Application Security Engineer / Application Security Lead DevSecOps Azure DevOps
Hybrid Cubao Quezon City
Day shift
Join a high impact security team and help embed security into modern cloud and DevOps environments. This role focuses on securing applications across the full software development lifecycle using automation and DevSecOps practices.
What you will do
- Embed security across the SDLC from design to deployment
- Implement application security testing including SAST DAST SCA IAST and RASP
- Integrate security controls into Azure DevOps pipelines with automated quality gates
- Perform API security testing including authentication authorization and abuse scenarios
- Conduct or support penetration testing and validate remediation
- Lead threat modeling and secure design reviews for modern applications
- Manage vulnerability triage prioritization and remediation tracking
- Promote secure coding practices and guide development teams
- Support cloud application security across Azure AWS or GCP
- Implement secrets management and secure configurationsBuild dashboards and metrics for security performance and risk tracking
- Drive DevSecOps adoption through automation and developer enablement
What we are looking for
- At least 2 plus years experience in application security or DevSecOps
- Strong hands on experience in SAST DAST and SCA
- Experience with API security testing and OWASP Top 10
- Background in penetration testing and vulnerability management
- Experience integrating security into CI CD pipelines
- Working knowledge of Azure DevOps pipelines and automation
- Experience with at least one cloud platform Azure AWS or GCP
- Development background with ability to read and review code
- Familiar with containers microservices and modern architectures
- Strong communication and stakeholder management skills