Jobs

    Senior Engineer, App Sec - Singapur, Singapore - Marina Bay Sands

    Marina Bay Sands
    Marina Bay Sands Singapur, Singapore

    3 days ago

    Default job background
    Full time
    Description

    Summary of Job Responsibilities

    DevOps is responsible for integrating developer experience, infrastructure and technology operations support to enhance software development and deliver solutions inclusive of gaming related systems to achieve Sands business objectives.

    Job Responsibilities

    The primary responsibility of the AppSec Engineer is to develop, manage and maintain the security, administration, configuration, troubleshooting, automation of security analysis of solutions within Sands.

    The DevOps function will deploy and support cloud and on-premises infrastructure and services to meet the requirements of business or IT initiatives. The team will develop, maintain, and execute infrastructure as code scripts and playbooks to automate deployment and maintenance tasks to ensure the availability, reliability, and efficient operation of the enterprise systems.

    The AppSec Engineer will be responsible for the evolution of application security functions and services. The position demands someone who is highly technically competent, detail oriented, and driven to stay current with evolving technologies.

    The DevOps team will work closely with the Corp IT and Corp Cyber Security leadership in coordinating the strategy, architecture and security initiatives and all auditing activities across all team activities. A key part of the position is supporting compliance efforts related to secure SDLC processes and infrastructure.

    All duties are to be performed in accordance with departmental and Sands' policies, practices, and procedures.

    JOB REQUIREMENTS

    Education & Certification

  • Bachelor's degree required.
  • Eligibility

  • Evidence of right to work in local jurisdiction (Singapore)
  • Ability to obtain jurisdictional gaming license as required (GRA)
  • Years of Experience

  • 8 -10 years of relevant work experience
  • Communication Skills

  • Ability to effectively communicate with both technical and non-technical peers and business stakeholders, as well as executive level management.
  • Ability to communicate clearly in a multicultural, multinational environment and in cross-functional matrixed teams.
  • Exceptional verbal and written communication skills
  • Ability to read Chinese a plus.
  • Presentation skills and an ability to engage audiences at the highest levels of the organization.
  • Business Acumen and Analytical Skills

  • Understanding of business processes and basic corporate finance, management, and accounting principles
  • Deep understanding of hospitality and gaming business processes and compliance constraints
  • Demonstrates strategic thinking in a highly complex environment.
  • Exceptional analytical, statistical, quantitative, and deduction skills
  • Leads, influences, and mentor's others.
  • Demonstrates pragmatic judgment.
  • Behavioral Traits

  • Excellent interpersonal skills
  • Demonstrates a strong attention to detail.
  • Ability to build relationships and work well across functions.
  • Ability to work independently, self-manage, and engage collaboratively with a team.
  • Demonstrates the capacity to manage changing priorities and ambiguity.
  • Establishes goals, monitors progress toward them, and ultimately achieves these goals.
  • Retains objectivity and proper understanding of a problem or situation when placed under conditions of stress.
  • Willingness to travel internationally.
  • Security and Privacy

  • Knowledge of secure coding best practices and security framework standards: NIST, COBIT, ISO.
  • Experience architecting solutions that comply with compliance regulations such as: PCI, GLBA, SOX, Basel III
  • Experience implementing controls for privacy legislation such as: HIPAA, COPPA, FCRA, GLB and GDPR
  • Technology Skills Requirements

  • Proven experience of working in AppSec within DevOps or DevSecOps groups
  • Experience in developing processes that produce artifacts that support security and compliance requirements.
  • Ability to design and implement secure automation solutions for development, testing, and production environments.
  • Experience in supporting multiple agile teams across various platforms, environments, and instances.
  • Experience of implementing security best practices and configuration management
  • Ability to employ infrastructure-as-code to increase automation, scalability, and reliability.
  • Experience in cloud based containerized environments (Kubernetes, Docker)
  • Deep technical experience of securing, monitoring, and maintaining infrastructure for in-house developed applications.
  • Expertise in 3rd party library security scanning, static code scanning, code hygiene, dynamic code scanning,
  • Experience in leading the organisation's application security tooling, problem intake and remediation process.
  • Ability to lead the remediation of application vulnerability screening and results of penetration testing.
  • Knowledge of container security, AWS EKS, Azure AKS, Helm
  • Knowledge of IAM, cloud trail, guard duty, WAF, SDLC practices, basic scripting skills
  • Experience with common programming and scripting languages, such as Golang, Ruby, C/C++, C#, Python, JavaScript, Bash
  • Latent desire and/or curiosity in related domain like software development, front-end engineering, security, or project management
  • Familiar with designing solutions to complex technical issues and working with other technology or cyber security experts, including architects and vendors.
  • Resolves any technical problems discovered by DevOps, development, or testers and any internal clients.
  • Provide deep subject matter expertise across multiple disciplines including IT infrastructure, security, business application and system integration.
  • Familiar with cloud offerings including, but not limited to, Alibaba, Amazon Web Services, Azure, and Google Cloud Platform.
  • Knowledge of Agile software development principles, Continuous Integration and Deployment (CICD), and DevOps
  • Knowledge of software vulnerabilities and remediation (OWASP/SANS CWE)
  • Experience implementing identity strategies and application integrations including LDAP, Kerberos, SAML, OAuth, OpenID Connect
  • Experience in developing secure configurations across Integration APIs, GraphQL and deployment on API Gateways such as Azure APIM GW, MuleSoft API GW etc.
  • Ability to perform technical due diligence on platforms and solutions when limited or no documentation is available.
  • Ability to grasp wide range of technologies from IOT, Edge, Datacenter, and cloud to offer solutions.
  • Marina Bay Sands is committed to building a diverse, equitable and inclusive workforce, providing equal opportunities as we grow our talent base to match our growth ambitions in Singapore. Our employees are committed to adhere to and abide by all rules, regulations, policies and procedures, including the rules of conduct and business ethics of the Company.



  • ETH Zürich Singapore

    **Postdoctoral Researcher in the Development of Digital Tools for the Assessment of Cognitive Status**: · **100%, Singapore, fixed-term**: · ETH Zurich is one of the leading universities in the world, with a strong focus on Science and Engineering. In 2010, ETH established the ** ...


  • Xcellink Pte Ltd Singapore

    Must have ServiceNow System Administrator certification, Application developer plus at least two additional ServiceNow implementation certifications · - Five (5) or more years of experience as a ServiceNow Technical Consultant, with hands-on experience in ground up implementation ...

  • JAI ULTRATECH ENGINEERING (PTE. LTD.)

    Driver

    1 day ago


    JAI ULTRATECH ENGINEERING (PTE. LTD.) Singapore

    Perform delegated delivery tasks in a timely manner · - Plan delivery routes · - Utilize navigation apps to find the most optimal route · - Loading and unloading of goods · - Communicate with customers and salesperson in a professional conduct · - Upkeeping and maintenance of veh ...

  • ELLIOTT MOSS CONSULTING PTE. LTD.

    Software Developer

    1 week ago


    ELLIOTT MOSS CONSULTING PTE. LTD. Singapore

    To solution, design, develop, implement and support ServiceNow tools · RESPONSIBILITIES · 1. Understand Operation business needs and translate into technical requirement · 2. Advise on tools technology adoption based on business & technical consideration. Propose integration stra ...


  • ETH Zürich Singapore

    **System/Development Operations Engineer**: · **100%, Singapore, fixed-term**: · ETH Zurich is one of the leading universities in the world with a strong focus on science and engineering. In 2010 it established the **Singapore-ETH Centre (SEC) **in collaboration with the **Nation ...


  • NCS Singapore

    **ServiceNow Developer**: · **Date**:11 Jul 2023 · **Location**: Singapore, Singapore · **Company**:Singtel Group · NCS is a leading information and communications technology (ICT) and communications engineering services provider across the Asia-Pacific region. We are headquarter ...


  • NCS Singapore

    **Snr Infra Engr, Infra Arch & Svc Mgt**: · **Date**:28 Nov 2023 · **Location**: Singapore, Singapore · **Company**:Singtel Group · NCS is a leading information and communications technology (ICT) and communications engineering services provider across the Asia-Pacific region. We ...


  • NCS Singapore

    **Snr Infra Engr, Infra Arch & Svc Mgt**: · **Date**:27 Nov 2023 · **Location**: Singapore, Singapore · **Company**:Singtel Group · NCS is a leading information and communications technology (ICT) and communications engineering services provider across the Asia-Pacific region. We ...

  • ZENITH INFOTECH (S) PTE LTD.

    SAP FICA Lead

    10 hours ago


    ZENITH INFOTECH (S) PTE LTD. Singapore

    Roles & Responsibilities · Zenith Infotech (S) is a Tech Recruitment firm with long presence in Singapore, 27 years now. We support our clients from the various governemtn agencies and corporate sec;tors. · Currently, we have a requirement for SAP FICA Lead role with one of our ...

  • National Institute Of Early Childhood Development

    Assistant Manager

    3 days ago


    National Institute Of Early Childhood Development Singapore Full time

    Job Responsibilities · Develop and maintain all documentation on security policies, standards and controls and enforce compliance with policies and procedures in entire organisation · Develop, implement and monitor reporting mechanisms for governance, security and risk practices ...


  • SingTel Singapore Full time

    Job Description : · NCS is a leading information and communications technology (ICT) and communications engineering services provider across the Asia-Pacific region. We are headquartered in Singapore and a wholly owned subsidiary of the Singtel Group. We have in-depth domain know ...

  • NATIONAL INSTITUTE OF EARLY CHILDHOOD DEVELOPMENT

    Assistant Manager

    2 days ago


    NATIONAL INSTITUTE OF EARLY CHILDHOOD DEVELOPMENT Singapore

    Roles & Responsibilities · Job Responsibilities · Develop and maintain all documentation on security policies, standards and controls and enforce compliance with policies and procedures in entire organisation · Develop, implement and monitor reporting mechanisms for governance, s ...


  • Ncs Pte. Ltd. Singapore Full time

    We are looking for an experienced ServiceNow System Administrator to manage and maintain our ServiceNow platform. The ideal candidate will be responsible for configuring, customizing, and administering ServiceNow applications to support our business needs. This role requires stro ...


  • NCS PTE. LTD. Singapore

    Roles & Responsibilities · We are looking for an experienced ServiceNow System Administrator to manage and maintain our ServiceNow platform. The ideal candidate will be responsible for configuring, customizing, and administering ServiceNow applications to support our business nee ...

  • Ncs Pte. Ltd.

    Infra Engineer

    3 days ago


    Ncs Pte. Ltd. Singapore Full time

    NCS is the leading technology services firm that operates across the Asia Pacific region in over 20 countries, providing consulting, digital services, technology solutions, and more. · We believe in harnessing the power of technology to achieve extraordinary things, creating last ...

  • SingTel

    Infra Engr

    3 days ago


    SingTel Singapore Full time

    Job Description : · NCS is the leading technology services firm that operates across the Asia Pacific region in over 20 countries, providing consulting, digital services, technology solutions, and more. · We believe in harnessing the power of technology to achieve extraordinary ...

  • NCS PTE. LTD.

    Infra Engineer

    2 days ago


    NCS PTE. LTD. Singapore

    Roles & Responsibilities · NCS is the leading technology services firm that operates across the Asia Pacific region in over 20 countries, providing consulting, digital services, technology solutions, and more. · We believe in harnessing the power of technology to achieve extraord ...


  • Procter & Gamble Singapur, Singapore Full time

    Description · Overview of role · We are looking for an IT engineer with industrial experience. You will have expertise and hands-on capabilities of IT hard-/software system optimization. You should be confident at handling electronic electrical engineering and implementation of ...


  • NCS Group Singapur, Singapore

    NCS is a leading information and communications technology (ICT) and communications engineering services provider across the Asia-Pacific region. We are headquartered in Singapore and a wholly owned subsidiary of the Singtel Group. We have in-depth domain knowledge and unique cap ...


  • Singtel Group Singapore

    NCS is a leading information and communications technology (ICT) and communications engineering services provider across the Asia-Pacific region. We are headquartered in Singapore and a wholly owned subsidiary of the Singtel Group. We have in-depth domain knowledge and unique cap ...