Lead Application Security Engineer
Kuala Lumpuronsitesenior
via Greenhouse
About this role
Key Responsibilities:
● Threat Modeling: Lead design reviews for new banking features (Payments, Transfers,
KYC). Identify logic flaws before code is written.
● Pipeline Automation: Architect and maintain the SAST/DAST/SCA tooling in the CI/CD
pipeline (e.g., SonarQube, Snyk, GitLab CI) to block vulnerabilities automatically.
● Code Review: Perform manual code audits on high-risk components (Authentication,
Ledger logic) in Java, Kotlin, or Swift.
● Cloud & AI Patterns: Deliver API, container, cloud, and AI security design patterns.
Ensure that developers have "paved roads" (secure templates) for deploying
microservices and AI models.
● Culture: Act as a mentor to the development team, running secure coding workshops and
championing a "Security Champion" program.…
What we'd score you on
reqspace match rubricFive dimensions, recruiter-grade. Upload your resume and we'll generate a written explanation of where you fit and where the gaps are.
1
Skills match
For this role: java, kotlin, node.js, spring, spring boot…
2
Level fit
This role is senior-level. We check your trajectory against it.
3
Domain experience
Your work in the role's domain matters more than your years total. We weight recent and direct experience.
4
Recency
A skill you used last quarter weighs more than one from five years ago. We grade on recency, not lifetime.
5
Location fit
This role is based in Kuala Lumpur. We weight your proximity and willingness to relocate.
Score yourself on this role.
Free · no card · written explanation included
Skills in this role
Pulled from the job description. These are the keywords we'll weight when scoring your fit.
javakotlinnode.jsspringspring bootjenkinsgithub actionsgitlab cigithubgitlab
