Senior Security Engineer
Petaling Jaya, Malaysia
Grab
Grab is Southeast Asia’s leading superapp. It provides everyday services like Deliveries, Mobility, Financial Services, and More.Company Description
At Grab, every Grabber is guided by The Grab Way, which spells out our mission, how we believe we can achieve it, and our operating principles - the 4Hs: Heart, Hunger, Honour and Humility. These principles guide and help us make decisions as we work to create economic empowerment for the people of Southeast Asia.
Job Description
Get to know the team
As an engineer at Grab, you are at the core of the company's mission and spirit. Our passion shines through the work we do, driving a meaningful impact on millions of lives every day. We take pride in building exceptional services and tools that support millions of passengers, driver-partners, and colleagues across the organization.
You will join a team dedicated to ensuring the security of our code and infrastructure, a responsibility that spans one of the largest deployments in the region.
Get to know the role
We are looking for a Senior Security Engineer to join our Security Engineering Team. We believe a successful candidate has cloud engineering, infrastructure automation, integration, and development skills, but if you believe you have what it takes then we’d love to hear from you either way. This role is required because we are expanding our regional infrastructure security capabilities. In return, you will get an opportunity to work with a great team working on complex architectures and managing cloud security of one of the largest cloud deployments in the region.
The Critical Tasks You Will Perform
Design, implement, and maintain a secure and reliable infrastructure platform for delivering Grab Services
Improve, maintain and operate security toolings such as EDR, CNAPP, Vulnerability scanners and Code Security Scanners.
Develop security automation solutions to enhance efficiency and scalability.
Collaborate with cross-functional teams to integrate security into the software development lifecycle (SDLC) and CI/CD pipelines.
Own and ensure that internal and external SLA’s meet and exceed expectations, Security Engineering centric KPIs are continuously monitored and improved..
Participate in on-call rotation to provide infrastructure support, incident management, and troubleshooting.
Qualifications
What Essential Skills You Will Need
Proven experience in developing and maintaining production systems/applications on any public cloud services (AWS, Azure or GCP)
Strong programming skills in one of the languages (preferably GoLang or Python)
Excellent communication and collaboration skills with the ability to work effectively in a fast-paced, team-oriented environment.
The Nice-to-Haves:
Bachelor's degree in Computer Science, Information Technology, or related field with at least 6+ years of security industry experience utilizing web/mobile application security and knowledge of the security / threat landscape.
Ability to perform automation using Terraform/Ansible/Chef/Puppet, Docker/Kubernetes, and any one CI tools (e.g. Jenkins, Gitlab, Travis CI etc.)Experienced in vulnerability management, patching automation, and understanding of VA/PT techniques
Demonstrated proficiency in setting up and managing CI/CD pipelines, particularly in platforms such as GitLab and Jenkins.
A strong understanding and experience in the cybersecurity domain, along with relevant security certifications (such as AWS Security Specialty, CCSP, CEH, etc.), would be a significant advantage.
Experience in Devsecops toolings like SAST and Dependency scanners is a plus.
Additional Information
Life at Grab
We care about your well-being at Grab, here are some of the global benefits we offer:
- We have your back with Term Life Insurance and comprehensive Medical Insurance.
- With GrabFlex, create a benefits package that suits your needs and aspirations.
- Celebrate moments that matter in life with loved ones through Parental and Birthday leave, and give back to your communities through Love-all-Serve-all (LASA) volunteering leave
- We have a confidential Grabber Assistance Programme to guide and uplift you and your loved ones through life's challenges.
What we stand for at Grab
We are committed to building an inclusive and equitable workplace that provides equal opportunity for Grabbers to grow and perform at their best. We consider all candidates fairly and equally regardless of nationality, ethnicity, religion, age, gender, family commitments, physical and mental impairments or disabilities, and other attributes that make them unique.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Ansible Application security Automation AWS Azure CCSP CEH CI/CD Cloud CNAPP Computer Science DevSecOps Docker EDR GCP GitLab Golang Jenkins KPIs Kubernetes Puppet Python SAST SDLC Terraform Vulnerability management
Perks/benefits: Career development Medical leave Parental leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.