-
GFT Technologies APAC & GCC

Senior Python Engineer (Security experience)

GFT Technologies APAC & GCC
Spain · Full-time · Mid-Senior

Job description:

Role Summary

We are seeking a highly skilled and hands-on Senior Python Engineer with a strong focus on secure coding and automation (Python) to join our Service Operations team. This role is ideal for engineers who are passionate about building secure, scalable systems, integrating security into development workflows, and supporting banking/financial domain applications in a cloud-native (AWS) environment.

 

Key Responsibilities

  • Develop and maintain security automation tools and scripts using Python to support application security and DevSecOps processes
  • Perform secure code reviews across platforms (Kotlin, Node.js, Android, iOS, Python), with strong emphasis on Python-based systems
  • Integrate and automate security controls into CI/CD pipelines (e.g., GitHub Actions)
  • Work closely with engineering teams to embed secure coding practices into the SDLC
  • Implement and manage SAST/SCA/DAST tools and automate vulnerability detection and remediation workflows
  • Support API and application security (REST, GraphQL), including authentication, authorization, and encryption practices
  • Conduct basic penetration testing and vulnerability validation (mobile, web, APIs) – depth is not required, focus is on remediation and automation
  • Perform threat modelling (e.g., STRIDE) and risk assessment for applications, especially in banking systems
  • Collaborate with infrastructure teams to ensure secure deployment on AWS cloud environments
  • Contribute to application security standards, policies, and best practices aligned with OWASP
  • Monitor and respond to emerging security threats, including risks related to AI-enabled systems
  • Support BAU security operations, vulnerability management, and continuous improvement initiatives


Required Qualifications

  • At least 8 years of experience in software development
  • 5+ years of hands-on experience in Python development (mandatory, strong coding capability is critical)
  • 2 years of experience in application Security/DevSecOps
  • Experience working in banking/financial services domain
  • Strong experience with AWS cloud services and cloud security practices
  • Solid understanding of secure coding practices and code review methodologies
  • Experience integrating security tools into CI/CD pipelines
  • Familiarity with SAST/SCA/DAST tools
  • Basic understanding of penetration testing concepts and tools (e.g., Burp Suite, MobSF, Frida)
  • Knowledge of API security, authentication mechanisms, and cryptographic fundamentals
  • Experience working in Agile/DevOps environments


Preferred Qualifications

  • Experience with security automation frameworks and tooling in Python
  • Exposure to AI/ML application security (e.g., prompt injection, model abuse)
  • Certifications such as AWS Security Specialty, CSSLP, OSCP (optional)
  • Experience with container security (Docker, Kubernetes) and IaC scanning
  • Familiarity with banking security standards and compliance requirements

Key Skills

Ranked by relevance

python cloud aws penetration testing cicd cloud security kubernetes burp suite graphql android kotlin docker oscp ios ai
Login to Apply
Posted
Jun 16, 2026
Type
Full-time
Level
Mid-Senior
Location
Ho Chi Minh City

Industries

IT Services IT Consulting

Categories

Information Technology

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
BETWEEN Group
Related

Cloud / DevOps Engineer

2026-06-17

Full-time
Not Applicable
Spain
IT Services
Engineering
View Job Details
Logicalis Spain
Related

Python Developer | Data & AI

2026-06-16

Full-time
Mid-Senior
Spain
IT Services
Information Technology
View Job Details
GFT Technologies APAC & GCC
Related

Senior FullStack Engineer (up to 15k SGD)

2025-09-09

Full-time
Mid-Senior
Singapore
IT Services
Information Technology