engineers, System Administrators, and DevOps to ensure alignment between security, performance, and availability goals.
• Support audits, compliance reviews, and risk-assessment exercises by providing detailed evidence and reports
Qualifications
• Bachelor's degree in information security, Computer Science, or a related field.
• Minimum 2 years of experience in infrastructure or cloud security engineering.
• Strong hands-on expertise in:
o Threat Intelligence: OpenCTI or similar platforms (MISP, TheHive)
o DLP Tools: Digital Guardian, Microsoft Purview DLP, or equivalent o VAPT: Nessus, OpenVAS, Burp Suite, Metasploit, AWS Inspector o Cloud Security: AWS GuardDuty, Security Hub, IAM, WAF o Network Security: Juniper Firewall, Cisco ASA, Nginx WAF, VPN (Connexa/OpenVPN)
o CDN Security: Cloudflare, EdgeNext, CDNetworks
o Automation: Terraform, GitLab CI/CD pipelines
• Solid understanding of TCP/IP, DNS, HTTP/S, SSL/TLS, VPN, SIEM, and IDS/IPS concepts.
• Preferred certifications: o AWS Security Specialty, CompTIA Security+, CEH, CISSP, or ISO 27001 Lead Implementer/Auditor
• Strong analytical mindset, excellent incident handling, and documentation skills.
• Proactive and collaborative, with a strong sense of accountability and security ownership.
-
Senior Security Engineer
1 week ago
Ho Chi Minh City, Ho Chi Minh, Vietnam Kredivo Group Full time $40,000 - $120,000 per yearWe are looking for a Senior Security Engineer to join Kredivo Group's Cyber Defense team. This role is designed for professionals who can bridge enterprise security engineering, threat hunting and incident response.You will play a critical role in protecting our infrastructure, endpoints and applications from advanced threats, while also proactively hunting...
-
Security Engineer
1 week ago
Ho Chi Minh City, Ho Chi Minh, Vietnam Cake by VPBank - Digital Bank Full time $100,000 - $130,000 per yearAbout the RoleIn this role, you will enhance the organization's security posture by focusing on compliance reporting, certification readiness, documentation, and security governance. You will support our efforts to maintain global security standards (PCI DSS, ISO You will also collaborate with multiple teams to review contracts, address missing security...
-
Security Engineer
1 week ago
Ho Chi Minh City, Ho Chi Minh, Vietnam Galaxy FinX Full time ₫9,000,000 - ₫12,000,000 per yearFinXaims to build a digital banking product that will deliver on the promise of simplicity, technological advancement, and superior customer products & services for millions of people in Vietnam.Responsibilities:Perform Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST).Review and validate automated testing results and...
-
Security Engineer
5 hours ago
Ho Chi Minh City, Ho Chi Minh, Vietnam Coinhako Full time $60,000 - $120,000 per yearAre you ready to be the first line of defense for a high-growth company in the Cryptocurrency/Blockchain space? We are seeking an experienced Security Engineer (Redteam) to join our team.What you'll be doing:Conduct Application Security Assessments and Penetration Tests (web, mobile, webservice....).Analyze reports and suggest remediation / mitigation...
-
Security Engineer
2 weeks ago
Ho Chi Minh City, Ho Chi Minh, Vietnam TIKI Full time $80,000 - $120,000 per yearAbout the RoleAs aSecurity Engineer, you will help identify and address security weaknesses across our applications, systems, and cloud infrastructure.You'll focus on penetration testing, vulnerability assessments, and developing tools to automate security testing — ensuring our platform remains resilient against evolving threats.What you'll doApplication...
-
Security Engineer
2 weeks ago
Ho Chi Minh City, Ho Chi Minh, Vietnam 42f73c38-35f0-4997-b75b-40c444e1c160 Full time $100,000 - $120,000 per yearJob DescriptionPerform in-depth security testing of mobile applications through static code analysis, dynamic runtime testing, and API endpoint evaluation.Reverse engineer to uncover vulnerabilities, misconfigurations, and insecure implementations of authentication, encryption, or data storage.Identify and validate issues such as insecure data storage,...
-
Senior Information Security Engineer
2 weeks ago
Ho Chi Minh City, Ho Chi Minh, Vietnam DIGI-TEXX VIETNAM Full time ₫6,000,000 - ₫12,000,000 per yearWe're Hiring Senior Information Security EngineerJoin DIGI-TEXX - Powering Digital Growth with Proven SecurityWe're seeking a proactiveSenior Information Security Engineerto strengthen our defense systems, secure enterprise platforms and drive a security-first culture across our digital transformation landscape.What You'll Own & DriveDesign, implement, and...
-
Network Security Engineer
2 days ago
Ho Chi Minh City, Ho Chi Minh, Vietnam WorkWave Full time $80,000 - $120,000 per yearWe are looking for a highly skilled Network Security Engineer with deep expertise in Cisco NX-OS and Ansible automation to strengthen and automate our enterprise network environment. The ideal candidate will be responsible for designing secure, scalable network architectures, ensuring compliance with cybersecurity standards, and leading automation...
-
Application Security Engineer
2 weeks ago
Ho Chi Minh City, Ho Chi Minh, Vietnam LINE Full time $80,000 - $100,000 per yearAbout LINE Vietnam:Our products focus on the online media business industry. Our mission is to bring people, information, and services closer together through AI technology. We also have many exciting projects specifically related to AI and Blockchain. You will have a great opportunity to:Develop your career in a well-known product company.Work with the...
-
Application Security Engineer
6 days ago
Ho Chi Minh City, Ho Chi Minh, Vietnam LINE Vietnam Full time ₫1,500,000 - ₫4,500,000 per yearTop 3 reasons to join usAttractive Compensation PackagePremium Healthcare for You and RelativesHybrid Work ModeJob descriptionPosition SummaryWe work to make LINE's products and systems safe. You'll be primarily tasked with finding problems through code reviews. This position requires knowledge of Security & Hacking in application-level. LINE is a global...