Head of Application Security

    About the Role

    The security operations unit protects the organization’s digital ecosystem by monitoring, analyzing, and operating advanced cybersecurity systems. The team continuously researches emerging cyber threats, applies modern technologies, and builds AI-driven security solutions to strengthen defense, incident detection, and automated security operations.

    Responsibilities

    • Perform manual and automated penetration testing for web, mobile, and API applications. Identify, classify, and prioritize vulnerabilities; provide remediation recommendations; validate fixes and ensure secure readiness.

    • Define and implement security checkpoints across the Software Development Life Cycle (SDLC). Conduct threat modeling, design-stage risk assessment, and provide secure coding guidance to development teams.

    • Design and automate security controls in CI/CD pipelines, including SAST, DAST, SCA, and container/K8s security; work closely with DevOps to ensure secure deployments.

    • Train developers and stakeholders on secure coding, secure SDLC, and AppSec best practices.

    • Research, evaluate, and adopt new security tools and technologies into the AppSec workflow.

    Requirements

    • Bachelor’s degree or higher in Computer Science, Cybersecurity, or related fields.

    • Minimum 7 years of experience in Application Security or Penetration Testing, including at least 2 years in a managerial role.

    • Strong understanding of common vulnerabilities and exploitation techniques (OWASP Top 10, CWE, SANS 25).

    Preferred:

    • Experience integrating SAST/DAST/SCA and container/K8s security tools into CI/CD pipelines.

    • Solid knowledge of SDLC security models, threat modeling, and risk assessment.

    • Experience with cloud security (AWS/Azure/GCP), Kubernetes/containers, or IaC security.

    • Certifications such as OSCP, GWAPT, CSSLP, CEH, or equivalent.

    HOW TO APPLY: Please send your CV to the consultant in charge: 
    Ms. My Do Huyen
    Email: my.do@ev-search.com 
    All applications will be considered without regard to race, color, religion, sex (inclusing pregnancy and fender identity), national origion, political affiliation, sexual orientation, mariatal status, disability, genetic information, age, membership in an employee organization, parental status, military service or other nonmerit factor

    Interested in this position?

    Get in touch with us now!

    Quick Apply
    Email