Application Security Engineer (Threat Modeling)
Manila, Manulife Business Processing Services, Philippines
Manulife
Manulife is a leading financial services group. We provide financial advice, insurance, as well as wealth and asset management solutions for individuals, groups and institutions.Are you looking for a supportive and collaborative workplace with great benefits and clear career development? You’ve come to the right place.
Why choose Manulife?
- Competitive Salary packages and performance bonuses
- Day 1 HMO + FREE coverage for your dependents (inclusive of same-sex partners)
- Retirement savings benefit
- Rewarding culture that values wellness and well-being
- Performance Bonus
- Global network of industry experts
- Extensive training resources
Working Arrangement: Hybrid
Shift Schedule: Night Shift (8pm to 5am) / Mid Shift (4pm to 1am) Philippine Time
Job Description:
We are looking for Application Security Engineer (Threat Modeling) who will be directly reporting to the Manulife ETS Cyber Assessment Application Security Team. Our group is consisting of highly motivated and experienced professionals and is composed of members located across different Manulife locations such as Manila and North America. As part of the ETS Global Cyber Security, we are responsible for the practice of identifying, classifying, monitoring, remediating and/or mitigating security vulnerabilities on applications, network and APIs across the organization. Have the skills and knowledge for the job? Learn more about the opening below!
Key Responsibilities:
- Strategic Cybersecurity: Contribute to the strategic guidance on the design of cybersecurity measures for complex systems and networks, incorporating product security strategies such as design principles and security architecture.
- Security Review: Perform and coordinate in-depth security reviews, pinpoint potential vulnerabilities, and suggest all-encompassing remediation strategies by utilizing threat modeling methodologies and threat assessment frameworks.
- Security Insights: Provide sound analysis on the security implications of introducing new systems or interfaces within our ecosystem, based on application security best practices, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA) implementation.
- Security Architecture Evaluation: Assess proposed security architectures and designs to ensure they are equipped to meet both current and future security needs. This involves reviewing data flow diagrams for applications/system architectures and identifying potential threats as part of the threat modeling process.
Qualifications:
- University/College graduate with at least 2 years of experience related to Application Security and Threat Modeling.
- Must have background in application development / technology management.
- Good experience in application security architecture.
- Comprehensive understanding of security principles and their business implications.
- Broad knowledge of networking concepts.
- Good background in secure software development methodologies
- Familiarity with various application security testing approaches and implementation.
- Understanding of penetration testing concepts.
- Knowledge of industry trends, regulatory requirements, and their impact on security architecture.
- Advocate constant learning from both success and failure, and encourages openness to change and continuous improvement.
- Recognizable organizational and problem-solving abilities that enable you to manage through creative abrasion.
- Proven stakeholder management skills and able to effectively articulate risk posture, technical vision, possibilities, and outcomes through strong verbal and written communication.
- Self-driven, able to meet objectives with a minimal amount of managerial oversight/supervision.
- Amenability and readiness to work onsite and from home anytime (dependent on business need and/or current external environment/situation).
- Shift Schedule : Flexible (Late Mid Shift / Night Shift)
**People Leader Role: No
Learn more about opportunities with us at jobs.manulife.com
Join our global network of industry experts! Apply today.
** This job description does not represent a comprehensive listing of job duties that are required of the employee performing this role. We reserve the right to change duties or assign additional duties at any time with or without notice.
Manulife is an Equal Opportunity Employer
At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.
It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies. To request a reasonable accommodation in the application process, contact MBPS_Talent_Attraction_Team@MANULIFE.COM
Who is MBPS?
Manulife Business Processing Services (MBPS) is a global shared service center providing administrative, finance, investments, contact center, information technology, underwriting, actuarial, and marketing services to Manulife and John Hancock companies around the world.
About Manulife and John Hancock
Manulife Financial Corporation is a leading international financial services provider, helping people make their decisions easier and lives better. To learn more about us, visit https://www.manulife.com/en/about/our-story.html.
Manulife is an Equal Opportunity Employer
At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.
It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies. To request a reasonable accommodation in the application process, contact recruitment@manulife.com.
Working Arrangement
Hybrid* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: APIs Application security DAST Finance Monitoring Pentesting Product security SAST Vulnerabilities
Perks/benefits: Career development Competitive pay Flex hours Salary bonus Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.