- Expertini Resume Scoring: Our Semantic Matching Algorithm evaluates your CV/Résumé before you apply for this job role: Product Security Vulnerability Management Engineer.
Urgent! Product Security Vulnerability Management Engineer Job Opening In Kuala Lumpur – Now Hiring The Access Group
We’re looking for people to join the Access family, who share our passion for believing in better, and who will help us continue to grow.Love Work.
Love Life.
Be You.
- is central to our success and how we give our customers the freedom to do more of what's important to them.We offer a blended approach to office working, encouraging you to collaborate and connect in one of our thriving offices.
We deliver on what we say, taking the development of our people seriously.
We’ll work with you to progress your success plan and provide opportunities to accelerate your career.On top of a competitive salary, our wellbeing days taking you to 25 days leave a year and a health contribution, you’ll also be able to choose from a range of benefits to suit you.
We’re an organisation that likes to give back, so you’ll also have three charity days allocated to support a cause that matters to you.**Position Overview**We are seeking a motivated Product Security Vulnerability Management Engineer with 2-3 years of experience to support, manage, and contribute to our comprehensive product security program.
This role will be instrumental in operating and enhancing our Application Security Testing Platform, supporting the Secure Software Development Lifecycle (SSDLC) Platform, and enabling DevSecOps integration across our development ecosystem.The position focuses on maintaining automated security testing across the entire product stack while learning to implement secure development practices throughout the organization and collaborating closely with development teams to embed security throughout the software development lifecycle.The ideal candidate will have hands-on experience with automated security testing tools, DevSecOps practices, a solid foundation in product security principles, and be ready to take on increased responsibilities in vulnerability management, developer engagement, and security program optimization while continuing to develop their expertise in secure SDLC implementation and NIST framework alignment.**Key Responsibilities****Application Security Testing & Analysis*** Support the development and maintenance of testing orchestration processes to ensure seamless integration across multiple security tools* Assist in maintaining and optimizing the unified security testing platform integration with development workflows**DevSecOps Integration & Enablement*** Partner with development teams to integrate security testing into CI/CD pipelines and help reduce friction in security adoption* Support DevSecOps integration and orchestration activities, including container security scanning and policy as code implementation* Assist in maintaining pipeline security coverage and security gate automation across development workflows* Contribute to container vulnerability metrics collection and policy compliance monitoring* Support Infrastructure as Code (IaC) security scanning and compliance checks* Create security-focused monitoring and logging solutions for production environments with senior team guidance**Secure SDLC Support & Implementation*** Support threat modeling activities, security requirements generation, and secure architecture pattern implementation aligned with NIST Secure Software Development Framework* Contribute to the operation and maintenance of the Secure Software Development Lifecycle (SSDLC) Platform* Assist in ensuring security activities are integrated throughout the software development lifecycle* Support security gate implementation and help track security gate pass rates* Participate in architecture reviews and provide input on secure design patterns.* Contribute to security requirements coverage and documentation**Vulnerability Management & Reporting*** Track and report on key security metrics including vulnerability detection rates, false positive rates, and developer adoption metrics* Maintain vulnerability findings database and ensure accurate tracking of remediation efforts* Support mean time to remediation (MTTR) tracking and vulnerability aging metrics* Generate unified security reports from multiple testing tools for stakeholders and management* Monitor application security coverage and identify gaps in testing coverage across the application portfolio* Work collaboratively with development teams to support remediation of high-priority vulnerabilities* Support compliance efforts by ensuring alignment with NIST Cybersecurity Framework 2.0 controls**Developer Collaboration & Security Enablement*** Provide security guidance and training to developers on secure coding practices and vulnerability remediation* Support developer onboarding security tools and processes, contributing to improved adoption rates* Create and maintain developer-friendly documentation including integration playbooks and security guides* Contribute to developer security enablement programs and security champion initiatives* Support secure coding standards implementation and help track secure coding violations trends* Assist in security knowledge assessment activities and training satisfaction measurement**Process Improvement & Continuous Learning*** Identify opportunities to enhance the application security testing platform and reduce false positives* Evaluate and assist in piloting new security tools and technologies to improve detection capabilities* Contribute to security policy development and help establish security standards for application development* Support incident response activities related to application security vulnerabilities* Stay current with emerging threats and application security best practices through continuous learning* Contribute to continuous improvement in security automation and tool efficiency**Required Qualifications****Education & Experience:*** Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or related field* 2-3 years of hands-on experience in product security, application security, DevSecOps, or related security roles* Demonstrated experience with application security testing tools and methodologies* Experience supporting product security programs or secure development initiatives**Technical Skills:*** Proficiency with SAST, DAST, and SCA tools* Understanding of secure coding practices and common vulnerability types (OWASP Top 10, CWE Top 25)* Experience with CI/CD integration and DevSecOps principles* Familiarity with programming languages commonly used in enterprise environments (Python, Java, JavaScript, C#, etc.)* Knowledge of web application security concepts and testing methodologies* Basic understanding of threat modeling methodologies (STRIDE, PASTA)* Familiarity with container security and cloud-native application security concepts* Understanding of NIST frameworks including Cybersecurity Framework 2.0 and Secure Software Development Framework* Experience with Infrastructure as Code (IaC) security scanning tools* Knowledge of vulnerability management principles and practices**Soft Skills:*** Strong analytical and problem-solving abilities with attention to detail* Excellent communication skills for collaborating with technical and non-technical stakeholders* Ability to work in fast-paced, agile environments while maintaining security standards* Project management capabilities for coordinating security initiatives across multiple teams* Eagerness to learn and grow in product security expertise* Passion for continuous learning and staying current with security trends**Key Performance Indicators:*** Support improvement in mean time to detection (MTTD) for application vulnerabilities and maintain mean time to remediation (MTTR) below organizational targets* Help maintain false positive rate below 5% across all testing types through tool tuning and process optimization* Support achieving 95%+ developer adoption rate of security tools and processes* Contribute to pipeline security coverage metrics
#J-18808-Ljbffr
✨ Smart • Intelligent • Private • Secure
Practice for Any Interview Q&A (AI Enabled)
Predict interview Q&A (AI Supported)
Mock interview trainer (AI Supported)
Ace behavioral interviews (AI Powered)
Record interview questions (Confidential)
Master your interviews
Track your answers (Confidential)
Schedule your applications (Confidential)
Create perfect cover letters (AI Supported)
Analyze your resume (NLP Supported)
ATS compatibility check (AI Supported)
Optimize your applications (AI Supported)
O*NET Supported
O*NET Supported
O*NET Supported
O*NET Supported
O*NET Supported
European Union Recommended
Institution Recommended
Institution Recommended
Researcher Recommended
IT Savvy Recommended
Trades Recommended
O*NET Supported
Artist Recommended
Researchers Recommended
Create your account
Access your account
Create your professional profile
Preview your profile
Your saved opportunities
Reviews you've given
Companies you follow
Discover employers
O*NET Supported
Common questions answered
Help for job seekers
How matching works
Customized job suggestions
Fast application process
Manage alert settings
Understanding alerts
How we match resumes
Professional branding guide
Increase your visibility
Get verified status
Learn about our AI
How ATS ranks you
AI-powered matching
Join thousands of professionals who've advanced their careers with our platform
Unlock Your Product Security Potential: Insight & Career Growth Guide
Real-time Product Security Jobs Trends in Kuala Lumpur, Malaysia (Graphical Representation)
Explore profound insights with Expertini's real-time, in-depth analysis, showcased through the graph below. This graph displays the job market trends for Product Security in Kuala Lumpur, Malaysia using a bar chart to represent the number of jobs available and a trend line to illustrate the trend over time. Specifically, the graph shows 4005 jobs in Malaysia and 1071 jobs in Kuala Lumpur. This comprehensive analysis highlights market share and opportunities for professionals in Product Security roles. These dynamic trends provide a better understanding of the job market landscape in these regions.
Great news! The Access Group is currently hiring and seeking a Product Security Vulnerability Management Engineer to join their team. Feel free to download the job details.
Wait no longer! Are you also interested in exploring similar jobs? Search now: Product Security Vulnerability Management Engineer Jobs Kuala Lumpur.
An organization's rules and standards set how people should be treated in the office and how different situations should be handled. The work culture at The Access Group adheres to the cultural norms as outlined by Expertini.
The fundamental ethical values are:The average salary range for a Product Security Vulnerability Management Engineer Jobs Malaysia varies, but the pay scale is rated "Standard" in Kuala Lumpur. Salary levels may vary depending on your industry, experience, and skills. It's essential to research and negotiate effectively. We advise reading the full job specification before proceeding with the application to understand the salary package.
Key qualifications for Product Security Vulnerability Management Engineer typically include Engineering and a list of qualifications and expertise as mentioned in the job specification. Be sure to check the specific job listing for detailed requirements and qualifications.
To improve your chances of getting hired for Product Security Vulnerability Management Engineer, consider enhancing your skills. Check your CV/Résumé Score with our free Resume Scoring Tool. We have an in-built Resume Scoring tool that gives you the matching score for each job based on your CV/Résumé once it is uploaded. This can help you align your CV/Résumé according to the job requirements and enhance your skills if needed.
Here are some tips to help you prepare for and ace your job interview:
Before the Interview:To prepare for your Product Security Vulnerability Management Engineer interview at The Access Group, research the company, understand the job requirements, and practice common interview questions.
Highlight your leadership skills, achievements, and strategic thinking abilities. Be prepared to discuss your experience with HR, including your approach to meeting targets as a team player. Additionally, review the The Access Group's products or services and be prepared to discuss how you can contribute to their success.
By following these tips, you can increase your chances of making a positive impression and landing the job!
Setting up job alerts for Product Security Vulnerability Management Engineer is easy with Malaysia Jobs Expertini. Simply visit our job alerts page here, enter your preferred job title and location, and choose how often you want to receive notifications. You'll get the latest job openings sent directly to your email for FREE!