← Back to jobs
ITviec

SecOps Engineer
CÔNG TY TNHH NEXTEDGE
Vietnam24 days ago
Job Description
Top 3 Reasons To Join Us
Various awesome domains & technologies
Attractive base salary & company bonus
Singapore work environment
The Job
- Monitor security events, logs, and alerts.
- Perform root cause analysis and recommend remediation action.
- Document incidents and improve incident response playbooks.
- Run regular vulnerability scans and track remediation progress
- Work with DevOps/Infrastructure teams to patch high-risk findings.
- Evaluate new vulnerabilities and assess business impact.
- Enforce security best practices for AWS/Azure/GCP environments.
- Support security configuration, hardening, and continuous compliance.
- Improve alert enrichment, triage automation, and response actions.
- Implement continuous compliance checks and guardrails (CIS Benchmarks, NIST, ISO).
- Create scripts and internal tools (Python/Bash/PowerShell) to automate security tasks.
- Monitor IAM policies, privilege escalations, and access anomalies.
- Support Zero Trust and least-privilege models.
- Assist in security audits, compliance checks, and evidence collection (ISO 27001, SOC 2, etc).
- Maintain security policies, standards, and operational documentation.
- Develop custom tools to improve detection, investigation, and response efficiency.
- Conduct security patches and server updates for the system regularly.
- Understand and build automation processes.
- Integrate OWASP Top 10 recommendations throughout the software development lifecycle (SDLC), focusing on secure coding practices and secure design principles.
- Work with developers to identify and fix security vulnerabilities in applications.
- Other tasks assigned.
- At least 2 years of working experience in the same position.
- Good English communication skills.
- Hands-on knowledge of Okta and Active Directory (AD) administration.
- Have experience with Cloud services (AWS/Microsoft Azure/GCP).
- Have experience with performance optimization and issue troubleshooting.
- Have experience with enterprise firewalls (Palo Alto, Fortinet, Cisco ASA, or equivalent).
- Deep understanding of TCP/IP, routing, VLANs, subnetting, and secure network architecture.
- Strong knowledge of Identity and Access Management (IAM), Role-Based Access Control (RBAC), least-privilege design, and just-in-time (JIT) access implementation.
- Strong knowledge of networking, Linux/Windows OS, and common protocols.
Nice to have
- Have experience with Mobile Device Management (MDM) is a plus point.
- Proven experience with Vulnerability Assessments/Penetration Tests.
- Attractive salary commensurate with your expected salary and working experience.
- Full pay during the probation period
- Total contribution to social insurance is based on the gross salary
- 13th-month salary
- 14 days of annual leave
- Company bonus
- Annual health check-ups
- Premium health insurance (PTI).
- Employee gifts for special occasions such as birthdays, and celebrations.
- Company trips per year.
- Quarterly team outing budget.
- Monthly parties.
Benefits
- Attractive salary commensurate with your expected salary and working experience.
- Full pay during the probation period
- Total contribution to social insurance is based on the gross salary
- 13th-month salary
- 14 days of annual leave
- Company bonus
- Annual health check-ups
- Premium health insurance (PTI).
- Employee gifts for special occasions such as birthdays, and celebrations.
- Company trips per year.
- Quarterly team outing budget.
- Monthly parties.