AvePoint
Posted 1y ago

CStack Security Engineer (GovTech)

AvePoint
Singapore, Singapore
OnsiteFull Time
Responsibilities
  • Monitoring security incidents
  • Managing vulnerabilities
  • Collaborating with teams
Requirements
  • Proven experience in cloud security, particularly AWS
  • Solid background in securing Kubernetes clusters
  • Experience with SIEM tools
  • Proficiency in vulnerability management
Technical tools mentioned
AWSKubernetesSIEMGitLab

Job description

We are seeking a skilled and passionate Security Engineer to join our team. In this role, you will be responsible for ensuring the security, compliance, and resilience of our infrastructure and applications. You will work closely with cross-functional teams to monitor, respond to, and remediate security incidents across our cloud-native ecosystem.

Responsibilities:

Security Monitoring & Incident Response
• Oversee and respond to alerts from AWS GuardDuty, ensuring timely investigation and remediation of incidents.
• Execute security playbooks to handle alerts, and enhance them based on evolving threats and operational insights.
Vulnerability & Patch Management
• Coordinate the identification and application of security patches across GitLab, AWS, and Kubernetes components.
• Ensure that our infrastructure remains resilient to new vulnerabilities through regular patch cycles and proactive risk assessments.
Log Analysis & SIEM Management
• Conduct weekly SIEM reviews to analyze security logs, detect anomalies, and escalate issues as necessary.
• Collaborate with the SecOps team to refine monitoring strategies and alerting thresholds.
Reporting & Documentation
• Prepare monthly SecOps reports summarizing incident trends, response actions, and areas for improvement.
• Maintain and update documentation related to security processes, incident response, and playbooks.
Collaboration & Continuous Improvement
• Work closely with development, operations, and other security teams to integrate security best practices into CI/CD pipelines and cloud deployments.
• Proactively contribute to security strategy discussions, sharing insights and recommendations for enhanced security posture.

Requirements:

• Proven experience managing cloud security, particularly within AWS environments (including GuardDuty, IAM, and other AWS security services).
• Solid background in securing Kubernetes clusters (preferably on EKS) including experience with container security best practices.
• Experience with SIEM tools and log analysis for threat detection.
• Proficiency in applying security patches and vulnerability management across cloud and containerized environments.
• Familiarity with CI/CD pipelines (GitLab or equivalent) and integrating security into DevOps practices.
• Hands-on experience with incident response, including following and refining security playbooks.
• Working knowledge of networking, encryption, and other fundamental security concepts.
• Security certifications for AWS (such as AWS Certified Security – Specialty) and Kubernetes (such as Certified Kubernetes Security Specialist or equivalent) are highly desirable.

Soft skills:

• Excellent problem-solving and analytical abilities with a keen attention to detail.
• Strong communication skills to clearly articulate security issues and collaborate across teams.
• Proactive mindset with the ability to work independently and in a fast-paced environment.
• Adaptability and willingness to continuously learn and apply new security practices.

Any personal data you share with us during the application process will be processed strictly in compliance with applicable data protection laws and our Privacy Notice.

About AvePoint

Provides SaaS for cloud data protection and management.

Similar jobs

Security Engineer roles near Singapore, null
2d
Save
Mark Applied
Hide
Staff Security Engineer, Third Party Security Diligence
Singapore, Central Region, Singapore
OnsiteFull Time
Google
GoogleNASDAQ: GOOGL: Provides online search, advertising, cloud computing, and consumer electronics.
8+ YOE5+ MgmtBachelor's degree or equivalent experience; 8 years coding and security engineering experience; 5 years technical security leadership or enterprise technical risk analysis experience.
Python, C, C++, Java, Go, AI, AI/ML
1w
Save
Mark Applied
Hide
Sr. Security Engineer, Security Search and Observability, Field Innovation, Security Search and Observability (SSO)
Singapore, Central Region, Singapore
OnsiteFull Time
Amazon
AmazonNASDAQ: AMZN: Global online retail and cloud computing technology provider.
5+ YOERequires 5+ years troubleshooting systems, analyzing logs, automating tasks, identifying security risks, and developing mitigations; experience with vulnerabilities and at least two listed programming languages.
Scala, Java, Python, C/C++, Go, AWS Security Hub, AWS CloudTrail, AWS GuardDuty
1w
Save
Mark Applied
Hide
Security Engineer (Infrastructure Security SDLC) Graduate (Security BP) - 2027 Start
Singapore, Singapore, Singapore
OnsiteFull Time
ByteDance
ByteDance: Developing AI-driven content platforms and mobile applications.
Bachelor's or master's degree in computer science, cybersecurity, software engineering, or related field; vulnerability research experience; programming experience; knowledge of common vulnerability classes.
C/C++, Go, Python, Rust, Java, AWS, Azure, GCP, Kubernetes, Large Language Models (LLMs), AI, GitHub
1w
Save
Mark Applied
Hide
Security Engineer, Product Security - Global Security Organization
Singapore or Los Angeles or New York City or London or Dublin or Paris or Berlin or Dubai or Jakarta or Seoul or Tokyo
OnsiteFull Time
TikTok
TikTok: Global short-form video hosting and social media platform.
3+ YOERequires 3+ years in product security or cybersecurity, AI and automation experience, vulnerability analysis, incident response, and security researcher collaboration. Programming and Unix-based systems experience preferred.
Python, Go, JavaScript, OWASP Top 10
1w
Save
Mark Applied
Hide
Staff Engineer, Security Platform Development
Hong Kong or Singapore
OnsiteFull Time
OKX
OKX: Global cryptocurrency exchange and Web3 digital wallet developer.
Deep security and CS fundamentals, expert Java/JVM, production experience with RASP/SAST/DAST/IAST/SCA, familiarity with ASM/ByteBuddy, proficiency in Python or Go, LLM/AI experience, strong communication and product instincts.
Java, JVM, ASM, ByteBuddy, Python, Go, SonarQube, Coverity, RASP, SAST, DAST, IAST, SCA, CI/CD, LLMs
3w
Save
Mark Applied
Hide
Senior Security Engineer, Enterprise Security
Chicago or New York City or Austin or Berlin or Bucharest or Dubai or Jakarta or London or Paris or San Francisco or São Paulo or Singapore or Seoul or Sydney or Tokyo
$129k-$180k/yr HybridFull Time
Braze
BrazeNASDAQ: BRZE: Platform for personalized customer engagement and cross-channel messaging.
5+ YOE5+ years security engineering experience, 3+ years in corporate security, hands-on endpoint, network, IAM, SSO, MDM, CrowdStrike EDR, SIEM, forensics, and SaaS security experience.
Crowdstrike EDR, SIEM, IAM, SSO, MDM
4w
Save
Mark Applied
Hide
Senior Security Engineer
Singapore, Singapore, Singapore
HybridFull Time
KAST
KAST: Stablecoin-powered platform for global banking and payments.
Several years of hands-on security engineering experience across cloud, infrastructure, DevOps, detection, threat hunting, and incident investigation; strong collaboration and communication skills.
SIEM, EDR, AWS, CI/CD
4w
Save
Mark Applied
Hide
Security Engineer, Intelligent Platforms
Singapore, Singapore
OnsiteFull Time
NCS
NCS: Provide technology services and digital solutions across Asia Pacific.
Operate and tune security platforms, perform log reviews and threat hunting, validate detections, support incident response and remediation, and collaborate with stakeholders.
Windows, Linux, SIEM, EDR, XDR, PAM, Firewalls, IPS, Splunk