About this DevSecOps Engineer role at Bjak
About BJAK
The original mission of BJAK is we believe people deserve smarter ways to plan, save and grow their money. This is the origin of our name.
Started in 2019, we built the first mobile-first, insurance platform, enabling insurance to be accessible online by millions in the region. Today, its the leading insurance platform in Southeast Asia.
Today, we are expanding ways to help people in the region — this includes spending, saving, investing, exchanging, travelling, and more. Our mission is help people get more from their money every day.
We have teams working around the world, with over 20 nationalities from our offices and remotely, who truly enjoys their work. We are looking for the most talented and driven people we can find. We are looking for people who work for their passion, not counting hours. Who loves building great next-generation products, not status quo. Who cares about redefining how everyone around us can get the best financial applications, not for an exclusive few.
If you're this person, we'd love to talk to you.
The Role
Integrate security into BJAK's software delivery and infrastructure workflows. Work with Platform, Cloud, and Engineering to automate controls and support secure delivery across AWS and GCP.
What You Will Build
Embed code, dependency, container, infrastructure-as-code, and secrets scanning into CI/CD pipelines.
Maintain security guardrails for builds, releases, artifacts, deployment identities, and infrastructure changes.
Secure containerized workloads, orchestration platforms, and deployment environments across AWS and GCP.
Implement least-privilege access, secrets management, artifact integrity, and secure configuration practices.
Own DevSecOps implementation for SC TRM and BNM RMiT, including evidence, testing, remediation, and audit support.
Partner with teams using TypeScript/Node.js, Python, Swift, and Kotlin to integrate security checks into delivery workflows.
Improve monitoring, vulnerability reporting, incident readiness, and secure delivery guidance.
What We Look For
Degree in Computer Science, Information Security, or related field, or equivalent experience.
3+ years in DevOps, platform engineering, cloud security, or DevSecOps.
Experience implementing and owning SC TRM and BNM RMiT controls for technology operations, change management, and secure delivery.
Hands-on with GitHub Actions, GitLab CI, Jenkins, or similar CI/CD tools.
Experience with AWS, GCP, Docker, Kubernetes, infrastructure as code, and cloud security controls.
Knowledge of security scanning, software supply chain security, secrets management, IAM, logging, and monitoring.
Scripting or programming skills in Python, TypeScript/Node.js, Bash, or Go and ability to collaborate across teams.
Language
English is our main working language across global teams. Strong English communication is required.