Application Security SME

3 days ago


Taguig, National Capital Region, Philippines Pan Asia Resources PH Inc. Full time ₱100,000 - ₱120,000 per year

Required Technical Skillset

  • Devsecops & API security controls- (Nexus, SonarQube, Trivvy) from RHOCP RAC
  • Vulnerability Assessment/Penetration Testing - SaaS/Digital Facing Solutions (Cyberint)

Exp: 8+ years / Manila

Primary Skills

  • Serve as the Application Security (AppSec) Subject Matter Expert for the organization's SaaS/Digital Facing Solutions.
  • Lead and execute comprehensive Vulnerability Assessment (VA) and Penetration Testing (PT) across applications and APIs.
  • Manage and administer the Application Security Testing (AST) toolchain, specializing in SonarQube (SAST/Code Quality).
  • Integrate and maintain Trivy for dynamic container image scanning within the CI/CD pipeline for robust security checks.
  • Oversee artifact management security, leveraging Nexus repository for vulnerability scanning and policy enforcement.
  • Provide SME guidance on securing containerized applications deployed on Red Hat OpenShift Container Platform (RHOCP).
  • Define, implement, and govern the AppSec program using the RACI model for clear accountability across teams.
  • Conduct manual and automated code reviews to identify and prioritize critical security flaws and coding practices.
  • Collaborate with development and DevOps teams to embed security gates throughout the Software Development Lifecycle (SDLC).
  • Develop and standardize secure coding practices, offering targeted training and mentorship to engineering teams.
  • Perform threat modeling and risk analysis for new applications and significant architectural changes.
  • Manage the vulnerability lifecycle from discovery and triage to remediation verification and reporting.
  • Research and analyze emerging application security threats, attack vectors, and exploit techniques.
  • Research and analyze emerging application security threats, attack vectors, and exploit techniques.
  • Maintain and tune scanning tools to minimize false positives and ensure accurate reporting on security posture.
  • Track and report on key application security metrics to leadership and risk governance committees.
  • Implement API security controls throughout the API lifecycle from development to retirement.
  • Possess strong knowledge of OWASP Top 10, SANS Top 25, and common industry security standards.
  • Collaborate with teams to define and clarify roles and responsibilities using the RACI matrix for AppSec processes.
  • Lead the remediation effort by providing code-level guidance to developers on mitigating complex security flaws.
  • Manage the bug bounty program and external vendor penetration test engagements.
  • Develop and deliver customized secure coding training for application development teams.
  • Stay current with emerging threats, vulnerabilities, and security technologies to inform risk mitigation strategies.
  • Contribute to the continuous improvement of application security tooling and overall security posture

Certificates

  • Relevant certifications in Devsecops and VAPT (Nexus, SonarQube, Trivvy)

Job Types: Full-time, Permanent

Work Location: In person


  • Data Security SME

    1 week ago


    Taguig, National Capital Region, Philippines Tata Consultancy Services Full time ₱2,000,000 - ₱2,500,000 per year

    Primary SkillsServe as the principal SME for Public Key Infrastructure (PKI) and Hardware Security Module (HSM) technologies.Define and maintain the organizational standards, policies, and procedures for PKI.Design, implement, and manage HSM solutions for key lifecycle management.Provide deep technical expertise on securing sensitive data across various...


  • Taguig, National Capital Region, Philippines The Pinnacle Operating System Inc. Full time ₱900,000 - ₱1,200,000 per year

    Required skills:- DevSecOps & API security controls - (Nexus, SonarQube, Trivvy) from RHOCP RACVulnerability Assessment/Penetration Testing - SaaS/Digital Facing Solutions (Cyberint)Job Types: Full-time, PermanentWork Location: In person

  • Cloud Security SME

    2 weeks ago


    Taguig, National Capital Region, Philippines Elorah Group Full time ₱75,000 - ₱150,000 per year

    Location:BGC Taguig or MakatiShift:Night / Shifting (Flexibility required)Set-up:RTWO / HybridSalary Range:₱75,000 – ₱150,000 (Basic)Experience:6–10 yearsOpen Headcount:1About the RoleWe're looking for an experiencedCloud Security Subject Matter Expert (SME)to design, implement, and manage secure cloud environments across multiple platforms.You'll...


  • Taguig, National Capital Region, Philippines Metrobank Full time ₱900,000 - ₱1,200,000 per year

    Be #InGoodHands with MetrobankHere at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future...


  • Taguig, National Capital Region, Philippines Monroe Consulting Group Full time ₱60,000 - ₱120,000 per year

    Executive search firm Monroe Consulting Group Philippines is recruiting on behalf of a renowned knowledge process outsourcing of a global law firm. TheSecurity Vulnerability and Penetration Testing Engineerwill oversee and serve as a technical resource for all assessment activities related to the security posture of existing and proposed firm systems,...

  • Salesforce SME

    3 days ago


    Taguig, National Capital Region, Philippines Sun Life Full time ₱1,200,000 - ₱2,400,000 per year

    You are as unique as your background, experience and point of view. Here, you'll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll...


  • Taguig, National Capital Region, Philippines EPS Staffing Service Group Inc Full time ₱720,000 - ₱1,440,000 per year

    Job Type: Permanent (Full time)Work Arrangement: Hybrid (8 times RTO per month. Must be amenable to render overtime, work on weekends, and/or PH holidays if needed);Office Location: Taguig, BGCWork Schedule: Morning shift (8AM or 9AM), meetings in the evening occasionallySummaryTo oversee and serve as a technical resource for all assessment activities...

  • Security Consultant

    3 days ago


    Taguig, National Capital Region, Philippines Theos Cyber Solutions Ltd. Full time ₱1,200,000 - ₱2,400,000 per year

    About TheosOur mission is to empower businesses to thrive in the new digital security age by helping define and execute strategies to achieve cyber resilience. Practical steps instead of silver bullets. We are a team of experts in key security domains, including Penetration Testing, Red Teaming, Managed Detection & Response, and Digital Forensics and...

  • Security Engineer

    3 days ago


    Taguig, National Capital Region, Philippines Asticom Technology Inc. Full time ₱1,200,000 - ₱2,400,000 per year

    The Service Delivery Engineer supports the secure delivery of internal and external cybersecuritysolutions and services by performing technical assessments, risk analysis, and solution deployment.The role works closely with stakeholders to identify security needs, assess vulnerabilities, and assistin implementing and operationalizing security controls. It...

  • Monitoring SME

    3 days ago


    Taguig, National Capital Region, Philippines Cognizant Technology Solutions Full time ₱1,500,000 - ₱3,000,000 per year

    Cognizant is looking for an experienced Monitoring SME for our fast-growing business area. An ideal candidate is someone best problem-solvers, idea-makers, and high-energy individual. If you meet our background requirements and looking for an opportunity to be rewarded for your skills and expertise, is the ideal opportunity for youGrade: Senior Associate...