Security Engineer

Azeus Group

Pasig

On-site

PHP 900,000 - 1,300,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Azeus Group is seeking an experienced Application Security Engineer to lead red team engagements and strengthen security across Web and Mobile platforms. The role emphasizes hands-on testing, vulnerability management, and collaboration with engineering and DevOps to embed security into the SDLC.

You will conduct technical investigations, help in security awareness, and support certification efforts (ISO 27001, SOC Type 2). This position requires strong ownership and practical security expertise.

Qualifications

  • 5+ years of experience in application security testing and assessments.
  • Solid understanding of cybersecurity principles, standards and protocols (OWASP Top 10, SANS CSC).
  • Experience with security tools: Burp Suite, OWASP ZAP, Metasploit, SonarQube (Ghidra/IDA a plus).
  • Experience with Java, JavaScript, C/C++.
  • Cloud knowledge (AWS) and SIEM familiarity are preferred.

Responsibilities

  • Perform penetration testing of Web and Mobile applications across platforms.
  • Own the vulnerability management lifecycle from identification to remediation and reporting.
  • Monitor and detect operational security risks in the organization.
  • Conduct technical investigations on security incidents and tools.
  • Collaborate with users during Pre-sales and Support on security inquiries.
  • Engage with Blue Team to implement security best practices and automate vulnerability detection in SDLC.
  • Review risks and patches of software components; facilitate threat modelling in SDLC.
  • Assist in security awareness training and support ISO 27001 and SOC Type 2 controls.

Skills

Penetration testing
Vulnerability management
Threat modelling
Incident response
DevSecOps

Tools

Burp Suite
OWASP ZAP
Metasploit
SonarQube
Ghidra

Job description

Responsibilities

Involve in Red Team activities:

  • Perform penetration testing of Web and Mobile (iOS, Android, Windows and Mac) applications
  • Own the vulnerability management lifecycle from identification, remediation to reporting
  • Active monitoring and detection of operational security risks in the organization
  • Conduct technical investigations on security incidents and tools
  • Liaise directly with users on security enquiries and concerns during Pre-sales and Support

Conduct engagement with the Blue Team for the following:

  • Work with engineering and DevOps teams to implement security best practices
  • Implement and improve workflows to automate vulnerability detection as part of the software development lifecycle
  • Review risks and patches of software components used in the applications
  • Facilitate threat modelling as part of the software development lifecycle
  • Help in security awareness training
  • Help in implementing the needed controls for different certification bodies such as ISO 27001 and SOC Type 2
Qualifications
  • At least 5 years of experience in application security testing and assessments
  • Solid understanding of cybersecurity principles, standards and protocols such as OWASP Top 10 and SANS Critical Security Controls
  • Experience with application security tools as Burpsuite, OWASP ZAP, Metasploit, Sonarqube (experience with Ghidra or IDA is a plus)
  • Experience with programming languages such as Java, JavaScript, C/C++
  • Experience with scripting languages such as bash or PowershellExperience and knowledge of cloud solutions and architectures such as AWS
  • Experience and knowledge of Security information and event management (SIEM) technologies
  • Good analytical skills
  • Strong sense of ownership
  • Technical and industry certifications such as CISA, CISM, CISSP are a plus
Others
  • Successful completion of background check and NBI clearance will be required.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

Azeus Systems Limited • Pasig

Hybrid
Security Engineer
Security Engineer

Azeus Systems Limited • Cebu City

On-site
PHP 1,200,000 - 1,800,000
Application Security Manager
Application Security Manager

PwC • Makati

On-site
PHP 1,200,000 - 1,600,000
Security Analyst
Security Analyst

Artech Technology Inc. • Quezon City

On-site
PHP 3,527,000 - 5,292,000
Security Engineer - Offensive Security
Security Engineer - Offensive Security

Thrive • Tarlac City

On-site
PHP 900,000 - 1,500,000
Application Security Engineer
Application Security Engineer

Interact Software • Metro Manila

On-site
PHP 700,000 - 1,200,000
Application Security Engineer
Application Security Engineer

Sideways 6 • Philippines

On-site
PHP 1,200,000 - 1,900,000
Security Engineer - Support
Security Engineer - Support

Thrive • Morong

On-site
PHP 400,000 - 700,000
Security Engineer - Red Team
Security Engineer - Red Team

Coberon Chronos • España

On-site
EUR 60,000 - 90,000
Senior Red Team Operator (Offensive Security Analyst)
Senior Red Team Operator (Offensive Security Analyst)

Sun Life Global Solutions – Philippines • Taguig

Hybrid
PHP 1,200,000 - 2,400,000