Share
Alert
your Email
DevsecOps Engineer
Hanoi
We are looking for a DevSecOps Engineer to strengthen our development service in digital transformations. The DevSecOps Engineer shall support Niteco’s delivery/service teams with all aspects of automation for deployment and integrated testing, processes/procedures in a software development project life cycle, highly focusing on security governance and ensuring auditing activities are in place to ensure the teams following the defined policies and processes.
JOB DESCRIPTION
The main responsibilities of the DevSecOps Engineer include:
- Automation
-
Ensure the configuration of CI/CD build/deployment pipelines of delivery teams follow the best practices, and meets the defined security requirements.
-
Assist in setting up the process and tool to check coding conventions/requirements and enhance coding quality.
-
Involve in setting up the process and tool to do automated testing, integration testing, to ensure it meets the defined security requirements.
-
Involve in setting up auto-backups for databases/applications on demand, to ensure it meets the defined security requirements.
-
Assist in setting up to ensure pen test and security scanning is implemented before each release.
-
Recommend ideas on improving the application/database securities, particularly on operation automation.
- Infrastructure/application security
-
Involve in the process of provisioning multiple dev/test/prod environments, to ensure it meets the defined security requirements.
-
Identify and deploy cybersecuritymeasures by continuously performing vulnerability assessment and risk management.
- Manage & Audit
-
Define security policies and procedures to be applied at the companywide.
-
Define data privacy policies and appropriate data processing procedures to be applied at the companywide.
-
Create a security handbook and guidelines to guide delivery/support teams to follow
-
Schedule to execute the auditing activities in terms of security requirements on different delivery/support teams.
-
Set up monitoring/alerting procedures/systems/dashboards, to be aware of security problems in all installed systems/databases and infrastructure platform, to resolve them at the soonest.
-
Frequently report to the management security status, and escalate/notify supervisor and/or client on identified problems.
-
Be responsible for addressing problems in a number of customers’ environments across infrastructure and applications.
Other tasks
-
Make sure all procedures, guidelines and best practices are documented.
-
Work closely with IT and Application Management Engineers to assist both internal and external clients.
-
Provide assistance to the other teams in the technical meetings with major clients on issues that relate to the expertise of DevOps and Security.
-
Study and share new techniques, practice, tools and share for other team members.
JOB REQUIREMENTS
-
Bachelor of IT, Computer Science, or relevant field.
-
Must have a deep understanding of both development and operations processes, as well as a strong technical background.
-
Good communication skills (in English and Vietnamese). Be able to consult the customer with the best possible solution.
-
From 3+ years of experience in software development and operations, with at least 2 years working in Security or DevSecOps.
-
Must-have: Strong experience and in-depth knowledge of security and experience using different tools, and working with security tools.
-
Must-have: programming experience with scripting languages (e.g., Bash, Python, Powershell, etc.)
-
Must-have: Familiar with Git branching strategy, be able to do programming or compiling code in various programming languages: .Net, nodeJS, PHP, etc.
-
Must-have: Experiences in implementation and managing services: SQL Server, MySQL, Postgres, Mongo/Cosmos, Redis, Kafka …
-
Must-have: Knowledgeable of database queries and data migration
-
Must-have: Familiar with web servers, i.e. IIS, Nginx, Apache, Tomcat, IBM WebSphere, etc.
-
Must-have: Experience DevOps tools and CI/CD pipeline: TeamCity, Jenkins, Azure DevOps, Octopus Deploy
-
Having experiences with Ansible, Puppet and Terraform is a plus
-
Good in working with cloud platforms: Azure, AWS, GCP. Certification/qualification is highly regarded.
-
Practical experience with Dockerized Containers, Kubernetes, Openshift, IBM Cloud-based services, IBM Bluemix.
-
Good knowledge of System infrastructure (Network, Security, Services, Virtualizations).
-
Must-have: Have knowledge and experience with ELK (Elasticsearch, Logstash, Kibana), Azure Application Insights, Dynatrace, RayGun, Prometheus, Grafana, Loki, Datadog, and/or equivalent systems/tool.
-
The ability to work well in a tea.m and individually.
-
Good customer service skills with the ability to effectively deal with customer inquiries within a timely manner.
-
The ability to adapt to changing situations, and be focused on delivery while ensuring quality.
-
The ability to work under pressure and tight deadlines.
-
High sense of responsibility.
-
Willingness to learn and share continuously.
-
Creative, innovative, and strive for continuous improvement.
-
Motivated in delivering top-quality work.
BENEFITS AND WORKING ENVIRONMENT
-
Hybrid working mode.
-
Highly competitive remuneration package: attractive monthly salary and allowances, 13th month salary, additional performance bonus, high public holiday bonuses, and birthday gift, employee service award up to $1,000 for employees with 3+ years.
-
Attractive AON healthcare coverage including health and accident insurance in addition to the standard insurances regulated by the Labor Code. Luxury company summer vacation and team-building budget.
-
Opportunities to work onsite for international projects in Sweden, Australia, UK, USA, etc.
-
Organized training and full support in building your career.
-
English-speaking, international and professional work environment: working with expatriates from a number of countries, state of the art working space with a wonderful view over the city skyline, modern facilities include computer dual 24” screens running recent versions of Windows 11 enterprise, MS Office 365, Team, latest version of Visual Studio, and SQL Server, Dell OptiPlex Workstation with 32 GB Ram, 512GB NVMe SSD.
-
Western management style that is professional, dynamic, open minded, creative, supportive, friendly and encouraging feedback.
-
Company Management that regularly communicates Company’s strategy, development plan and new opportunities to employees.
-
Employee and family are engaged and taken care by the Company via Trade Union activities.
-
Diversified social and charity activities often organized by NICEF - Niteco Charity Engagement Foundation to create opportunities for our young employees to raise funds and help people with difficulties in Vietnam.
-
Physical care environment where you are taken care, feeling relaxed and enjoying lots of leisure activities such as badminton, ping pong, football, table football, dancing, running, cycling, cinema, etc.











London
Niteco Ltd
3 More London Riverside, London, SE1 2RE, United Kingdom

Sydney
Niteco Ltd
Suite 2, Level 3, 84 Union St, Pyrmont, NSW 2009

Hongkong
Niteco Ltd
36/F, Tower Two, Times Square, 1 Matheson Street, Causeway Bay, Hong Kong

Hanoi
Niteco Ltd
C'Land Tower, 14th Floor, 156 Xa Dan II Street, Dong Da District, Hanoi, Vietnam

Ho Chi Minh
Niteco Ltd
E.Town Building 1, 2nd Floor, 364 Cong Hoa Street, Ward 13, Tan Binh District, Ho Chi Minh City, Vietnam

Singapore
Niteco Group Ltd
No 7 Temasek Boulevard#12-07 Suntec Tower One PMB1080 Singapore, 038987