CrawlJobs Logo

Mid - Senior Cybersecurity Engineer

moneyme.com.au Logo

MONEYME

Location Icon

Location:
Philippines , Manila

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Join the leading AU fintech company as a Senior Cybersecurity Engineer who will be at the forefront of protecting modern, cloud-based systems while shaping security strategy. Deliver hands on technical security across MONEYME’s application, cloud, and delivery environments. This role is application security focused, with strong accountability for secure SDLC, CI/CD security, SAST, DAST, threat modelling, vulnerability remediation, and implementation of high-risk technical controls. You will identify weaknesses through analysis and testing, validate risk with evidence, and work directly with engineering teams to drive effective remediation. The successful candidate will operate across the full application security lifecycle, applying purple teaming practices to continuously improve both preventive and detective controls. You will act as a technical point of contact across offensive and defensive security activities, translate realistic attack paths into remediation actions, validate control effectiveness through targeted testing, and produce defensible technical evidence that supports governance and audit requirements. You will partner closely with the Cybersecurity Lead, who owns overall security strategy.

Job Responsibility:

  • Own application security across web, mobile, and API systems
  • Identify and prioritize vulnerabilities using SAST, DAST, and threat modelling
  • Assess findings against OWASP Top 10 and OWASP API Security risks
  • Drive remediation with engineering teams and validate fixes
  • Embed security into the software development lifecycle
  • Conduct threat modelling during design and architecture
  • Perform security reviews for new features and changes
  • Integrate SAST, DAST, dependency, and container testing into CI CD pipelines
  • Define risk based security gates and tune rulesets
  • Assess high risk flows involving authentication, sensitive data, APIs, and third party integrations
  • Identify risks in token handling, sessions, and API abuse
  • Conduct targeted testing and validate defensive coverage
  • Act as a technical escalation point during application, cloud, and platform security incidents
  • Support detection tuning, logging quality, and threat hunting using application and cloud telemetry
  • Validate security controls across applications, pipelines, cloud services, and identity components
  • Support external scanning and remediation validation

Requirements:

  • Bachelor’s degree in Information Security, Information Technology, or a related discipline
  • Professional certifications such as CEH, OSCP or equivalent are highly regarded
  • Equivalent practical experience may be considered in lieu of formal qualifications
  • 3+ years of experience in cybersecurity engineering experience with strong focus on application security
  • Demonstrated ownership of vulnerability remediation from discovery through validation
  • Practical experience implementing and tuning SAST and DAST programs
  • Strong familiarity with OWASP Top 10 and OWASP API Security Top 10
  • Experience working directly with software engineers and platform teams
  • Experience embedding security into the software development lifecycle
  • Experience operating in regulated or high-risk environments
  • Experience applying adversary driven or purple teaming techniques
  • Strong understanding of web, mobile, and API security vulnerabilities and mitigations
  • Hands on experience with SAST, DAST, and application security testing tools
  • Ability to assess findings against OWASP risk categories and real-world exploitability
  • Practical experience with threat modelling methodologies and secure design reviews
  • Experience integrating security testing into CI CD pipelines
  • Working knowledge of cloud security fundamentals including identity, network exposure, and workload protection
  • Knowledge of secure secret handling, dependency management, and pipeline hardening
  • Understanding of attacker techniques and MITRE ATT&CK
  • Experience validating remediation and preventing vulnerability reintroduction
  • Experience securing applications that process sensitive or regulated data
  • Familiarity with Azure based environments or similar cloud platforms
  • Clear and effective communicator with engineering, offensive, and defensive security teams
  • Comfortable challenging design decisions while remaining solution oriented
  • Strong ownership mindset focused on outcomes rather than findings
  • Ability to prioritise remediation based on risk and impact
  • Calm and methodical approach during production issues or security incidents
  • Commitment to staying current with application security threats, OWASP guidance, and evolving attack techniques
  • Participation in professional development activities such as training, certifications, or security communities
What we offer:
  • HMO on Day 1 + 1 free dependent
  • 15 days of vacation leaves and 15 days of sick leave
  • 1 birthday leave
  • Health and wellbeing initiatives like weekly sports activities and MONEYME Olympics
  • Fun filled company activities - summer outings, team building, team lunch or dinner, Halloween event, year-end party and so much more!
  • Complimentary snacks in the office
  • MONEYME Merchandise - hoodie, T-shirt, tumbler, notebook, and id lace
  • Quarterly champion awards & reward trips

Additional Information:

Job Posted:
January 03, 2026

Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Mid - Senior Cybersecurity Engineer

Senior Cyber Security Consultant

Join Our Expert Team. We are seeking a skilled Senior Cyber Security Consultant ...
Location
Location
Austria , Vienna
Salary
Salary:
Not provided
alpenite.com Logo
Arsenalia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Master’s degree in Computer Science, Cybersecurity, Engineering or similar fields
  • 6-8 years of experience in senior cybersecurity roles, with at least 3 years in technical leadership positions
  • Solid expertise in enterprise security architectures, zero-trust frameworks, and multi-cloud security (AWS, Azure, GCP)
  • Proven track record in managing enterprise security programs and coordinating incident response teams
  • Strong skills in analyzing advanced threats and designing defense-in-depth strategies
  • Excellent strategic coordination and executive-level communication
  • Fluent in English (C1/C2) with experience in international environments
  • Willingness to travel frequently and lead projects across multiple geographies
  • Strong results orientation, strategic mindset, and continuous innovation drive
Job Responsibility
Job Responsibility
  • Design and implement security solutions for multi-cloud and hybrid environments
  • Lead strategic threat analysis and large-scale vulnerability assessments to shape long-term security planning
  • Manage complex incidents and breaches, coordinating cross-functional teams and engaging with C-level stakeholders
  • Embed security-by-design into digital transformation programs and enterprise architectures
  • Define and apply governance frameworks aligned with international standards (ISO 27001, NIST, SOC2)
  • Build proactive threat intelligence and hunting strategies to stay ahead of emerging risks
  • Mentor junior and mid-level security professionals, fostering a strong security-first mindset
  • Represent Arsenalia in high-level technical and business contexts, acting as a trusted advisor to enterprise clients
What we offer
What we offer
  • Welfare Package: A comprehensive corporate welfare platform, offering a wide range of benefits and healthcare support
  • Worklife Kit: A complete welcome package with all essentials for day-to-day productivity, complemented by comprehensive benefits
  • digital meal vouchers and flexible reimbursement options
  • Empowering People: Engagement initiatives, team building, and mentoring programs
  • Open Space, Open Mind: Modern open-space offices and collaborative areas
  • Career Path: internal Changemaker Path methodology to grow key relational, communication, and leadership skills
  • Learning & Development: Continuous improvement programs, certification opportunities, and incentives
Read More
Arrow Right

Cyber-Security Technical Administrator

This position is for a Cybersecurity Technical Administrator supporting the ALTE...
Location
Location
United States , Alexandria
Salary
Salary:
Not provided
e-9corporation.com Logo
E9 Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Mid to senior level Cybersecurity Technical Administrator experience in a cloud environment
  • DoD 8570.01-M IAT level II certification is required
  • Resource must possess both Baseline and Computing Environment certification as defined in DoD Instruction 8570.01-M
  • Strong verbal and written communication skills
  • Understanding of DOD Risk Management Framework Assessment & Authorization (RMF A&A), FedRAMP, the DOD cloud provisional authorization (PA) process and the processes to successfully acquire and maintain an Authorization to Operate (ATO)
  • Working knowledge of the Federal Risk and Authorization Management Process (FedRAMP), cloud security information impact levels (IL), the differences between an ATO and P-ATO, the differences between a CSO and CSP, and the processes to successfully acquire, maintain and support DOD cloud accreditation
  • Experience automating routine administrative tasks desired
  • Understanding of network, storage, server and application technologies
  • Strong understanding of common cyber threat patterns, indicators of compromise and defenses
  • Working knowledge of DoD STIGs and IA Vulnerability Management (IAVM)
Job Responsibility
Job Responsibility
  • Serve as overall subject matter expert on Cybersecurity Technical Administrator technology and market capabilities/trends
  • Conduct security scans against the organization’s cloud-deployed infrastructure, produce and interpret compliance reports
  • Validate technical security controls are in place for operating systems, applications and network appliances, and recommend enhancements
  • Review proposed configuration changes for security impact
  • Operate endpoint-protection mechanisms, including high-level reporting and day-to-day administration activities
  • Work between technical and policy teams to implement, maintain and monitor technical security configuration controls, including: STIG’s, SRG’s and other industry security hardening guidance
  • Work between technical and policy teams to successfully implement and manage requirements for maintaining cloud P-ATO, ATO and security control inheritance capabilities
  • Collaborate with internal and external parties to transform high-level technical objectives into comprehensive technical requirements
  • Use results of vulnerability scans to determine vulnerabilities and develop operational plans to remediate or mitigate vulnerabilities as they are discovered
  • Install, operate and maintain Army Endpoint Security System
Read More
Arrow Right

Cyber-Security Policy Administrator

This position is for a Cybersecurity Policy Administrator supporting the ALTESS ...
Location
Location
United States
Salary
Salary:
Not provided
e-9corporation.com Logo
E9 Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • DoD 8570.01-M IAM level II certification
  • CompTIA Security+
  • Computing Environment (CE) Certification (i.e., MCSE, Server+, etc.) – can be waived for 30 days after project join date
  • Mid to senior level Cybersecurity Policy Administrator experience in a cloud environment
  • Strong verbal and written communication skills
  • Experience effectively managing multiple large-scale projects
  • Understanding of network, storage, server and application technologies
  • Working knowledge of DoD STIGs, and IA Vulnerability Management (IAVM)
  • Information Assurance Engineer – Senior: Masters +10yrs, or Bachelors +12yrs
  • Information Assurance Engineer – Intermediate: Bachelors +5yrs or Associates +7yrs
Job Responsibility
Job Responsibility
  • Serve as overall subject matter expert on Cybersecurity Policy Administration
  • Work between technical and policy teams to implement, maintain and monitor technical security configuration controls, including: STIGs, SRGs and other industry security hardening guidance
  • Work between technical and policy teams to successfully implement and manage requirements for maintaining cloud P-ATO, ATO and security control inheritance capabilities
  • Collaborate with internal and external parties to transform high-level technical objectives into comprehensive technical requirements
  • Act as the ISSO for hosted systems, assuming the responsibilities as outlined in AR 25-2
  • Assist hosted customers in obtaining and maintaining RMF for DOD IT and other certifications as required
  • Update and/or assist the hosted system’s personnel in updating artifacts of the accreditation package and store the artifacts in organizationally defined repository
  • i.e., system diagram (logical and physical) Hardware/Software/Firmware Inventory, Interface & Ports, Protocols and Services listing, etc.
  • Assist in the preparation of network infrastructure specifications or designs incorporating required information security features
  • Review and evaluate Information Systems Design Plans, Continuity of Operation Plans, Communication Plans, engineering change proposals and configuration changes for compliance with relevant security regulations, policies and best industry practice
Read More
Arrow Right

Mid - Senior Cybersecurity Engineer (App Sec Focused)

Join the leading AU fintech company as a a Senior Cybersecurity Engineer who wil...
Location
Location
Philippines , Manila
Salary
Salary:
Not provided
moneyme.com.au Logo
MONEYME
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Security, Information Technology, or a related discipline
  • Professional certifications such as CEH, OSCP or equivalent are highly regarded
  • 3+ years of experience in cybersecurity engineering experience with strong focus on application security
  • Demonstrated ownership of vulnerability remediation from discovery through validation
  • Experience working directly with software engineers and platform teams
  • Experience embedding security into the software development lifecycle
  • Experience operating in regulated or high-risk environments
  • Experience applying adversary driven or purple teaming techniques
  • Strong understanding of web, mobile, and API security vulnerabilities and mitigations
  • Hands on experience with SAST, DAST, and application security testing tools
Job Responsibility
Job Responsibility
  • Application security and vulnerability remediation
  • Own application security across web, mobile, and API systems
  • Identify and prioritize vulnerabilities using SAST, DAST, and threat modelling
  • Assess findings against OWASP Top 10 and OWASP API Security risks
  • Drive remediation with engineering teams and validate fixes
  • Secure SDLC and threat modelling
  • Embed security into the software development lifecycle
  • Conduct threat modelling during design and architecture and perform security reviews for new features and changes
  • DevSecOps
  • Integrate SAST, DAST, dependency, and container testing into CI CD pipelines
What we offer
What we offer
  • HMO on Day 1 + 1 free dependent
  • 15 days of vacation leaves and 15 days of sick leave
  • 1 birthday leave
  • Health and wellbeing initiatives like weekly sports activities and MONEYME Olympics
  • Fun filled company activities - summer outings, team building, team lunch or dinner, Halloween event, year-end party and so much more!
  • Complimentary snacks in the office
  • MONEYME Merchandise - hoodie, T-shirt, tumbler, notebook, and id lace
  • Quarterly champion awards & reward trips
Read More
Arrow Right
New

Systems Engineer Senior Level

ITC is a Woman Owned Small Business delivering exceptional consultation to the U...
Location
Location
United States , Chantilly
Salary
Salary:
Not provided
seekintegrity.com Logo
Integrity Technology Consultants
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • TS/SCI with CI Polygraph
  • Bachelor’s degree or higher in Systems Engineering or in related technical or scientific fields such as engineering, physics, mathematics, operations research, engineering management, Computer Science, Information Technology, Management Information Systems, or related STEM degree program, or equivalent Senior level experience (12-18 years) as a Systems Engineer
  • Senior-level working experience in government or industry in relevant work areas including: DoD/IC Acquisition Process, Requirements Process, PPBES Process or system engineering of large complex System of Systems or Service Oriented Architecture/Cloud environments
  • Experience with and strong understanding of systems engineering lifecycle
Job Responsibility
Job Responsibility
  • Guides engineering teams in taking a multi-discipline approach to requirements engineering, solutions engineering, scheduling, reliability, resiliency, services development, integration, test and evaluation, maintainability and analysis across the National System of Geospatial-intelligence (NSG), Allied System of Geospatial-intelligence (ASG) and Federal Agencies to ensure timely and accurate GEOINT
  • Guides Mid-level and Junior-level system engineers performing requirements engineering, solutions engineering, scheduling, reliability, resiliency, services development, integration, test and evaluation, maintainability and analysis across the National System of Geospatial-intelligence (NSG), Allied System of Geospatial-intelligence (ASG) and Federal Agencies
  • Guides the planning, analysis/traceability of user requirements, architectures traceability, procedures, and problems to automate or improve existing systems and review cloud service capabilities, workflow, and scheduling limitations
  • Guides Mid-level and Junior-level system engineers developing solutions designs based on analysis of requirements and new technology
  • Assists the Government in the capture and translation of mission and customer requirements/needs into systems/capability requirements and solutions
  • Supports the analyses and allocation of requirements to systems architecture components and executing programs
  • Assists the Government in performing systems integration activities
  • Conducts Analysis of Alternatives (AoAs), Course of Actions (CoAs), Trade Studies, and Engineering Assessments
  • Assists the Government in strategic technical planning, project management, performance engineering, risk management and interface design
  • Operates at the level of integrating multiple systems, services, processes, and interfaces within a Major Systems Acquisitions across organizational and agency boundaries
Read More
Arrow Right
New

Network Systems Engineer Expert Level

ITC is a Woman Owned Small Business delivering exceptional consultation to the U...
Location
Location
United States , Springfield
Salary
Salary:
Not provided
seekintegrity.com Logo
Integrity Technology Consultants
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • TS/SCI with CI Polygraph
  • Master’s degree in Engineering, Computer Science, Information Technology, Management Information Systems, or related STEM degree program, or 18+ years Expert level experience as a Network Systems Engineer
  • Expert-level working experience (18+ years) in cloud-based systems architecting
  • Network technology course/certification in TCP/IP with applied understanding of the following: Roles of devices in TCP/IP network, Details of IP, ARP, TCP, ICMP and UDP, Functions of FTP, HTTP, Telnet and other applications of TCP/IP, Use of Voice over IP or VoIP, email messaging and multicasting, Troubleshooting for TCP/IP issues at each network layer
Job Responsibility
Job Responsibility
  • Expert Network Engineers plan and develop telecommunications solutions involving computer and communications equipment
  • They analyze network alternatives and develop recommendations for improvements
  • Analyzes, designs, tests, and evaluates network systems, such as local area networks (LAN), wide area networks (WAN), Internet, intranet, satellite, and other data communications systems
  • Performs network modeling, analysis, and planning
  • Oversees the work of Senior-, Mid-, and Junior-level contractor Network Systems Engineers
Read More
Arrow Right

Digital Web & Mobile Security Senior Analyst

The Digital Web & Mobile Security Senior Analyst is an intermediate level positi...
Location
Location
India , Chennai; Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience as application security consultant / security expert
  • SME level knowledge of web application vulnerabilities and web application business logic flaws and threats
  • In depth and hands-on understanding and application architectures and technology (including web applications, mobile technology, web 2.0 technology, identity and access management)
  • Demonstrable experience with mobile application security, HTML5, Web Services/API assessment, identity management will be highly regarded
  • Thorough understanding of industry and corporate technology standards for Information Security
  • Expert in latest Internet and Mobile technology with strong architectural and design knowledge
  • Detailed familiarity with security hacking tools and techniques
  • Excellent written and oral English communication skills
Job Responsibility
Job Responsibility
  • Prevent and drive to clear the outstanding safety and soundness items by assessing and predicting the potential risk items before it becomes an issue / escalation
  • Assess priorities across multiple safety and soundness items and drive those critical ones similar like driving high priority production items and never settle until it is closed
  • Drive our outstanding safety and soundness items across all teams to closure and turn it around to become prevention instead of reacting to issues
  • Operate independently including the ability to provide executive summary for safety and soundness issues for executive consumption without a need for a continuous review
  • Review existing security architectures, identify design gaps, and recommend security enhancements
  • Act as an advocate for the application security architecture. Communicates and educates on the IS Architecture and roadmap
  • Develop security design pattern by identifying broader and emerging IS issues
  • Provides architecture consulting across the bank to project teams and other architects
  • Prioritize architecture deliverables, and establish short-term, mid-term and long-range architecture plans. Facilitates the migration to the reference architecture in a way that enables and supports the strategic plan
  • Maintains understanding of business issues, operating procedures and priorities
  • Fulltime
Read More
Arrow Right

Internal Business Platforms Admin

Position responsible for support and administration of on premise internal busin...
Location
Location
United States
Salary
Salary:
Not provided
e-9corporation.com Logo
E9 Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Fully adjudicated DOD Secret clearance (minimum)
  • Masters +10yrs experience or Bachelors +12yrs experience (for Senior Software Engineer)
  • Bachelors +5yrs or Associates +7yrs experience (for Intermediate Software Engineer)
  • CompTIA Security+ certification
  • Achieve and maintain ServiceNow Certifications (Certified System Administrator, Certified Implementation Specialist- ITSM within first 6 months)
  • Computing Environment (CE) Certification (can be waived for 3 months after project join date)
  • 1-3 years’ Experience with ServiceNow configuration in: IT Service Management suite, Platform configuration (forms, workflows, etc.), CMDB/Discovery
  • Understanding of how ServiceNow works with 3rd Party applications
  • Knowledge of Application Server architecture in large enterprise environment using IIS, Apache, Tomcat
  • Knowledge of Windows and Linux administrations skills
Job Responsibility
Job Responsibility
  • Responsible for all facets of support and administration of on premise internal business tools (primarily ServiceNow) at PD ALTESS
  • Maintaining, updating, and creating complex business logic with ServiceNow tool
  • Maintain and administer web application servers hosting ServiceNow and other internal business tools on Windows and Linux OS
  • Work across wide variety of systems, applications, and projects within PD ALTESS
  • End user support of ServiceNow, Atlassian, and Alfresco internal business tools
  • Following agile SDLC, configure internal business tools to customer requirements (mainly ServiceNow)
  • Performing all required patching, upgrading, and cybersecurity compliance activities for application environments (Windows and Linux OS)
  • Performing deployment of mid-tier computing capabilities (IIS, Apache, etc.)
  • Maintaining existing and configuring new ServiceNow workflows and custom components
  • Working with customers to enhance ServiceNow capabilities
Read More
Arrow Right