- Chi tiết công việc
- Giới thiệu công ty
Vị trí công việc này hiện tại đã hết hạn nộp hồ sơ, bạn có thể tham khảo thêm một số công việc liên quan phía dưới
Mô tả công việc
Provide security techniques and expertise to ensure the infrastructure and software services meet specific customer security requirements/certifications
Collaborate with members of the team and product owners to solve operational issues and develop enhancements such as automation.
Ensure applications stay compliant by integrating application and DevSecOps processes and CI/CD pipelines from early stages of the lifecycle.
Collaborate with team members on continuous improvement to both the Security DevOps pipelines and processes, and to the Information Security tools, services, and processes.
Understand technical and business requirements to develop tactical and strategic roadmaps to address and implement Secure SDLC controls (Data Privacy, SAST, DAST, etc).
Collaborate with members of the team and product owners to solve operational issues and develop enhancements such as automation.
Ensure applications stay compliant by integrating application and DevSecOps processes and CI/CD pipelines from early stages of the lifecycle.
Collaborate with team members on continuous improvement to both the Security DevOps pipelines and processes, and to the Information Security tools, services, and processes.
Understand technical and business requirements to develop tactical and strategic roadmaps to address and implement Secure SDLC controls (Data Privacy, SAST, DAST, etc).
Yêu cầu
Bachelor Degree in information security, computer science.
Experience working in an Agile, DevOps/SecDevOps environment.
3+ years of experience working in software engineering role.
2+ years of experience working in a Security role handling on premise and cloud infrastructures.
Experience with security testing at scale by building and implementing static and dynamic analysis tools, integrating security into CI/CD workflows for everyday deployments.
Minimum 3 years' experience with Authentication and Authorization solutions.
Experience with static code analysis for software or infrastructure as code, including SonarQube,Terraform.
Experience with vulnerability scanners, including Tenable Nessus, Qualys, ...
Understanding of secure software development practices - AppSec - Security and/or regulatory experience desired, OWASP 10 and Web Application Security, Mobile Application Security, API Security.
Good knowledge of threat modeling, risk assessment techniques, code reviews, and with the latest security best practices
Require good knowledge of CI/CD tools - Knowledge of GitLab CI/CD, Seleneoid, Jmeter, SoapUI, Junit
Require good knowledge in automatic configuration management tool - Knowledge of Ansible, Terraform
Require good knowledge of automated security tools - SAST, SCA, DAST, IAST
Good knowledge of containers and orchestration platforms. Need to know how to create, build, deploy and manage containers in development and production environments - Docker, Kubernetes.
Patterns/ Principles - Blue/Green Deployment - Canary Release, Feature Flipping
IDE: Eclipse, Visual Studio
Public Cloud services knowledge: AWS, Digital Ocean.
Knowledge of Logging & Monitoring tools: ELK, Grafana, DataDog, Prometheus.
Experience in developing integration APIs and WebServices (REST/SOAP), API Development
Experience, Knowledge of API Security
Experience working in an Agile, DevOps/SecDevOps environment.
3+ years of experience working in software engineering role.
2+ years of experience working in a Security role handling on premise and cloud infrastructures.
Experience with security testing at scale by building and implementing static and dynamic analysis tools, integrating security into CI/CD workflows for everyday deployments.
Minimum 3 years' experience with Authentication and Authorization solutions.
Experience with static code analysis for software or infrastructure as code, including SonarQube,Terraform.
Experience with vulnerability scanners, including Tenable Nessus, Qualys, ...
Understanding of secure software development practices - AppSec - Security and/or regulatory experience desired, OWASP 10 and Web Application Security, Mobile Application Security, API Security.
Good knowledge of threat modeling, risk assessment techniques, code reviews, and with the latest security best practices
Require good knowledge of CI/CD tools - Knowledge of GitLab CI/CD, Seleneoid, Jmeter, SoapUI, Junit
Require good knowledge in automatic configuration management tool - Knowledge of Ansible, Terraform
Require good knowledge of automated security tools - SAST, SCA, DAST, IAST
Good knowledge of containers and orchestration platforms. Need to know how to create, build, deploy and manage containers in development and production environments - Docker, Kubernetes.
Patterns/ Principles - Blue/Green Deployment - Canary Release, Feature Flipping
IDE: Eclipse, Visual Studio
Public Cloud services knowledge: AWS, Digital Ocean.
Knowledge of Logging & Monitoring tools: ELK, Grafana, DataDog, Prometheus.
Experience in developing integration APIs and WebServices (REST/SOAP), API Development
Experience, Knowledge of API Security
Quyền lợi
• 13th month salary, bonus project, gifts (New Year, birthday, 8/3, 1/6, 20/10..)
• Lunch allowance and parking free
• Team building, company trip
• Insurance after 2 months of probation, PVI insurance for some levels
• Training in work and fast-track your career path
• Working in a friendly and professional environment
• Lunch allowance and parking free
• Team building, company trip
• Insurance after 2 months of probation, PVI insurance for some levels
• Training in work and fast-track your career path
• Working in a friendly and professional environment
Thông tin khác
Cấp bậc
Nhân viên
Kinh nghiệm
5 năm
Số lượng tuyển
1 người
Hình thức làm việc
Toàn thời gian
Giới tính
Không yêu cầu
Nhân viên
Kinh nghiệm
5 năm
Số lượng tuyển
1 người
Hình thức làm việc
Toàn thời gian
Giới tính
Không yêu cầu
Thông tin chung
- Ngày hết hạn: 05/10/2024
- Thu nhập: Tới 80 triệu
Giới thiệu công ty
Xem trang công ty
Finviet là công ty Fintech theo mô hình kinh doanh B2B2C với trọng tâm là các điểm bán lẻ trải dài trên khắp cả nước. Finviet tự hào là đơn vị được ngân hàng nhà được cấp giấy phép trung gian thanh toán (Ví điện tử, Cổng thanh toán, Thu hộ chi hộ). Chúng tôi xây dựng hệ sinh thái công nghệ giúp kết nối giữa các nhà cung cấp dịch vụ/ hàng hoá, ngân hàng/ các đơn vị tài chính với các điểm bán lẻ, từ đó có thể cung cấp hàng hoá dịch vụ đến tận tay người dùng cuối ở khắp mọi nơi một cách nhanh...
Quy mô công ty
Từ 101 - 500 nhân viên
Việc làm tương tự
Công ty Cổ phần Chứng khoán VNDIRECT
Thương lượng
01/03/2025
Hồ Chí Minh
CÔNG TY TÀI CHÍNH TNHH MTV NGÂN HÀNG VIỆT NAM THỊNH VƯỢNG (FE CREDIT)
Thỏa Thuận
17/02/2025
Hồ Chí Minh
Tập đoàn Công nghiệp Viễn thông Quân đội
15 - 20 triệu
31/01/2025
Hà Nội, Hồ Chí Minh
NGÂN HÀNG TMCP NAM Á
Cạnh tranh
31/01/2025
Hồ Chí Minh
CÔNG TY CỔ PHẦN ACECOOK VIỆT NAM
Thỏa thuận
04/02/2025
Hồ Chí Minh
NGÂN HÀNG TMCP NAM Á
Cạnh tranh
31/01/2025
Hồ Chí Minh
Công ty Cổ phần Viễn thông FPT - FPT Telecom
thỏa thuận
08/02/2025
Hồ Chí Minh
Công Ty TNHH Phần Mềm Opswat Việt Nam ( Opswat Software Vietnam Llc)
Thỏa thuận
25/01/2025
Hồ Chí Minh
hỗ trợ doanh nghiệp
Giải thưởng
của chúng tôi
Top 3
Nền tảng số tiêu biểu của Bộ
TT&TT 2022.
Top 15
Startup Việt xuất sắc 2019 do VNExpress tổ chức.
Top 10
Doanh nghiệp khởi nghiệp sáng tạo Việt Nam - Hội đồng tư vấn kinh doanh ASEAN bình chọn.
Giải Đồng
Sản phẩm công nghệ số Make In Viet Nam 2023.