Senior/Staff Application Security Engineer

3 weeks ago


Dublin, Dublin City, Ireland Agoda Full time
Senior/Staff Application Security Engineer (Bangkok based, relocation provided)

Join to apply for the Senior/Staff Application Security Engineer (Bangkok based, relocation provided) role at Agoda

Location: Bangkok, Thailand. Hybrid working model. Relocation package is provided if you prefer to relocate to Bangkok.

About Agoda
Agoda is an online travel booking platform for accommodations, flights, and more. We build and deploy cutting-edge technology that connects travelers with a global network of hotels and holiday properties worldwide, plus flights, activities, and more. Our 7,100+ employees represent 95+ nationalities in 27 markets, fostering a diverse, creative, and collaborative work environment. We innovate through a culture of experimentation and ownership to help customers experience the world.

Our Security Team & Opportunity
The Security Department oversees security, compliance, GRC, and security operations for all Agoda. We are vigilant in ensuring there is no breach or vulnerability threatening our company or employees. This role offers the opportunity to work with the best technology in a dynamic and advanced environment.

The Opportunity/Role Summary
  • Conduct application security reviews and perform penetration testing, ensuring alignment with compliance standards
  • Engage in projects, research, and security tool development to enhance security measures and meet compliance requirements
  • Scale security processes using automation
  • Provide training, outreach, and develop documentation to guide security practices among internal teams
  • Offer technical guidance, advocate for automation, evaluate designs, and lead security teams to empower engineering partners with cutting-edge tools, techniques, and methodologies to build secure products
What you'll Need to Succeed / Role Requirements
  • Strong foundations in secure design reviews, threat modeling experience, code reviews, and pen-testing
  • Minimum of 3 years of technical experience with threat modeling, secure coding, identity management and authentication, software development, cryptography, system administration and network security
  • Minimum 2 years experience with Software Development Life Cycle in one or more languages (Go, Python, , Rust, etc.)
  • Experience with public/private cloud environments (OpenShift, Rancher, Kubernetes, AWS, GCP, Azure, etc.)
  • Knowledge of security principles, compliance regulations, and change management
  • Experience in running assessments using OWASP MASVS and ASVS
  • Working knowledge of exploiting and fixing application vulnerabilities
  • Proven expertise in architectural threat modeling and secure design reviews
  • Knowledge of common web application vulnerabilities (OWASP Top 10 or SANS Top 25)
  • Familiarity with automated dynamic scanners, fuzzers, and proxy tools
  • Analytical problem-solving skills and knowledge of offensive security tactics
  • Strong communication skills to convey technical concepts to diverse audiences
  • Exposure to AI and Large Language Model (LLM) security
  • Relocation package available for those relocating to Bangkok
Benefits & Work Model
  • Hybrid working model
  • WFH setup allowance
  • 30 days remote working from anywhere globally every year
  • Employee discounts for accommodations globally
  • Global team of 90+ nationalities, 40+ offices in 25+ countries
  • Annual CSR / Volunteer Time Off
  • Benevity subscription for employee donations
  • Volunteering opportunities globally
  • Free Headspace, Odilo & Udemy subscriptions
  • Employee Assistance Program, enhanced parental leave, life/TPD & accident insurance
Equal Opportunity

Equal Opportunity Employer. Agoda is committed to equal employment opportunity regardless of sex, age, race, color, national origin, religion, marital status, pregnancy, sexual orientation, gender identity, disability, citizenship, veteran or military status, or other legally protected characteristics. We value diversity and inclusion throughout the organization.

Other

Copy Link, WeChat, LinkedIn, Email

Note: This description reflects the current role and may be updated as Agoda continues to grow.


#J-18808-Ljbffr

  • Dublin, Dublin City, Ireland Agoda Full time

    OverviewSenior/Staff Application Security Analyst (Bangkok based, relocation provided) – AgodaJoin to apply for the Senior/Staff Application Security Analyst (Bangkok based, relocation provided) role at Agoda.Location: Bangkok, Thailand. About Agoda: Agoda is an online travel booking platform for accommodations, flights, and more. We build and deploy...


  • Dublin, Dublin City, Ireland Agoda Full time

    OverviewSenior/Staff Application Security Analyst (Bangkok based, relocation provided) at Agoda. Agoda is an online travel booking platform for accommodations, flights, and more. We build and deploy cutting-edge technology that connects travelers with a global network of hotels and other services. We are a diverse team with offices in multiple locations and...


  • Dublin, Dublin City, Ireland Agoda Full time

    Senior Application Security Engineer (Bangkok based, relocation provided)Bangkok, ThailandOverviewThe Security Department oversees security, compliance, GRC, and security operations for Agoda.We are vigilant in ensuring there is no breach or vulnerability threatening our company or endangering our employees.This role is in a fast-paced DevSecOps environment...


  • Dublin, Dublin City, Ireland Agoda Full time

    Senior Application Security Engineer (Bangkok based, relocation provided)Bangkok, ThailandOverviewThe Security Department oversees security, compliance, GRC, and security operations for Agoda. We are vigilant in ensuring there is no breach or vulnerability threatening our company or endangering our employees. This role is in a fast-paced DevSecOps...


  • Dublin, Dublin City, Ireland beBeeApplicationSecurity Full time €110,000 - €145,000

    Job Summary:">We are seeking a seasoned expert to lead our application security efforts. As a Senior Application Security Engineer, you will play a crucial role in safeguarding our applications by independently and proactively performing security assessments, mentoring junior engineers, and contributing to the strategic direction of our application security...


  • Dublin, Dublin City, Ireland Infoplus Limited Full time

    Direct message the job poster from Infoplus Technologies UK LimitedOverviewJD: We are seeking an experienced Application Security Engineer to join our team and play a crucial role in ensuring the security of our applications and software systems.In this role, you will be responsible for assessing and mitigating security risks in our applications, conducting...


  • Dublin, Dublin City, Ireland beBeeSecurity Full time €100,000 - €120,000

    Job Summary:Senior Application Security SpecialistAs a seasoned security expert, you will play a critical role in safeguarding applications by independently performing thorough security assessments, guiding junior engineers, and contributing to strategic application security initiatives.Key Responsibilities:Lead and oversee comprehensive security assessments...


  • Dublin, Dublin City, Ireland beBeeSecurity Full time €80,000 - €100,000

    Senior Application Security Engineer RoleThis is a critical position that involves safeguarding applications by conducting security assessments, mentoring junior engineers, and contributing to strategic application security efforts.Key ResponsibilitiesLead security assessments and code reviews to identify vulnerabilities and implement mitigations.Triage,...


  • Dublin, Dublin City, Ireland Infoplus Technologies UK Limited Full time

    OverviewWe are seeking an experienced Application Security Engineer to join our team and play a crucial role in ensuring the security of our applications and software systems. You will assess and mitigate security risks in our applications, conduct security code reviews, implement security best practices, and collaborate with development teams to enhance our...


  • Dublin, Dublin City, Ireland beBeeFirewall Full time €80,000 - €100,000

    Web Application Firewall SpecialistThis role is a key contributor to the Cyber Pillar’s WAF Remediation Stream, collaborating closely with the Cloud and Application Engineering team.Partner with project managers to plan and execute WAF migrations within project timelines.Migrate applications to PulseSecure WAF in Detect Mode, followed by progression to...