- Kwai Chung, New Territories Kwai Chung New Territories, Hong Kong Hong Kong

Working Location
Job Description
Responsibilities
Techtronic Industries Company Limited (“TTI”, or the “Company”), founded in 1985 by German entrepreneur Horst Julius Pudwill, is a world leader in cordless technology. As a pioneer in Power Tools, Outdoor Power Equipment, Floorcare and Cleaning Products, TTI serves professional, industrial, Do It Yourself (DIY), and consumer markets worldwide. With more than 48,000 employees globally, the company’s relentless focus on innovation and strategic growth has established its leading position in the industries it serves.
MILWAUKEE is at the forefront of TTI’s professional tool portfolio. With global research and development headquartered in Brookfield, Wisconsin, the historic MILWAUKEE brand is renowned for driving innovation, safety, and jobsite productivity worldwide. The RYOBI brand, headquartered in Greenville, South Carolina, remains the top choice for DIYers and continues to set the standard in DIY tool innovation. TTI’s diverse brand portfolio also includes trusted brands like AEG, EMPIRE, HOMELITE, and leading floorcare names HOOVER, ORECK, VAX, and DIRT DEVIL.
TTI’s international recognition and renowned brand portfolio are supported by a strong ownership structure that underscores the company’s global reach and stability. The Pudwill family remains the company’s largest shareholder, with the remaining ownership held largely by institutional investors at North American and European-owned firms. TTI is publicly traded on the Hong Kong Stock Exchange and is a constituent stock of the Hang Seng Index, operating globally with a strong commitment to environmental, social, and corporate governance standards.
Responsibilities:
Hands-on Testing & Analysis
Conduct manual and automated testing of applications, APIs and associated systems to identify vulnerabilities
Analyze application security flaws using tools (e.g. Burp Suite, OWASP ZAP, SonarQube, or other DAST/SAST tools) and manual testing methods
Conduct root cause analysis of findings and validate remediation effectiveness
Maintain and improve testing frameworks, tools and methodologies
Development Engagement and Advisory
Work closely with application teams to review code, assess secure design practices and provide proactive security recommendations to embed security practices into the SDLC
Provide technical guidance on secure coding practices aligned with standards like OWASP Top 10, CWE and related frameworks
Act as a trusted advisor, translating security requirements into developer-friendly guidance
Educate developers on secure coding practices through workshops, documentation and one-on-one coaching
Vulnerability Remediation & Guidance
Advise developers and stakeholders by offering practical and actionable remediation solutions for vulnerabilities identified during testing
Collaborate with developers to prioritize fixes based on risk and business impact
Track remediation progress and ensure timely closure of vulnerabilities
Requirements:
1. Academic & Years of Experience
Degree in Computer Science / Information Technology or in related discipline
Minimum 5 years of total IT experience with 3 years in application development and testing
Certifications such as OSCP, CISSP, GIAC (GWEB, GPEN) or equivalent is an advantage
Working experience in a global enterprise environment
2. Technical Knowledge
Solid understanding of:
o Secure coding concepts
o OWASP Top 10, CWE, CVSS/critical vulnerabilities
o Application architectures (web, mobile, API, cloud, etc.)
Proficiency in security testing and familiarity with popular application security testing tools (e.g. Burp Suite, SAST tools like SonarQube, Fortify)
Proven ability to provide practical solutions and clear advice for addressing technical issues
Familiarity with CI/CD pipelines, DevSecOps culture and relevant tooling
Hands-on experience in secure code review or delivering specific developer training
Proficiency in at least one programming language (e.g. Java, Python, C#) and familiarity with modern frameworks
Experience working directly with developers in agile environments
Solid understanding of common vulnerabilities and practical remediation techniques
3. Other Skills
Excellent communication skill with the ability to translate technical issues into business-relevant terms
Strong sense of responsibility, continuous improvement with a can-do attitude
Good analytical and problem-solving skills
Team player with good interpersonal and organizational skills
Good command of spoken and written Cantonese and English; Knowledge of Mandarin is an advantage
Occasional travel to the China / Asia Office is required
We offer 5-day week, competitive remuneration package including double pay, medical, life & personal accident insurances, education sponsorship and good career prospects to the right candidate. Interested parties please send your resume with expected salary by clicking Quick Apply.
(All personal data collected would be used for recruitment purpose only)
Important Information
Never provide your bank or credit card details when applying for jobs. Do not transfer any money or complete unrelated online surveys. If you see something suspicious, Report this Job ad.