An application made for this job — a tailored resume and cover letter that speak straight to the posting.
PT Avows Technologies seeks a Cyber Security Engineer specializing in SIEM, VAPT, and secure code review to assess apps, APIs, and infrastructure. The role involves security monitoring, incident investigations, and remediation planning with DevSecOps integration into CI/CD pipelines.
You will analyze security logs, run vulnerability assessments, and prepare technical reports for IT, development, and infrastructure teams. A minimum of four years’ experience is required.
We are looking for a Cyber Security Engineer with focusing on SIEM or VAPT or Secure Code Review & Hardening Review to perform security assessments, vulnerability management, application security, security monitoring, and incident investigation.
Key responsibilities
Conduct VAPT for web applications, APIs, networks, infrastructure, and operating systems.
Perform Secure Code Review and Application Security testing using SAST, DAST, and SCA.
Support DevSecOps and security integration into CI/CD pipelines.
Monitor and analyze SIEM, EDR, security logs, alerts, and potential IOCs.
Investigate security incidents such as malware, phishing, unauthorized access, and suspicious activities.
Perform security hardening reviews and recommend remediation.
Validate vulnerabilities, assess risks, and track remediation through Jira or similar tools.
Prepare technical security reports and work with IT, development, infrastructure, and other stakeholders.
Qualification
Bachelor's degree in IT, Computer Science, Computer Engineering, Information Systems, Cyber Security, or related field.
Minimum 4 years of experience in Cyber Security, VAPT, Application Security, SOC, SIEM, DevSecOps, or Security Assessment.
Experience with tools such as Nessus, Burp Suite, Nmap, OWASP ZAP, Metasploit, or similar.
Experience with SIEM platforms such as QRadar, Splunk, Microsoft Sentinel, ArcSight, or ELK.
Experience with EDR/Endpoint Security solutions such as Microsoft Defender, CrowdStrike, Trend Micro, or SentinelOne.
Good understanding of OWASP Top 10, TCP/IP, DNS, HTTP/HTTPS, firewalls, Windows/Linux security, API Security, and secure coding.
Strong analytical, problem-solving, communication, documentation, and reporting skills.
Relevant security certifications such as CEH, OSCP, Security+, CISSP, CISA, or GIAC are an advantage.
Innovation requires Excellence - and we at Avows have kept this mantra at the heart of our business since our very inception. Since 2008, Avows has served a diverse range of Clients- ranging from innovative nimble Start-ups to dynamic & dependable Fortune 500 companies. Through our unrivalled industry expertise and consulting experience in Digital IT Services and Solutions, we have helped our clients successfully innovate, increase revenue, manage risk and change, reduce costs, and enhance controls-all without sacrificing flexibility.
Our network reaches across Asia & beyond, with dozens of dedicated personnel working at the forefront of the latest emergent technologies.
Innovation requires Excellence - and we at Avows have kept this mantra at the heart of our business since our very inception. Since 2008, Avows has served a diverse range of Clients- ranging from innovative nimble Start-ups to dynamic & dependable Fortune 500 companies. Through our unrivalled industry expertise and consulting experience in Digital IT Services and Solutions, we have helped our clients successfully innovate, increase revenue, manage risk and change, reduce costs, and enhance controls-all without sacrificing flexibility.
Our network reaches across Asia & beyond, with dozens of dedicated personnel working at the forefront of the latest emergent technologies.