Senior Security Engineer

42 Gears Mobility Systems

Hinoba-an

On-site

PHP 1,200,000 - 2,400,000

Full time

1 hour ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

42Gears Mobility Systems seeks a Senior Security Engineer to design and implement security architectures for cloud and on-prem environments, focusing on AWS, GCP, and multi-cloud IAM governance.

You will lead vulnerability management, threat modeling, and security testing within the SDLC, mentor junior engineers, and drive security automation and observability across CI/CD pipelines and containerized environments.

Qualifications

  • Security architecture design experience across cloud platforms.
  • Threat modeling and vulnerability management expertise.
  • Strong written and verbal communication for cross-functional teams.
  • Familiar with SAST/DAST/SCA within CI/CD pipelines.
  • Ability to mentor and lead security initiatives.

Responsibilities

  • Security Architecture: Design and implement security architecture solutions aligned with business requirements and industry best practices.
  • Vulnerability Management: Conduct security assessments and remediation for gaps in infrastructure.
  • Documentation & Threat Modeling: Create threat models and architecture diagrams to standardize security.
  • SDLC Integration: Integrate security controls into the software development lifecycle.
  • Technology Evaluation: Pilot emerging security technologies to stay ahead of threats.
  • Mentorship: Guide junior engineers and lead security awareness initiatives.
  • Cloud Security: Architect secure cloud solutions with continuous policy compliance.
  • Infrastructure Hardening: Enforce strong security configurations across environments.
  • IAM Governance: Manage IAM across multi-cloud (AWS/GCP) with least-privilege access.
  • Automation: Implement IaC-based guardrails for consistent security deployment.
  • Observability: Build centralized logging and monitoring for threat detection.
  • Pipeline Security: Integrate SAST/DAST/SCA into CI/CD pipelines.
  • Container Security: Secure Kubernetes/Docker with image signing and runtime protections.
  • Data Protection: Define DLP and encryption standards for data in transit and at rest.
  • Compliance Mapping: Align controls with SOC2, ISO 27001, GDPR for audits.

Tools

AWS
GCP
Azure
Kubernetes
Docker

Job description

A clearer role summary, responsibilities, and application entry point are laid out below so this page feels like a destination, not a placeholder.

42Gears is looking for a skilled candidate for the position of Senior Security Engineer. In this role, you will be responsible for designing and implementing security solutions, conducting security assessments, and developing security architecture frameworks for 42Gears products and infrastructure. This role includes significant responsibility for designing and implementing secure cloud architectures across AWS and GCP platforms. 42Gears is seeking a strategic and analytical professional with solid security architecture and infrastructure experience who possesses strong technical communication and problem-solving skills. The role requires the ability to work collaboratively with cross-functional teams in a dynamic environment.

Relevant Experience: 4-6 years

Responsibilities
  • Security Architecture: Design and implement security architecture solutions aligned with business requirements and industry best practices.
  • Vulnerability Management: Conduct security assessments and vulnerability analysis to identify and remediate gaps in existing infrastructure.
  • Documentation & Threat Modeling: Develop comprehensive documentation, including threat models and architecture diagrams, to standardize security across the organization.
  • SDLC Integration: Collaborate with cross-functional teams to integrate security controls directly into the software development lifecycle (SDLC).
  • Technology Evaluation: Evaluate and pilot emerging security technologies to maintain a proactive defense posture against evolving threats.
  • Mentorship: Mentor junior team members and lead security awareness initiatives to foster a culture of collective responsibility.
  • Cloud Security: Architect secure cloud solutions that ensure continuous compliance with organizational policies and cloud-native best practices.
  • Infrastructure Hardening: Perform cloud hardening by evaluating infrastructure configurations and implementing rigorous security benchmarks.
  • IAM Governance: Oversee IAM strategies across multi-cloud environments (AWS/GCP) to enforce strict least-privilege access and identity governance.
  • Automation: Automate security guardrails through Infrastructure as Code (IaC) to ensure consistent security deployment across all environments.
  • Observability: Design centralized logging and monitoring frameworks to provide the visibility required for effective threat detection and response.
  • Pipeline Security: Integrate SAST, DAST, and SCA tools into CI/CD pipelines to automate the detection of vulnerabilities in custom code and third-party libraries.
  • Container Security: Develop security blueprints for containerized environments (Kubernetes/Docker) covering image signing, pod security, and runtime protection.
  • Data Protection: Define Data Loss Prevention (DLP) architectures to monitor and control the movement of sensitive data across cloud and hybrid environments.
  • Compliance Mapping: Map technical security controls to regulatory frameworks (SOC2, ISO 27001, GDPR) to ensure the architecture meets audit requirements.
Critical Skills / Competencies
  • Security Frameworks: Proficient in NIST CSF, ISO 27001, and SOC2 control mapping.
  • Cloud Architecture: Security design knowledge for AWS (EC2, S3, VPC, Lambda, IAM), Azure (VMs, KMS, Storage, App Services), and GCP (Compute Engine, Cloud Storage, Identity Management) environments.
  • Threat Modeling: Expert in STRIDE/PASTA methodologies and infrastructure risk assessment.
  • Identity & Access: Advanced IAM governance, Zero Trust architecture, and JIT access.
  • Container Security: Hardening and orchestration security for Docker and Kubernetes.
  • DevSecOps: Integrating SAST/DAST/SCA gating into automated CI/CD pipelines.
  • Network Security: Implementing micro-segmentation, WAF, and API Security Gateways.
  • Data Protection: Centralized secrets management (Vault) and PKI/Encryption standards.
  • Security Observability: Architecting SIEM/SOAR telemetry for high-fidelity detection.
  • Application Security: Deep knowledge of OWASP Top 10 and secure coding practices.
  • Compliance: Technical auditing against FedRAMP, HIPAA, PCI-DSS standards, and cloud security assessment methodologies.
Certifications (Preferred)

Preference will be given to candidates who possess any of the following:

  • Advanced Certifications: CISSP (Certified Information Systems Security Professional) or similar advanced security certification.
  • Management & Essentials: CISM (Certified Information Security Manager) or GIAC Security Essentials (GSEC).
  • Cloud Certifications: Cloud architect certifications such as AWS Solutions Architect Professional, Azure Solutions Architect Expert, or Google Cloud Professional Cloud Architect.
  • Container Certifications: Kubernetes security certifications (CKA, CKAD) or cloud-native security certifications.
  • Frameworks: Experience with enterprise security frameworks and governance standards (NIST, ISO 27001, SOC 2).
Required Skills
  • Cloud Security and Compliance
  • Compliance
  • Code Quality and Architecture
  • Cyber Threat Awareness
  • Collaboration & Communication
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cloud Security Engineer
Senior Cloud Security Engineer

Career Connect • Philippines

On-site
PHP 1,200,000 - 2,100,000
Cloud Security Engineer
Cloud Security Engineer

Tookitaki • Manila

On-site
PHP 5,614,000 - 8,734,000
Senior Cloud Security Architect
Senior Cloud Security Architect

42 Gears Mobility Systems • Hinoba-an

On-site
PHP 1,200,000 - 2,400,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Certa • Hinoba-an

On-site
PHP 1,786,000 - 2,678,000
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Axos Business Center • Manila

On-site
PHP 1,200,000 - 1,800,000
Information Security Analyst
Information Security Analyst

Satellite Office • Metro Manila

On-site
PHP 1,200,000 - 1,600,000
Senior Cyber Security Engineer
Senior Cyber Security Engineer

Morgan McKinley • Philippines

On-site
PHP 1,200,000 - 2,400,000
Cloud Security Architect (Hybrid)
Cloud Security Architect (Hybrid)

blaseek • Metro Manila

On-site
PHP 1,200,000 - 2,000,000
Cybersecurity Architect
Cybersecurity Architect

ORIX METRO Leasing and Finance Corporation • Philippines

On-site
PHP 1,800,000 - 3,600,000
Principal Cloud Security Architect
Principal Cloud Security Architect

Searce Inc • Metro Manila

On-site
PHP 1,800,000 - 3,200,000