Talent.com
Application Security SME

Application Security SME

RiDiK (a Subsidiary of CLPS. Nasdaq : CLPS)Manila, Metro Manila, Philippines
1 day ago
Job description

Position

Application Security SME

Location

Manila

Experience

6+ years

Required Technical Skill Set

  • DevSecOps & API security controls- (Nexus, SonarQube, Trivy) from RHOCP RAC
  • Vulnerability Assessment / Penetration Testing - SaaS / Digital Facing Solutions (Cyberint)

Job Description

  • Serve as the Application Security (AppSec) Subject Matter Expert for the organization's SaaS / Digital Facing Solutions.
  • Lead and execute comprehensive Vulnerability Assessment (VA) and Penetration Testing (PT) across applications and APIs.
  • Manage and administer the Application Security Testing (AST) toolchain, specializing in SonarQube (SAST / Code Quality).
  • Integrate and maintain Trivy for dynamic container image scanning within the CI / CD pipeline for robust security checks.
  • Oversee artifact management security, leveraging Nexus repository for vulnerability scanning and policy enforcement.
  • Provide SME guidance on securing containerized applications deployed on Red Hat OpenShift Container Platform (RHOCP) .
  • Define, implement, and govern the AppSec program using the RACI model for clear accountability across teams.
  • Conduct manual and automated code reviews to identify and prioritize critical security flaws and coding practices.
  • Collaborate with development and DevOps teams to embed security gates throughout the Software Development Lifecycle (SDLC).
  • Develop and standardize secure coding practices, offering targeted training and mentorship to engineering teams.
  • Perform threat modeling and risk analysis for new applications and significant architectural changes.
  • Manage the vulnerability lifecycle from discovery and triage to remediation verification and reporting.
  • Research and analyze emerging application security threats, attack vectors, and exploit techniques.
  • Maintain and tune scanning tools to minimize false positives and ensure accurate reporting on security posture.
  • Track and report on key application security metrics to leadership and risk governance committees.
  • Implement API security controls throughout the API lifecycle from development to retirement.
  • Possess strong knowledge of OWASP Top 10, SANS Top 25, and common industry security standards.
  • Collaborate with teams to define and clarify roles and responsibilities using the RACI matrix for AppSec processes.
  • Lead the remediation effort by providing code-level guidance to developers on mitigating complex security flaws.
  • Manage the bug bounty program and external vendor penetration test engagements.
  • Develop and deliver customized secure coding training for application development teams.
  • Stay current with emerging threats, vulnerabilities, and security technologies to inform risk mitigation strategies.
  • Contribute to the continuous improvement of application security tooling and overall security posture.
  • Certificates

  • Relevant certifications in DevSecOps and VAPT (Nexus, SonarQube, Trivy)
  • About CLPS RiDiK

    RiDiK is a global technology solutions provider and a subsidiary of CLPS Incorporation (NASDAQ : CLPS), delivering cutting‑edge end‑to‑end services across banking, wealth management, and e‑commerce. With deep expertise in AI, cloud, big data, and blockchain, we support clients across Asia, North America, and the Middle East in driving digital transformation and achieving sustainable growth. Operating from regional hubs in 10 countries and backed by a global delivery network, we combine local insight with technical excellence to deliver real, measurable impact. Join RiDiK and be part of an innovative, fast‑growing team shaping the future of technology across industries.

    Seniority Level

    Mid‑Senior level

    Employment Type

    Full‑time

    Job Function

    Information Technology

    Industries

    IT Services and IT Consulting

    #J-18808-Ljbffr

    Create a job alert for this search

    Application Security • Manila, Metro Manila, Philippines

    Related jobs
    • Promoted
    Mobile Application Security Lead

    Mobile Application Security Lead

    Hunter's Hub Inc.Makati, Metro Manila, Philippines
    Responsible for ensuring that the Chinabank mobile application is the most secure and safe digital banking app.This role involves protecting our customers' finances and data by implementing robust ...Show moreLast updated: 30+ days ago
    SAP Security - Consultant (Makati) - Hybrid, morning shift

    SAP Security - Consultant (Makati) - Hybrid, morning shift

    TASQ Staffing SolutionsMakati, Metro Manila, Philippines
    About the job SAP Security - Consultant (Makati) | Hybrid.Hybrid (3x onsite per week) | Makati.Open to local and expat candidates currently residing in the Philippines. Participate in end-to-end SAP...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Mobile App Security Lead for Banking Apps

    Senior Mobile App Security Lead for Banking Apps

    Hunter's Hub Inc.Makati, Metro Manila, Philippines
    A leading technology recruitment firm in Metro Manila is seeking a Mobile Applications Security Lead to ensure the security of the Chinabank mobile application. The ideal candidate should have a Bac...Show moreLast updated: 1 day ago
    • Promoted
    Security Engineer-2

    Security Engineer-2

    CopelandQuezon City, Metro Manila, Philippines
    Copeland Quezon City, National Capital Region, Philippines.We are a global climate technologies company engineered for sustainability. We create sustainable and efficient residential, commercial and...Show moreLast updated: 23 days ago
    • Promoted
    VP Application Security

    VP Application Security

    HrtxTaguig, Metro Manila, Philippines
    The ideal candidate will have a strong technical background in application security, hands-on expertise with security testing tools, and proven leadership experience in building and managing securi...Show moreLast updated: 30+ days ago
    • Promoted
    Security Operations Engineer - Security Testing

    Security Operations Engineer - Security Testing

    WTWTaguig, Metro Manila, Philippines
    Security Operations Engineer - Security Testing.WTW Taguig, National Capital Region, Philippines.Build effective relations and engage in business security activities like vulnerabilities assessment...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    Yondu, Inc.Taguig, Metro Manila, Philippines
    Taguig, National Capital Region, Philippines.Be among the first 25 applicants.Installs and configures software and hardware. Manages Patch Management tools.Ensures security through patch management ...Show moreLast updated: 30+ days ago
    OWASP - Certified Security Engineer

    OWASP - Certified Security Engineer

    OffshorlyQuezon City, Metro Manila, Philippines
    Quick Apply
    Job Title : OWASP-Certified Security Engineer.We are seeking an OWASP-Certified Security Engineer to strengthen our application security posture and ensure our products meet industry-leading securit...Show moreLast updated: 3 days ago
    • Promoted
    Security Engineer for Security Penetration Testing

    Security Engineer for Security Penetration Testing

    Accenture in the PhilippinesQuezon City, Metro Manila, Philippines
    Security Engineer for Security Penetration Testing at Accenture in the Philippines.This role focuses on applying security expertise to design, build, and protect enterprise systems, applications, d...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Operations Engineer

    Senior Security Operations Engineer

    CanonicalMetro Manila, Philippines
    Senior Security Operations Engineer.We have opened several senior / staff Security Operations Engineer (SOC) positions, creating a new team reporting to the CISO. We are looking for a range of experie...Show moreLast updated: 30+ days ago
    • Promoted
    Senior MSP Security Engineer – Incident Response

    Senior MSP Security Engineer – Incident Response

    NCS GroupTaguig, Metro Manila, Philippines
    A leading cybersecurity firm in Taguig is seeking a Senior Managed Security Services Engineer.This mid-senior level role involves managing security platforms for clients, ensuring environments are ...Show moreLast updated: 1 day ago
    • Promoted
    SAP Platform Security Leader Operations and Audit & Compliance

    SAP Platform Security Leader Operations and Audit & Compliance

    Procter & GambleManila, Metro Manila, Philippines
    SAP Platform Security Leader Operations and Audit & Compliance.We seek a highly skilled and experienced professional to assume the Senior Manager of SAP Platform Security Operations and Audit & Com...Show moreLast updated: 30+ days ago
    • Promoted
    VP for Application Security

    VP for Application Security

    HrtxTaguig, Metro Manila, Philippines
    Vice President Application Security.Vice President for Application Security.Develop and manage strategies for.Ensure compliance with relevant. ISO 27001, NIST, OWASP, PCI-DSS, SOC 2, etc.Collaborate...Show moreLast updated: 30+ days ago
    Security Operation Center (SOC) Analyst

    Security Operation Center (SOC) Analyst

    Questronix CorporationOrtigas Center, Metro Manila, PH
    Quick Apply
    Planning, implementing, managing, monitoring, and upgrading security measures for the protection of the organization's data, systems, and networks. Troubleshooting security and network problems.Resp...Show moreLast updated: 30+ days ago
    • Promoted
    Security Operations Center Engineer

    Security Operations Center Engineer

    Cobden & Carter InternationalTaguig, Metro Manila, Philippines
    About the job Security Operations Center Engineer.Develop, document, and implement process within the SOC and relevant reports. Actively monitor new and emerging Security infrastructure-related tech...Show moreLast updated: 1 day ago
    • Promoted
    Platform Security Engineer

    Platform Security Engineer

    MetrobankTaguig, Metro Manila, Philippines
    Press Tab to Move to Skip to Content Link.Design, evaluates, installs, and administers components and facilities for platform-specific infrastructure. He provides technical support services to perso...Show moreLast updated: 30+ days ago
    • Promoted
    CyberArk Operations Security Engineer

    CyberArk Operations Security Engineer

    Accenture in the PhilippinesQuezon City, Metro Manila, Philippines
    CyberArk Operations Security Engineer.Ready to join Accenture’s team of empowered people? We’re looking for candidates with the following skills and experience for this role.If you do, we’d love to...Show moreLast updated: 1 day ago
    • Promoted
    Security Platform Engineer

    Security Platform Engineer

    Michael PageMetro Manila, Philippines
    Enjoy market-aligned salaries & benefits.The company is a multinational banking institution.Design, implement, and manage security platforms that safeguard cloud-based banking infrastructure and ap...Show moreLast updated: 30+ days ago