E
EncoraMalaysia Team

Lead Application Security Engineer

Kuala Lumpuronsitesenior

via Greenhouse

About this role

Key Responsibilities: ● Threat Modeling: Lead design reviews for new banking features (Payments, Transfers, KYC). Identify logic flaws before code is written. ● Pipeline Automation: Architect and maintain the SAST/DAST/SCA tooling in the CI/CD pipeline (e.g., SonarQube, Snyk, GitLab CI) to block vulnerabilities automatically. ● Code Review: Perform manual code audits on high-risk components (Authentication, Ledger logic) in Java, Kotlin, or Swift. ● Cloud & AI Patterns: Deliver API, container, cloud, and AI security design patterns. Ensure that developers have "paved roads" (secure templates) for deploying microservices and AI models. ● Culture: Act as a mentor to the development team, running secure coding workshops and championing a "Security Champion" program.…

Read the full description on Encora's site →

What we'd score you on

reqspace match rubric

Five dimensions, recruiter-grade. Upload your resume and we'll generate a written explanation of where you fit and where the gaps are.

1

Skills match

For this role: java, kotlin, node.js, spring, spring boot…

2

Level fit

This role is senior-level. We check your trajectory against it.

3

Domain experience

Your work in the role's domain matters more than your years total. We weight recent and direct experience.

4

Recency

A skill you used last quarter weighs more than one from five years ago. We grade on recency, not lifetime.

5

Location fit

This role is based in Kuala Lumpur. We weight your proximity and willingness to relocate.

Score yourself on this role.
Free · no card · written explanation included
See if I'm a fit →

Skills in this role

Pulled from the job description. These are the keywords we'll weight when scoring your fit.

javakotlinnode.jsspringspring bootjenkinsgithub actionsgitlab cigithubgitlab

More at Encora

See all open jobs at Encora