Cookies & analytics consent
We serve candidates globally, so we only activate Google Tag Manager and other analytics after you opt in. This keeps us aligned with GDPR/UK DPA, ePrivacy, LGPD, and similar rules. Essential features still run without analytics cookies.
Read how we use data in our Privacy Policy and Terms of Service.
🤖 15+ AI Agents working for you. Find jobs, score and update resumes, cover letter, interview questions, missing keywords, and lots more.

UnionBank of the Philippines • Pasig, Metro Manila, Philippines
Role & seniority: Security Test Automation Engineer (3–5 years experience); leads automation and execution of security tests within SDLC.
Stack/tools: Security testing: Tenable, Ridgebot, Burp Suite, OWASP ZAP, Checkmarx; Automation: TOSCA, Selenium, Appium, Playwright; languages: Java, Python, JavaScript; CI/CD integrations.
Lead automation and execution of security tests across the SDLC, integrating tests into CI/CD pipelines.
Identify vulnerabilities with development teams, assess impact, and guide remediation efforts; mentor junior engineers.
Develop reusable automation frameworks, maintain test scripts, and ensure alignment with security best practices and compliance standards (e.g., OWASP Top 10).
3–5 years in security testing with SAST/DAST tools (e.g., Tenable, Burp Suite, OWASP ZAP, Checkmarx).
Strong automation scripting skills in Java, Python, or JavaScript; experience building scalable automated frameworks.
Experience integrating automated security tests into CI/CD and guiding remediation with cross-functional teams.
Mentoring or team leadership experience; cross-functional collaboration; familiarity with vulnerability management and remediation workflows.
Experience with multiple automation tools (beyond core security tools) and secure coding practices.
Location & work type: Location and work-type not specified in the provided text.
Qualifications
Experience and Skill Level Typically has 3-5 years of experience in security testing, with a strong understanding of SAST and DAST tools such as Tenable, Ridgebot, Burp Suite, OWASP ZAP, and Checkmarx. Proficient in automating security tests and integrating them into CI/CD pipelines for continuous security assessments. Solid understanding of vulnerability management, risk assessment, and remediation practices. Experienced in working with cross-functional teams to ensure security practices are embedded into development workflows. Scope of Responsibilities Leads the execution and automation of security tests across the SDLC, integrating security testing into CI/CD pipelines for continuous integration and delivery. Works closely with development teams to identify vulnerabilities, assess their impact, and guide remediation efforts. Collaborates with other security professionals to ensure adherence to security best practices, including OWASP Top 10 and compliance standards. Mentors junior security engineers, providing guidance on testing techniques, tools, and best practices. Complexity of Tasks and Supervision Handles moderately complex tasks, including the execution of comprehensive security tests, vulnerability assessments, and remediation efforts. Works semi-autonomously, with some oversight, to define testing scope and strategies and deliver actionable results. Provides mentoring to junior engineers, assisting them in learning and developing security testing skills. Show more Show less