Technical Project Manager – DevSecOps

Exasoft Pte. Ltd.

Singapore

On-site

SGD 120,000 - 180,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Exasoft Pte. Ltd. in Singapore seeks a Senior Project Manager to lead DevSecOps initiatives and secure SDLC programs across cloud-native environments.

You will drive security controls, governance, and risk management while coordinating engineering, security, architecture, and operations teams. The role requires 8+ years IT experience with 3+ years in technical project management, plus strong knowledge of CI/CD, containers, IaC, and policy-as-code practices.

Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Engineering, or a related discipline.
  • Minimum 8 years of overall IT experience, including at least 3 years of technical project management experience.
  • Experience in managing cybersecurity, DevSecOps, Secure SDLC, cloud security, or application security initiatives.
  • Preferably experienced in the Financial Services, Banking, or Asset Management industry.
  • Strong hands-on understanding of Secure SDLC and integrating security controls into software development processes.
  • Experience with CI/CD tools such as GitLab CI, GitHub Actions, Jenkins, or similar platforms.
  • Knowledge of container technologies and orchestration platforms, including Docker and Kubernetes, along with associated security practices.
  • Experience with Infrastructure-as-Code tools such as Terraform, CloudFormation, or similar technologies.
  • Familiarity with Policy-as-Code frameworks such as Open Policy Agent (OPA).
  • Strong understanding of application security principles, including OWASP Top 10, secure coding practices, and cryptography fundamentals.
  • Knowledge of AWS and/or Azure cloud security services and cloud-native security architectures.
  • Familiarity with AWS Well-Architected Framework and cloud security tools such as AWS Security Hub, GuardDuty, CloudTrail, and Microsoft Defender for Cloud.
  • Understanding of Cloud Security Posture Management (CSPM), supply-chain security, SBOM, SLSA, and artifact signing.
  • Experience with threat modeling, secure architecture and design reviews, risk assessments, and vulnerability management.
  • Strong technical acumen combined with structured project planning, governance, and delivery management skills.
  • Proven ability to manage multiple stakeholders, cross-functional teams, vendors, risks, budgets, and competing priorities.
  • Excellent communication, presentation, stakeholder management, and leadership skills.
  • Ability to influence technical and business teams without direct authority.
  • PMP, Agile, Cybersecurity, DevSecOps, AWS, Azure, or other relevant cloud/security certifications will be an advantage.

Responsibilities

  • Lead the end-to-end delivery of DevSecOps and Secure SDLC initiatives, embedding security controls across all stages of the software development lifecycle.
  • Define and manage project scope, objectives, deliverables, timelines, resources, budgets, risks, and dependencies.
  • Coordinate cross-functional teams including engineering, application development, security, architecture, infrastructure, operations, procurement, vendors, and business stakeholders.
  • Drive the implementation and integration of security controls within CI/CD pipelines and cloud-native development environments.
  • Oversee project governance, risk management, issue resolution, dependency tracking, and change management across multiple workstreams.
  • Support the adoption of secure development practices, including threat modeling, secure design reviews, vulnerability management, and application security controls.
  • Ensure effective implementation of DevSecOps tooling, Infrastructure-as-Code, Policy-as-Code, container security, and cloud security solutions.
  • Monitor project progress and provide clear status updates, dashboards, reports, and executive summaries to senior leadership.
  • Ensure projects are delivered on time, within budget, and in alignment with organizational security and business objectives.
  • Translate complex technical requirements into clear business outcomes and actionable project plans.
  • Foster collaboration across technical and non-technical teams and proactively resolve project challenges and blockers.

Skills

DevSecOps
Secure SDLC
Cloud security
Application security
CI/CD tooling
Docker
Kubernetes
Infrastructure-as-Code
Policy-as-Code
OPA
Threat modeling
Security architecture reviews

Education

Bachelor's degree in Computer Science / IT / Engineering

Tools

GitLab CI
GitHub Actions
Jenkins
Docker
Kubernetes
Terraform
CloudFormation
OPA

Job description

Responsibilities
  • Lead the end-to-end delivery of DevSecOps and Secure SDLC initiatives, embedding security controls across all stages of the software development lifecycle.
  • Define and manage project scope, objectives, deliverables, timelines, resources, budgets, risks, and dependencies.
  • Coordinate cross-functional teams including engineering, application development, security, architecture, infrastructure, operations, procurement, vendors, and business stakeholders.
  • Drive the implementation and integration of security controls within CI/CD pipelines and cloud-native development environments.
  • Oversee project governance, risk management, issue resolution, dependency tracking, and change management across multiple workstreams.
  • Support the adoption of secure development practices, including threat modeling, secure design reviews, vulnerability management, and application security controls.
  • Ensure effective implementation of DevSecOps tooling, Infrastructure-as-Code, Policy-as-Code, container security, and cloud security solutions.
  • Monitor project progress and provide clear status updates, dashboards, reports, and executive summaries to senior leadership.
  • Ensure projects are delivered on time, within budget, and in alignment with organizational security and business objectives.
  • Translate complex technical requirements into clear business outcomes and actionable project plans.
  • Foster collaboration across technical and non-technical teams and proactively resolve project challenges and blockers.
Requirements
  • Bachelor's degree in Computer Science, Information Technology, Engineering, or a related discipline.
  • Minimum 8 years of overall IT experience, including at least 3 years of technical project management experience.
  • Experience in managing cybersecurity, DevSecOps, Secure SDLC, cloud security, or application security initiatives.
  • Preferably experienced in the Financial Services, Banking, or Asset Management industry.
  • Strong hands-on understanding of Secure SDLC and integrating security controls into software development processes.
  • Experience with CI/CD tools such as GitLab CI, GitHub Actions, Jenkins, or similar platforms.
  • Knowledge of container technologies and orchestration platforms, including Docker and Kubernetes, along with associated security practices.
  • Experience with Infrastructure-as-Code tools such as Terraform, CloudFormation, or similar technologies.
  • Familiarity with Policy-as-Code frameworks such as Open Policy Agent (OPA).
  • Strong understanding of application security principles, including OWASP Top 10, secure coding practices, and cryptography fundamentals.
  • Knowledge of AWS and/or Azure cloud security services and cloud-native security architectures.
  • Familiarity with AWS Well-Architected Framework and cloud security tools such as AWS Security Hub, GuardDuty, CloudTrail, and Microsoft Sentinel.
  • Understanding of Cloud Security Posture Management (CSPM), supply-chain security, SBOM, SLSA, and artifact signing.
  • Experience with threat modeling, secure architecture and design reviews, risk assessments, and vulnerability management.
  • Strong technical acumen combined with structured project planning, governance, and delivery management skills.
  • Proven ability to manage multiple stakeholders, cross-functional teams, vendors, risks, budgets, and competing priorities.
  • Excellent communication, presentation, stakeholder management, and leadership skills.
  • Ability to influence technical and business teams without direct authority.
  • PMP, Agile, Cybersecurity, DevSecOps, AWS, Azure, or other relevant cloud/security certifications will be an advantage.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technical Project Manager (DevSecOps)
Technical Project Manager (DevSecOps)

NTT SINGAPORE PTE. LTD. • Singapore

On-site
SGD 120,000 - 160,000
Project Manager-DevSecops
Project Manager-DevSecops

EXASOFT PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000
Technical Project Manager Cybersecurity
Technical Project Manager Cybersecurity

EXASOFT PTE. LTD. • Singapore

On-site
SGD 180,000 - 240,000
Technical Project Manager (DevSecOps)
Technical Project Manager (DevSecOps)

u3 infotech pte. ltd. • Singapore

On-site
SGD 150,000 - 230,000
Cyber Security Specialist (DevSecOps Project Manager)
Cyber Security Specialist (DevSecOps Project Manager)

OPTIMUM SOLUTIONS (SINGAPORE) PTE LTD • Singapore

On-site
SGD 120,000 - 180,000
DevSecOps Engineer
DevSecOps Engineer

LINKTRIX Consultants, Asia Pacific • Singapore

On-site
SGD 120,000 - 180,000
Application Security Engineer (DevSecOps)
Application Security Engineer (DevSecOps)

Envoy Search Partners Pte Limited • Singapore

On-site
SGD 90,000 - 150,000
Technical Project Manager (DevSecOps)
Technical Project Manager (DevSecOps)

Optimum Solutions Pte Ltd • Singapore

On-site
SGD 120,000 - 180,000
Cyber and IT Security Advisory, Specialist / Principal Specialist
Cyber and IT Security Advisory, Specialist / Principal Specialist

CIMB Bank Berhad • Singapore

On-site
SGD 180,000 - 250,000
Technical Manager (Security Technology & Smart Facility Management)
Technical Manager (Security Technology & Smart Facility Management)

HENDERSON SECURITY SERVICES PTE. LTD. • Singapore

On-site
SGD 120,000 - 180,000