CrawlJobs Logo

Security Engineer (Cloud, App, SaaS Security)

https://www.randstad.com Logo

Randstad

Location Icon

Location:
Malaysia , Kuala Lumpur

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

17000.00 - 20000.00 MYR / Month

Job Description:

As a Security Engineer, you will play a key role in enhancing product and application security by embedding best-practice cybersecurity controls across the development lifecycle. You will work closely with engineering and cloud teams to drive "shift-left" security initiatives, ensuring risks are identified and mitigated early in the development process.

Job Responsibility:

  • Strengthen security across products and applications by applying industry best practices and continuously improving security design
  • Drive "shift-left" initiatives by integrating automated security controls into the software development lifecycle and infrastructure
  • Collaborate with engineering and cloud teams to promote secure coding practices and embed security into development workflows
  • Support the integration of AI-driven approaches into development pipelines for threat modelling and security automation
  • Conduct secure design reviews to identify risks, attack surfaces, and mitigation strategies aligned with industry standards (e.g., OWASP, SANS)
  • Contribute to the development and maintenance of tools for secure code reviews and vulnerability remediation
  • Support vulnerability management efforts, including prioritisation and coordination with engineering teams for remediation
  • Assist in security audits and compliance initiatives (e.g., ISO 27001, SOC 2), including control implementation and evidence gathering
  • Support incident analysis and collaborate with SOC teams during investigations and response activities
  • Manage and respond to operational security requests in line with defined SLAs

Requirements:

  • Experience in Application Security, Secure Software Development, or related domains, ideally within a cloud-native or SaaS environment
  • Strong understanding of OWASP Top 10, secure coding practices, vulnerability management, and common web/mobile security risks
  • Familiarity with modern web technologies, cloud environments, and Infrastructure-as-Code (IaC)
  • Proficiency in at least one programming or scripting language (e.g., Python, Terraform)
  • Experience securing web and/or mobile applications (iOS/Android) using static and dynamic analysis techniques
  • Hands-on experience with modern application stacks, cloud-native environments, and security tooling
  • Understanding of threat modelling, secure code review practices, and attacker methodologies
  • Strong collaboration skills with the ability to work cross-functionally with engineering and product teams
  • Proactive, detail-oriented, and eager to learn with a strong security-first mindset
  • Bachelor Degree
What we offer:

Attractive benefits package

Additional Information:

Job Posted:
May 05, 2026

Expiration:
June 19, 2026

Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Security Engineer (Cloud, App, SaaS Security)

Security Engineer

Airspace Link is seeking a Security Engineer to support the security posture of ...
Location
Location
United States , Detroit
Salary
Salary:
Not provided
airspacelink.com Logo
Airspace Link
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2–5 years of experience in security engineering, cloud security, SOC/IR operations, or related hands-on security roles
  • Working knowledge of Azure security concepts and Microsoft cloud security tools
  • Practical experience with: Microsoft Defender for Cloud, Endpoint, Identity, and Cloud Apps
  • Microsoft Sentinel (KQL querying, incident investigation, dashboards)
  • Microsoft Intune / Endpoint Manager (MDM/MAM)
  • Microsoft Purview (DLP and compliance tooling)
  • Hands-on experience supporting vulnerability remediation with engineering teams
  • Familiarity with Terraform, secure CI/CD practices, and cloud configuration management
  • Strong written and verbal communication skills with the ability to collaborate cross-functionally
Job Responsibility
Job Responsibility
  • Assist with implementing and maintaining security controls within Azure and SaaS environments
  • Support the incident response lifecycle, including initial investigation, coordination with engineering, and documentation of remediation actions
  • Monitor, tune, and assist in the operation of the Microsoft Defender suite (Defender for Cloud, Endpoint, Identity, Cloud Apps, and Vulnerability Management)
  • Support mobile device management (MDM) and endpoint compliance using Microsoft Intune and Endpoint Manager
  • Partner with engineering teams to identify, prioritize, and track remediation of vulnerabilities across applications, cloud infrastructure, and CI/CD pipelines
  • Help implement and maintain Entra ID Conditional Access and Privileged Identity Management (PIM)
  • Assist in integrating DevSecOps guardrails within Azure DevOps and GitHub pipelines (e.g., CodeQL, IaC scanning, secret governance)
  • Participate in developing dashboards and analytics in Microsoft Sentinel, including KQL queries and incident correlation support
  • Contribute to threat modeling and risk assessments as part of project reviews
  • Support the creation and upkeep of security configuration baselines, Terraform modules, and policy templates
  • Fulltime
Read More
Arrow Right

Senior Application Security Engineer

As an Application Security - Senior Product Security Engineer, you will play a c...
Location
Location
United States
Salary
Salary:
157000.00 - 216000.00 USD / Year
alpha-sense.com Logo
AlphaSense
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in Application or Product Security, preferably in a SaaS or cloud-native environment
  • Strong understanding of web app and API security, microservices, and containerized architectures
  • Experience integrating security tooling into modern CI/CD workflows
  • Proficiency with SAST, DAST, IaC scanning, and container security platforms
  • Skilled in secure coding and code review for at least one major language (Python, Java, Go, JavaScript)
  • Familiarity with AWS security, Kubernetes security, and DevSecOps best practices
Job Responsibility
Job Responsibility
  • Lead application security initiatives across all SaaS products and microservices
  • Conduct threat modeling, architecture reviews, and secure code assessments for both backend and frontend systems
  • Implement and manage security automation in CI/CD, integrating SAST, DAST, SCA, and container image scanning tools
  • Collaborate with engineering teams to triage, prioritize, and remediate vulnerabilities across applications and containerized workloads
  • Drive AppSec awareness and training, developing secure coding practices and guidelines
  • Evaluate and deploy container security controls, ensuring images and orchestrators (Kubernetes, ECS, etc.) follow best practices
  • Support bug bounty and vulnerability disclosure programs and coordinate penetration testing
  • Stay ahead of emerging application and container threats, and recommend preventive controls aligned with OWASP and CIS benchmarks
What we offer
What we offer
  • Competitive compensation, benefits, and career growth opportunities
  • Opportunity to shape and drive product security strategy
  • Collaborative and security-minded engineering culture
  • Work on cutting-edge security challenges in a fast-growing company
  • Performance-based bonus
  • Equity
  • Generous benefits program
  • Fulltime
Read More
Arrow Right

Corporate Security Engineer

We are looking for a Corporate Security Engineer to work with our Security, Engi...
Location
Location
United States
Salary
Salary:
169150.00 - 225000.00 USD / Year
clickhouse.com Logo
ClickHouse
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience with automation tools and scripting
  • Familiarity with security and privacy compliance programs
  • Strong stakeholder management skills
Job Responsibility
Job Responsibility
  • Architect and secure corporate security assets and infrastructure supporting ClickHouse products and services (e.g. Google Workspace, Okta)
  • Collaborate with business operations, IT, legal, product and engineering teams to facilitate safe and secure use of company assets (e.g. user and device provisioning)
  • Develop and maintain corporate security tools and processes (endpoint security, mobile device management, vulnerability management, patch management, system hardening, vendor management, user authentication and authorization, physical security, DLP)
  • Support the ClickHouse compliance security and privacy programs including SOC 2 Type II and ISO 27001
  • Manage vendor on-boardings and secure configuration (e.g. integrations, Slack Apps, browser extensions)
  • Lead security training program
  • Collaborate with business operations on resolving ad-hoc IT and IT security tasks
  • Develop and improve insider risk program
  • Identify and respond to security issues, vulnerabilities, and incidents concerning corporate assets and users
What we offer
What we offer
  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in 20 countries
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites
  • Fulltime
Read More
Arrow Right

Corporate Security Engineer

We are looking for a Corporate Security Engineer to work with our InfoSecurity, ...
Location
Location
United Kingdom
Salary
Salary:
Not provided
clickhouse.com Logo
ClickHouse
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience with automation tools and scripting
  • Familiarity with security and privacy compliance programs
  • Strong stakeholder management skills
Job Responsibility
Job Responsibility
  • Architect and secure corporate security assets and infrastructure supporting ClickHouse products and services (e.g. Google Workspace, Okta)
  • Collaborate with business operations, IT, legal, product and engineering teams to facilitate safe and secure use of company assets (e.g. user and device provisioning)
  • Develop and maintain corporate security tools and processes (endpoint security, mobile device management, vulnerability management, patch management, system hardening, vendor management, user authentication and authorization, physical security, DLP)
  • Support the ClickHouse compliance security and privacy programs including SOC 2 Type II and ISO 27001
  • Manage vendor onboardings and secure configuration (e.g. integrations, Slack Apps, browser extensions)
  • Lead security training programs
  • Collaborate with business operations on resolving ad-hoc IT and IT security tasks
  • Develop and improve insider risk program
  • Identify and respond to security issues, vulnerabilities, and incidents concerning corporate assets and users
What we offer
What we offer
  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in 20 countries
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites
Read More
Arrow Right

Security Engineer Analyst

At Ledger, we’re proud to be the global platform for digital assets and Web3, wi...
Location
Location
France , Paris
Salary
Salary:
Not provided
https://www.ledger.com Logo
Ledger
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Solid understanding of network fundamentals: TCP/IP, routing, DNS, VPN, HTTP(S), TLS
  • Good grasp of core security concepts: Zero Trust, least privilege, segmentation, identity- and context-based access
  • Comfortable with Linux environments and at least one scripting language (ideally Python) plus basic Git usage
  • Interest in cloud environments (AWS/GCP/Azure or similar) and modern access patterns (bastions, proxies, SASE/ZTNA)
  • Ability to read and challenge technical documentation and propose pragmatic improvements
  • Proactive, curious, and willing to dive into low-level technical details
  • Interest in Web3 and hardware wallets is a plus and provides useful context on Ledger’s ecosystem.
Job Responsibility
Job Responsibility
  • Work with Security Engineering and Infrastructure / SRE and IT teams to strengthen Ledger’s network and access security model
  • Map and document application and admin flows (who/what/where) and propose Zero Trust patterns (per-app access, identity-aware gateways, strong auth)
  • Contribute to PoCs and integrations for ZTNA / SASE / secure access solutions (e.g. controlled access to cloud consoles, internal admin tools, and critical SaaS)
  • Help define and document reference architectures, diagrams, and runbooks for secure remote access and network security
  • Where relevant, contribute small scripts/tools (Python, shell, etc.) to automate validation, configuration checks, or data collection.
What we offer
What we offer
  • Comprehensive compensation packages that include a wide range of benefits
  • Regionally specific benefits.
  • Fulltime
Read More
Arrow Right

Gaming Principal, Cloud Threat Detection & Incident Response Engineer

We are seeking a Gaming Principal, Cloud Threat Detection & Incident Response En...
Location
Location
United States , Multiple Locations
Salary
Salary:
139900.00 - 274800.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Doctorate in Statistics, Mathematics, Computer Science, or related field AND 3+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
  • OR Master's Degree in Statistics, Mathematics, Computer Science, or related field AND 4+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
  • OR Bachelor's Degree in Statistics, Mathematics, Computer Science, or related field AND 6+ years experience in software development lifecycle, large-scale computing, threat modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), or operations incident response
  • OR equivalent experience
Job Responsibility
Job Responsibility
  • Architect and drive Gaming’s cloud-first detection and response vision by integrating Azure, AWS, and GCP (Google Cloud Platform) native security services and telemetry sources into TDIR (Threat Detection, Investigation, and Response) workflows
  • Lead adoption and optimization of Microsoft Defender for Cloud, Sentinel, Entra ID security, Defender for Cloud Apps, and other cloud-native security controls
  • Establish standards and reference architectures for cloud telemetry ingestion, normalization, enrichment, and threat analytics across diverse studio environments
  • Build and maintain high-fidelity, cloud-native detections targeting threat actors across identity, SaaS, PaaS, IaaS, and Kubernetes environments
  • Develop behavioral detections leveraging KQL (Kusto Query Language), automation, analytics, and ML-assisted methodologies
  • Partner with threat intelligence to map adversary TTPs (Tactics, Techniques, and Procedures) to cloud control surfaces and turn insights into durable detection engineering roadmaps
  • Serve as principal technical authority during major cloud-related incidents, providing expert guidance on identity compromise, lateral movement, key/material theft, resource manipulation, and multi-cloud attack paths
  • Formalize standards for cloud investigations, including telemetry requirements, visibility gaps, and automated triage workflows
  • Drive post-incident cloud hardening by influencing product teams, studio engineering, and platform owners
  • Architect and implement automation for detection deployment, evidence collection, containment, and remediation using Azure Functions, Logic Apps, and modern SOAR patterns
  • Fulltime
Read More
Arrow Right

Enterprise Solutions Engineer

As an Enterprise Solutions Engineer, you’ll be at the cutting edge of SaaS data ...
Location
Location
Germany , Munich
Salary
Salary:
Not provided
keepit.com Logo
Keepit
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Familiarity with OEM, Channel, and Vendor ecosystems is highly desirable
  • Ability to work independently in a fast-paced environment as a motivated self-starter
  • Strong time-management skills and excellent analytical and problem-solving capabilities
  • Experience managing multiple enterprise stakeholders to drive proposal outcomes
  • Ability to build and maintain strong relationships with customers, partners, and internal teams
  • Proven experience in sales engineering or technical sales, ideally in enterprise environments (pre-sales experience is a strong plus)
  • Proficiency in Microsoft O365 - including Exchange, OneDrive, Groups, Teams, SharePoint, and Dynamics and strong understanding of Microsoft Azure (Power Apps, DevOps, Power BI)
  • Familiarity with other cloud-based SaaS applications is highly desirable, and knowledge of MEDDIC or MEDPICC methodologies is beneficial
  • Fluent in German and English.
Job Responsibility
Job Responsibility
  • Deliver engaging presentations and product demonstrations both virtually and in person to enterprise prospects and customers
  • Manage and implement Proof of Concepts (POCs) to ensure successful technical validation and closure
  • Maintain Salesforce cadence with meticulous documentation
  • Support lead-generation initiatives, including events, webinars, and user groups
  • Collaborate with enterprise customers and partners to translate complex business objectives into technical solutions
  • Provide deep technical expertise on data protection through independent consultation with Keepit’s customers
  • Partner closely with the sales team to secure new enterprise clients and partners
  • Work with Product Management to relay customer feedback and insights from the enterprise segment
  • Offer pre-sales support to customers evaluating Keepit's enterprise-grade backup solution.
What we offer
What we offer
  • Pension scheme
  • A modern, energetic global work environment
  • Flexible work-life balance supported by a hybrid working model
  • Regular team-building activities
  • Opportunities for professional development and career advancement
  • Competitive salary, performance-based incentives, and professional development opportunities.
  • Fulltime
Read More
Arrow Right

Engineering Manager, Platform

You'll lead Gamma's Platform organization as we scale to serve hundreds of milli...
Location
Location
United States , San Francisco
Salary
Salary:
250000.00 - 350000.00 USD / Year
gamma.app Logo
Gamma
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years of experience in platform engineering, infrastructure, backend systems, or security, with deep proficiency in AWS, distributed systems, and authentication systems
  • 4+ years managing and developing engineering teams, with experience leading teams across multiple technical domains or managing managers
  • Deep understanding of cloud infrastructure (AWS), identity and authentication systems, security engineering, and observability
  • Strong knowledge of security best practices, compliance frameworks (SOC 2, ISO 27001), and building secure-by-default systems
  • Excellent communication skills and ability to translate complex infrastructure and security concepts to product teams and leadership
  • Demonstrated track record delivering complex infrastructure migrations, security initiatives, and platform improvements while maintaining reliability
Job Responsibility
Job Responsibility
  • Lead and mentor a team of 15-20 platform engineers across infrastructure, identity, security, and app platform domains
  • Guide senior and staff engineers in making strategic technical decisions about architecture, scalability, security, and reliability
  • Own the technical roadmap for platform systems including AWS infrastructure, identity and authentication, security tooling, and developer platform capabilities
  • Drive platform engineering hiring and onboarding, collaborating with recruiting and leadership to build world-class teams
  • Establish operational excellence practices including incident response, on-call rotations, SLAs, and system observability
  • Champion security-first thinking and compliance requirements (SOC 2, GDPR) across the engineering organization
What we offer
What we offer
  • competitive equity
  • Fulltime
Read More
Arrow Right