Senior AI DevSecOps Engineer

Ho Chi Minh

IT

Full-time

  Facebook   Linkedin

The Opportunity

In this role, you will work with modern cloud, microservices, security, automation, and AI technologies across the full engineering lifecycle — you propose it, build it, deploy it, and own it.

You will be responsible for designing, implementing, securing, and maintaining scalable infrastructure and engineering platforms that support business and customer needs.

Your work will have a direct impact on the reliability, security, and continued growth of the client‘s technology platform.

Key Responsibilities

  • CI/CD Pipeline Management: Design, build, and maintain CI/CD pipelines that provide automation, security, and scalability throughout the software development lifecycle.
  • Infrastructure & Security: Architect and implement secure multi-cloud infrastructure using cloud services, containerization, and orchestration technologies such as Kubernetes and Docker.
  • Policy as Code: Establish and enforce security and compliance policies across Kubernetes environments using OPA (Open Policy Agent) or Kyverno, ensuring security guardrails are automated, consistent, and auditable.
  • AI & Platform Automation: Drive the use of AI-powered tools and workflows to automate infrastructure operations, optimise CI/CD processes, support root-cause analysis, strengthen security posture, and improve engineering productivity.
  • Observability & Alerting: Build and operate a comprehensive observability platform using technologies such as New Relic, Prometheus, Grafana, ELK/EFK, or Azure Monitor, including proactive alerting, dashboards, and runbooks for critical business flows and security events.
  • Secret & Credential Management: Establish and enforce secure secrets-management practices across environments using solutions such as Azure Key Vault, AWS Secrets Manager, and 1Password, ensuring credentials are never hardcoded in source code or pipelines.
  • Incident Response & On-Call: Own and continuously improve incident management processes by defining runbooks, leading post-mortems, tracking MTTR, and participating in on-call rotations to maintain platform reliability and SLO compliance.
  • Threat Modelling & Penetration Testing: Conduct threat-modelling activities with engineering teams and coordinate or perform penetration testing to proactively identify vulnerabilities and attack surfaces before production deployment.
  • Code Security: Perform code reviews and apply static and dynamic security analysis to identify, address, and prevent security vulnerabilities.
  • Compliance & Best Practices: Ensure systems and engineering practices comply with relevant industry standards and security frameworks, including GDPR, ISO, PCI-DSS, and other applicable requirements.
  • Collaboration: Partner closely with development, operations, and security teams to promote a strong culture of automation, reliability, and security-first engineering.
  • Mentorship: Support and mentor junior engineers and team members on security practices, engineering standards, and operational excellence.
  • Documentation: Maintain accurate and up-to-date documentation covering security policies, procedures, infrastructure practices, and incident reports.
  • Technology & AI Trend Scouting: Keep up with emerging technologies, cloud practices, security trends, and AI developments to identify opportunities for innovation and improvement.

Requirements

Education

  • Bachelor‘s degree in Computer Science, Information Technology, or a related discipline.

Experience

  • 5+ years of experience in DevOps/DevSecOps roles, with a strong focus on security.

Technical Skills

  • Strong proficiency with AWS and Azure, including their security capabilities and services.
  • Solid experience with CI/CD technologies, such as Azure Pipelines, Argo CD, and GitLab CI.
  • Hands-on experience with Infrastructure as Code (IaC) tools including Terraform, Terragrunt, and Helm, with a good understanding of GitOps practices.
  • Strong expertise in Docker and Kubernetes for containerization and orchestration.
  • Familiarity with security tools such as SonarQube, OWASP ZAP, and Trivy.
  • Strong scripting capabilities using Python, Bash, and PowerShell.
  • Good understanding of network security, including firewalls, VPN, and IDS/IPS.
  • Good knowledge of SQL/NoSQL databases, such as PostgreSQL and MongoDB.
  • Understanding of AI and machine learning principles and how they can be applied to strengthen security and automate threat detection.
  • Ability to leverage AI tools in daily engineering work.

Soft Skills

  • Security-first mindset: Integrates security considerations naturally into engineering decisions while maintaining delivery speed and business agility.
  • Strong communicator: Able to explain technical security risks clearly to non-technical stakeholders and leadership in business-oriented language.
  • Proactive, analytical, and solutions-oriented approach.
  • Innovative and entrepreneurial mindset.
  • Comfortable working both independently and collaboratively within a team.
  • Able to perform effectively in a fast-paced, high-volume environment.
  • Strong decision-making and problem-solving capabilities.
  • High level of professionalism, ownership, and work ethic.

Benefits

  • Highly competitive remuneration package
  • Premium healthcare coverage for yourself and two family members
  • Monthly meal, telephone, and transportation allowances
  • Generous year-end bonus
  • Strong business and technical leadership team
  • Collaborative and international working environment
  • Opportunities to travel and work across Southeast Asia
  • Modern office environment in District 1, Ho Chi Minh City
  • Exposure to the latest technologies
  • Flexible working hours
  • And more benefits to come

Application form

Full Name *
Email Address *
Phone Number *
Your Resume *
To attach your Resume, click here to upload from your Computer.
Security code *

Submit