Senior Application Security Engineer (Bangkok based, relocation provided)
Bangkok, Thailand
Overview
The Security Department oversees security, compliance, GRC, and security operations for Agoda.
We are vigilant in ensuring there is no breach or vulnerability threatening our company or endangering our employees.
This role is in a fast-paced DevSecOps environment where code changes rapidly and security testing is integrated into a continuous deployment/continuous integration flow.
Responsibilities
Play a lead role in developing and designing application-level security controls and standards.
Perform application security design reviews against new products and services.
Track and prioritize all security issues.
Build internal security tools that help fix security problems at scale.
Perform code review and drive remediation of discovered issues.
Enable automated security testing at scale to measure vulnerability, and report on risk across all microservice, web and mobile platforms.
Execute security tests on thousands of servers distributed across on-premise and public cloud data centers.
What you'll Need to Succeed
Strong foundations in software engineering.
Minimum of 7 years of technical experience with any combination of: threat modeling, secure coding, identity management and authentication, software development, cryptography, system administration and network security.
Minimum 2 years experience with Software Development Life Cycle in one or more languages (Rust, Python, Go, Node.js, etc.).
Minimum 1 year experience with public/private cloud environments (OpenShift, Rancher, Kubernetes, AWS, GCP, Azure, etc.).
Experience in running assessments using OWASP MASVS and ASVS.
Working knowledge of exploiting and fixing application vulnerabilities.
Strong background in threat modeling.
In-depth knowledge of common web application vulnerabilities (e.g., OWASP Top 10).
Familiarity with automated dynamic scanners, fuzzers, and proxy tools.
Analytical problem-solving mindset, offensive security tactics, and strong communication skills to convey technical concepts to diverse audiences.
Benefits and Work Model
Relocation package provided for those relocating to Bangkok, Thailand
Hybrid working model
WFH setup allowance
30 days of remote working from anywhere globally per year
Employee discount for accommodation globally
Global team of 90+ nationalities
40+ offices and 25+ countries
Annual CSR / Volunteer Time Off
Benevity subscription for employee donations
Volunteering opportunities globally
Free Headspace subscription
Free Odilo & Udemy subscriptions
Access to Employee Assistance Program
Enhanced Parental Leave
Life, TPD and Accident Insurance
Equal Opportunity Employer
At Agoda, we pride ourselves on being a company represented by people of all different backgrounds and orientations.
We are committed to providing equal employment opportunity regardless of sex, age, race, color, national origin, religion, marital status, pregnancy, sexual orientation, gender identity, disability, citizenship, veteran or military status, and other legally protected characteristics.
Disclaimer
We do not accept unsolicited terms or conditions from agencies.
If we receive unsolicited CVs, we reserve the right to contact and hire the candidate directly without any obligation to pay a recruitment fee.
#J-18808-Ljbffr