← AMANOTES
Cloud Security Engineer / DevSecOps SRE, GCP
AMANOTES · Hồ Chí Minh
Ứng tuyển tại trang chính thức ↗
Loại hình
Toàn thời gian
Hình thức
Tại văn phòng
Cấp bậc
Nhân viên
Ngành nghề
Kỹ thuật / Cơ khí
Mức lương
Thương lượng
Địa điểm
Not Available, Hồ Chí Minh, Hồ Chí Minh
Tổng quan
Cloud Security Engineer / DevSecOps SRE, GCP · Not Available, Hồ Chí Minh, Hồ Chí Minh.
Yêu cầu
- Must Have
- Professional Experience: 3+ years of hands-on experience in Cloud Security, DevSecOps, or Infrastructure Security roles.
- GCP Security & Operations: Proven hands-on experience securing and managing GCP environments, including IAM, Service Accounts, GKE, Security Command Center, and Artifact Registry.
- DevSecOps & Infrastructure: Strong background in SRE or Infrastructure Security, with expertise in CI/CD (GitLab, ArgoCD), Kubernetes, container security, and infrastructure-as-code.
- Security Tooling & Remediation: Proficiency in automated scanning (CVE, secrets, images) and a track record of driving complex vulnerability remediation plans in production environments.
- Core Fundamentals: Deep understanding of Linux systems, networking, RBAC, and zero-trust security patterns in a multi-cloud context.
- Nice to Have
- AI/LLM Integration & Governance:
- Experience implementing security controls for AI platforms (Vertex AI, Gemini), model-access governance, and securing LLM-based application workflows.
- Experience with AI security testing, prompt injection assessment, LLM red-teaming, and governance controls for GenAI platforms in production environments.
- Automation & Observability: Skilled in Python or Bash scripting and leveraging observability stacks (Datadog, Honeycomb) to build proactive security monitoring and reporting.
- Multi-Cloud: Hands-on experience with AWS security and infrastructure controls.
- Why You'll Love Working Here
Quyền lợi
- Work with people from 10+ countries
- Flexible working hours & working from home policy
- The Job
- About the Role
- We are looking for a hands-on Cloud Security Engineer to strengthen the security, resilience, and operational reliability of our infrastructure, CI/CD pipelines, cloud environments, and internal platforms.
- This role goes beyond day-to-day security operations. You will help design and implement practical guardrails, tools, and processes that reduce vulnerabilities, prevent key leakage, improve security hygiene, and support broader governance and compliance goals across the organization.
- In addition to owning core security responsibilities, this role should be broad enough in systems and operations to support cross-team collaboration and share workload when needed across cloud infrastructure, CI/CD, platform reliability, and other high-priority TechOps initiatives.
- What you will do
- Identify, classify, track, and help resolve security findings across cloud environments, clusters, container images, endpoints, CI/CD pipelines, and related systems, focusing on high and critical risks.
- Design, implement, and continuously improve security controls in CI/CD pipelines, including secret detection, CVE scanning, and policy-based gates, while standardizing rollout patterns across engineering teams.
- Improve security across AWS and GCP environments, Kubernetes clusters, and registries by deploying scanning, sensing, and guardrail solutions to reduce attack surface at the runtime and infrastructure layers.
- Propose and implement controls such as key rotation, access policies, RBAC, and fit-for-purpose authentication to remediate risks related to credential leakage, IAM misconfigurations, and excessive permissions.
- Conduct periodic assessments, participate in incident handling, and build documentation or dashboards that improve security visibility and cross-team collaboration with TechOps, SRE, and stakeholders.
- Your Skills and Experience
- Work on real-world security challenges across cloud, CI/CD, internal platforms, and AI workloads.
- Create visible impact on infrastructure reliability, security hygiene, and governance maturity
- Help TechOps build safer, more scalable, and more operationally effective platforms and controls
- Our Environment
- You will work in and help secure a modern multi-cloud and platform environment, with a primary focus on AWS, GCP, Cloudflare, and BytePlus, along with the internal platforms, CI/CD systems, and observability tooling that support our engineering ecosystem.
- At Amanotes, you will be enjoying the dynamic working environment with unique music culture many benefits as below:
Chế độ thưởngĐào tạoGửi xe
Tóm tắt thông tin từ tin tuyển dụng chính thức. Xem bản gốc ↗
Quan tâm đến vị trí này?
Bạn sẽ được chuyển đến trang ứng tuyển chính thức của nhà tuyển dụng.
Ứng tuyển tại trang chính thức ↗
Đây là doanh nghiệp của bạn?
Nhận quản lý trang, yêu cầu chỉnh sửa hoặc gỡ bỏ
→