Information Security - Technical Professional

Teciem

Hinoba-an

On-site

PHP 600,000 - 1,000,000

Full time

48 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Teciem seeks an experienced Information Security Engineer to embed security across the SDLC and collaborate with DevOps and product teams. You will perform SAST/DAST and API testing, review code for vulnerabilities, and lead remediation efforts across enterprise applications.

The role emphasizes OWASP Top 10, secure coding practices, and ongoing threat modelling to reduce risk in treasury and capital markets software solutions.

Qualifications

  • 2–3 years’ experience in IT security in multiple capacities.
  • Hands‑on experience with application security tools such as Burp Suite, IBM AppScan, Acunetix, HP WebInspect, NTOSpider, Postman, Checkmarx and others.
  • Strong understanding of OWASP Top 10 and business logic vulnerabilities.
  • Solid experience testing RESTful and SOAP APIs and validating secure implementation.
  • Familiarity with CI/CD pipelines and integrating security testing into DevOps workflows.

Responsibilities

  • Perform comprehensive application security assessments, including SAST/DAST and API security testing across enterprise applications.
  • Review and analyse source code to identify and remediate security vulnerabilities.
  • Collaborate with development teams to integrate security best practices in the SDLC and provide secure coding guidance.
  • Lead and support remediation efforts by providing actionable recommendations and retesting fixes.
  • Conduct manual and automated web application and API penetration tests to uncover security flaws.
  • Develop and maintain security testing checklists, processes, and internal documentation.
  • Track and report vulnerabilities, ensuring timely closure with development and product owners.
  • Participate in threat modelling and prioritize risks based on severity and business impact.
  • Stay current with emerging threats and security technologies to proactively improve security posture.

Skills

Application security testing
SAST/DAST tooling
OWASP Top 10
API security testing
Secure coding principles
CI/CD security
Black/White box testing

Education

CEH
OSCP
eWPT
ISO 27001
CISM

Tools

Burp Suite
IBM AppScan
Acunetix
HP WebInspect
NTOSpider
Postman
Checkmarx

Job description

The Work We Do Teciem designs, builds, and delivers treasury and capital markets software solutions for financial institutions worldwide. We serve banks of every size and geography, offering the right setup for the right need. Our solutions are designed to replace multiple disconnected systems with one complete, front-to-back platform, helping customers to capture trading and business opportunities quickly, clearly and with control. We cover the entire trading lifecycle, ensuring that everything - from execution to position keeping, to risk management – runs smoothly. With decades of experience and one of the largest, most diverse client bases in the industry, we turn deep industry knowledge into software that covers most asset classes, meets complex real-world treasury and capital market's needs, and adapts as markets evolve. We are seeking an experienced Information Security Engineer with a strong background in secure software development practices, application security testing, vulnerability management and Information Security Compliances. The ideal candidate will be responsible for ensuring that security is integrated across the software development lifecycle (SDLC) and will actively collaborate with development, DevOps, and product teams to mitigate application-level risks.

Responsibilities:
  • Application Security Perform comprehensive application security assessments, including Static Application Security Testing (SAST) Pen testing, Dynamic Application Security Testing (DAST), and API security testing across enterprise applications.
  • Review and analyse source code to identify and remediate security vulnerabilities.
  • Collaborate with development teams to integrate security best practices in the SDLC and provide secure coding guidance.
  • Lead and support remediation efforts by providing actionable recommendations and retesting fixes.
  • Conduct manual and automated web application and API penetration tests to uncover business logic and security flaws.
  • Develop and maintain security testing checklists, processes, and internal documentation.
  • Track and report vulnerabilities, ensuring timely closure in collaboration with development and product owners.
  • Participate in threat modelling sessions and help teams prioritize risks based on severity and business impact.
  • Stay current with emerging threats, vulnerabilities, attack vectors, and security technologies to proactively improve application security posture.
Information Security Compliance:
  • Ensure compliance with relevant security standards and regulations, including ISO 27001, NIST Standard regarding Devsecops
  • Develop and maintain security documentation and procedures.
  • Assist with external security audits and assessments.
  • Stay up to date on the latest security threats and vulnerabilities.
Other Duties:
  • Provide security consulting and support to other teams.
  • Evaluate and recommend new security technologies and solutions.
  • Participate in security awareness training and initiatives.
  • Understanding of Technology & Security Risk Management and Vendor Risk Management Framework
Technical Skills and Capabilities (Primary – Must Have):
  • 2-3 years’ experience working in IT Security in multiple capacities.
  • Hands‑on experience with application security tools such as Burp Suite, IBM AppScan, Acunetix, HP WebInspect, NTOSpider, Postman, checkmarx and others.
  • Strong expertise in manual and automated web application security testing and a deep understanding of OWASP Top 10 and business logic vulnerabilities.
  • Solid experience testing RESTful and SOAP APIs, analyzing request/response flows, and validating secure implementation.
  • Strong knowledge of secure coding principles, common attack vectors (OWASP, SANS Top 25, WASC), and mitigation techniques.
  • Familiarity with CI/CD pipelines and integrating security testing into DevOps workflows (preferred).
  • Proficiency in both Black Box and White Box testing methodologies.
Certifications (Preferred):
  • Certified Ethical Hacker (CEH), OSCP, eWPT, or equivalent security certifications are preferred.
  • Certification like ISO 27001, CISM etc. would be an added advantage.
Diverse Minds, Shared Ambition

At Teciem, we believe that our strength comes from the diversity of our people. Different perspectives, backgrounds, and experiences fuel our innovation and help us build solutions that truly make a difference in the world of financial technology. We’re committed to creating a workplace where everyone feels respected, heard, and empowered to grow. Here, you can bring your whole self to work, contribute your unique ideas, and be part of a team driven by shared ambition. We welcome talent from all walks of life and encourage applications from individuals of all genders, races, ages, abilities, identities, and beliefs. Together, we’re shaping a culture where diversity isn’t just celebrated — it’s essential to our success.

Purpose – Why we exist

We empower financial institutions to build resilient and future‑ready economies, worldwide.

Vision – What the future holds

To lead innovation in treasury and capital markets technology, building on the solid foundations of our mission -critical and industry - defining solutions.

Mission – How we get there

We place our clients' success and ambitions at our core, continuously evolving and innovating our solutions to deliver outstanding business value and real economic impact.

You help us simplify Treasury and capital markets can be intricate, but you play a key role in making them easier to navigate.

Your ideas and expertise help us transform complicated processes into intuitive, streamlined solutions used by financial institutions worldwide.

Every improvement you make creates clarity, efficiency, and real-world impact for our clients.

You shape the future with AI, every day AI isn’t a buzzword here — it’s embedded in how we build, innovate, and deliver.

Whether you’re working on smarter automation, data-driven insights, or enhanced user experiences, your contribution fuels the next generation of intelligent financial technology.

You’ll be part of a team that uses AI to make our products faster, sharper, and more meaningful for the industry.

You grow through collaboration We believe the best outcomes happen when great minds come together. You’ll work alongside talented colleagues across engineering, product, design, and client‑facing teams — sharing knowledge, solving problems, and learning constantly. Collaboration isn’t just how we work; it’s how we grow, innovate, and support each other.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Business Consultant
Senior Business Consultant

Teciem • Hinoba-an

On-site
PHP 1,200,000 - 2,000,000
Treasury Specialist
Treasury Specialist

Teciem • Hinoba-an

On-site
PHP 900,000 - 1,100,000
Senior Run DevOps Engineer
Senior Run DevOps Engineer

Teciem • Hinoba-an

On-site
PHP 1,200,000 - 2,000,000
License Analyst
License Analyst

TP2 Tuple Philippines Inc. • Manila

On-site
PHP 600,000 - 900,000
License Analyst
License Analyst

Teciem • Manila

On-site
PHP 600,000 - 1,100,000
Senior AI Engineer
Senior AI Engineer

Teciem • Hinoba-an

On-site
PHP 1,650,000 - 2,640,000
Team Lead/Manager – Kondor Back Office
Team Lead/Manager – Kondor Back Office

Teciem • Hinoba-an

On-site
PHP 924,000 - 1,386,000
AI Engineering Lead
AI Engineering Lead

Teciem • Hinoba-an

Hybrid
PHP 1,980,000 - 3,301,000
Information Security Engineer - Security Control Validation
Information Security Engineer - Security Control Validation

TeleTech Holdings, Inc. • Pasay

On-site
Paid time off
Wellness benefits
Tuition reimbursement
+1
Network Operations Engineer (NetOps)
Network Operations Engineer (NetOps)

Teciem • Hinoba-an

On-site
PHP 1,200,000 - 1,900,000