Application Security Engineer (SDLC & Pen Testing)

Teciem

Hinoba-an

On-site

PHP 600,000 - 1,000,000

Full time

6 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Teciem seeks an experienced Information Security Engineer to embed security across the SDLC and collaborate with DevOps and product teams. You will perform SAST/DAST and API testing, review code for vulnerabilities, and lead remediation efforts across enterprise applications.

The role emphasizes OWASP Top 10, secure coding practices, and ongoing threat modelling to reduce risk in treasury and capital markets software solutions.

Qualifications

  • 2–3 years’ experience in IT security in multiple capacities.
  • Hands‑on experience with application security tools such as Burp Suite, IBM AppScan, Acunetix, HP WebInspect, NTOSpider, Postman, Checkmarx and others.
  • Strong understanding of OWASP Top 10 and business logic vulnerabilities.
  • Solid experience testing RESTful and SOAP APIs and validating secure implementation.
  • Familiarity with CI/CD pipelines and integrating security testing into DevOps workflows.

Responsibilities

  • Perform comprehensive application security assessments, including SAST/DAST and API security testing across enterprise applications.
  • Review and analyse source code to identify and remediate security vulnerabilities.
  • Collaborate with development teams to integrate security best practices in the SDLC and provide secure coding guidance.
  • Lead and support remediation efforts by providing actionable recommendations and retesting fixes.
  • Conduct manual and automated web application and API penetration tests to uncover security flaws.
  • Develop and maintain security testing checklists, processes, and internal documentation.
  • Track and report vulnerabilities, ensuring timely closure with development and product owners.
  • Participate in threat modelling and prioritize risks based on severity and business impact.
  • Stay current with emerging threats and security technologies to proactively improve security posture.

Skills

Application security testing
SAST/DAST tooling
OWASP Top 10
API security testing
Secure coding principles
CI/CD security
Black/White box testing

Education

CEH
OSCP
eWPT
ISO 27001
CISM

Tools

Burp Suite
IBM AppScan
Acunetix
HP WebInspect
NTOSpider
Postman
Checkmarx

Job description

Teciem seeks an experienced Information Security Engineer to embed security across the SDLC and collaborate with DevOps and product teams. You will perform SAST/DAST and API testing, review code for vulnerabilities, and lead remediation efforts across enterprise applications.

The role emphasizes OWASP Top 10, secure coding practices, and ongoing threat modelling to reduce risk in treasury and capital markets software solutions.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

Trinity Workforce Solutions, Inc. • Makati

On-site
PHP 800,000 - 1,200,000
Collaborate with talented teams
Work on real-world security challenges
Career growth in a security-first culture
Information Security - Technical Professional
Information Security - Technical Professional

Teciem • Hinoba-an

On-site
PHP 600,000 - 1,000,000
Application Security Engineer
Application Security Engineer

Ascendion • Taguig

On-site
PHP 1,200,000 - 1,800,000
APPLICATION SECURITY LEAD
APPLICATION SECURITY LEAD

City Government of Muntinlupa - Government • Muntinlupa

On-site
PHP 1,000,000 - 1,500,000
Sr. Devsecops Security Engineer
Sr. Devsecops Security Engineer

Atos SE • Hinoba-an

On-site
PHP 1,000,000 - 2,000,000
Application Security Engineer
Application Security Engineer

Career Connect • Philippines

On-site
PHP 600,000 - 1,200,000
Senior Penetration Tester & Security Assessment Lead
Senior Penetration Tester & Security Assessment Lead

Our Clients • Manila

On-site
PHP 1,200,000 - 1,800,000
App Security Engineer: Threat Modeling & Secure SDLC
App Security Engineer: Threat Modeling & Secure SDLC

Trinity Workforce Solutions, Inc. • Makati

On-site
PHP 800,000 - 1,200,000
Collaborate with talented teams
Work on real-world security challenges
Career growth in a security-first culture
DevSecOps Application Security Engineer
DevSecOps Application Security Engineer

Ascendion • Taguig

On-site
PHP 1,200,000 - 1,800,000
Penetration Tester (Reverse Engineering and Embedded Code experience)
Penetration Tester (Reverse Engineering and Embedded Code experience)

Dencom Consultancy and Manpower Services • Mandaluyong

On-site