jobs in Pan Asia Software Solutions

全职 Immediate Opening for Cloud Vulnerability Management - DevSecOps 工作, 薪水 up to MYR 12,000, Pan Asia Software Solutions Federal Territory 公司招聘中 - Ricebowl

Immediate Opening for Cloud Vulnerability Management - DevSecOps

KL City, Federal Territory

分享
保存

工作地点

  • Kuala Lumpur Federal Territory Malaysia

职位描述

岗位职责

Greetings from Pan Asia Software Solutions!!!

We have an Immediate Opening Cloud Vulnerability Management & DevSecOps with our reputed Client.

Client Location Kuala Lumpur.

Experience: 5+ years

Job Purpose

The Senior Cloud Vulnerability & DevSecOps supports the Threat & Vulnerability Management operations. This role ensures that the organization’s cloud architecture, services, and workloads are secure from evolving threats by proactively identifying vulnerabilities via CI/CD pipelines and cloud security operations and driving remediation strategies.

The incumbent will define vulnerability management methodologies, mentor junior team members, and serve as a technical advisor to cross-functional teams, contributing directly to the enterprise’s overall cloud security posture.

Job Responsibilities

Minimum 5 years of experience in penetration testing, with at least 2–3 years focused on cloud platforms (AWS, Azure, GCP).

Proven experience performing Penetration Testing in a cloud infrastructure, cloud misconfiguration exploitation, and offensive tool development.

Experience in regulated environments (e.g., banking, finance, or telecommunications) is highly advantageous.

Hands-on experience with CI/CD tools (e.g., Jenkins, GitLab CI, GitHub Actions, CircleCI).

Manage end-to-end vulnerability management for Azure and AWS environments.

Perform risk-based prioritization and coordinate remediation with Cloud, DevOps, and application teams.

Define, track, and report on remediation SLAs, exceptions, and risk treatment plans.

Integrate security controls into CI/CD pipelines (SAST, DAST, SCA, secrets scanning, container and IaC scanning).

Support software supply chain security (SBOMs, provenance, code signing, open-source governance).

Ensure alignment with internal policies, standards, and regulatory requirements.

Produce dashboards and metrics on cloud vulnerability risk and DevSecOps maturity.

Collaborate with Security Operations, Risk, and Engineering teams to drive continuous improvement in cloud security posture and DevSecOps practices.

Support secure IAM configuration processes and identity automation workflows.

Continue learning and staying updated on cloud technologies and best practices.

CERTIFICATIONS/REGULATORY CERTIFICATIONS

Offensive Security Certified Professional (OSCP), Offensive Security Experienced Professional (OSEP), GIAC Cloud Penetration Tester (GCPN), GIAC Web Application Penetration Tester (GWAPT), or CREST equivalent.

Cloud security certifications such as AWS Certified Security Specialty, Microsoft Azure Security Engineer Associate, or Google Professional Cloud Security Engineer, Certified DevSecOps

Professional (CDP), Certified Kubernetes Security Specialist (CKS), GIAC Cloud Security Automation (GCSA)

JOB SPECIFIC SKILLS & COMPETENCIES REQUIRED

In-depth knowledge of public cloud environments: AWS, Azure, and GCP.

Strong understanding of IAM, cloud networking, compute, serverless, containers (Kubernetes), storage, and logging.

Skilled in offensive security tools such as Pacu, ScoutSuite, Prowler, Burp Suite, Nmap, custom scripting (Python, Bash, PowerShell).

Familiar with IaC and CI/CD tooling: Terraform, CloudFormation, Jenkins, GitLab CI, etc.

Strong understanding of MITRE ATT&CK for Cloud, adversary simulation, and attacker TTPs.

Strong analytical and problem-solving mindset.

Effective communication skills — capable of presenting to both technical and senior leadership audiences.

Leadership and mentoring abilities, with experience guiding junior security professionals.

Self-driven, highly motivated, and able to work independently in a fast-paced environment.

Collaborative and adaptable — capable of working across departments and business units.

Interested Share updated resume to ************* or Watsapp: +************* along with below details

Current Salary:

Expected Salary:

Notice Period:

Total Exp:

Relevant Exp:

{Note: if it doesn't suit you, please refer your matching friends or kindly ignore it}

Nithya Senior IT Talent Acquisition Specialist

HP : +************* 0562

Pay: RM8,000.00 - RM12,000.00 per month

Work Location: In person

重要安全守则

申请工作时,切勿提供您的银行或信用卡详细资料。不要转账或完成无关的在线调查问卷。如果您发现可疑内容,请举报此招聘广告。

了解更多