Cookies & analytics consent
We serve candidates globally, so we only activate Google Tag Manager and other analytics after you opt in. This keeps us aligned with GDPR/UK DPA, ePrivacy, LGPD, and similar rules. Essential features still run without analytics cookies.
Read how we use data in our Privacy Policy and Terms of Service.
🤖 15+ AI Agents working for you. Find jobs, score and update resumes, cover letter, interview questions, missing keywords, and lots more.
PixelChain • Ho Chi Minh City, Vietnam
Role & seniority
Stack/tools
Cloud: AWS or GCP; cloud access controls, configurations, storage security
Web/app security: knowledge of data manipulation, business logic flaws, advanced injection, API security
Assessment: static/dynamic analysis, API/IAM risk evaluation
Tools & scripting: standard security testing tools; Python or Bash for automation
Top 3 responsibilities
Lead and perform detailed security validation across diverse tech stacks (COTS, custom apps, cloud infrastructure)
Conduct API and IAM risk assessments; ensure robust control mechanisms
Adopt an adversary-centric approach, map findings to realistic business impact; document outcomes with actionable recommendations
Must-have skills
5+ years in hands-on security assessment, evaluation, or risk analysis
Deep expertise in safeguarding web-facing apps; familiarity with common weaknesses and attack vectors
Experience evaluating consumer app security using static/dynamic analyses; strong data protection and secure communication knowledge
Working knowledge of securing cloud-native environments (AWS/GCP), including access controls and storage security
Proficiency with security testing tools; ability to develop automation scripts (Python, Bash)
Nice-to-haves
Experience in client-side hardening, server integrity, or anti-fraud/anti-abuse domains
Relevant security certifications
Location & work type
Location: United A
Our client is a software development and digital solutions company serving clients across the FinTech, iGaming, and Marketing sectors. The company has successfully delivered 20+ innovative products across 5 international markets, including Brazil, Armenia, Saudi Arabia, and the UAE.
Experience with unconventional security domains such as client-side hardening, server integrity, or anti-fraud/anti-abuse measures.
Relevant professional certifications that validate advanced, specialized security knowledge.