Senior Security Operations Engineer I

Axon Axon · Enterprise · Ho Chi Minh City, Vietnam · 4901 Information Security

This role focuses on building and improving security tooling and infrastructure to enable development teams to move quickly without compromising security. It involves designing and developing security tools for vulnerability management and secure software delivery pipelines, integrating security into developer workflows, and automating security checks within CI/CD pipelines. The role also includes provisioning and maintaining secure AWS infrastructure and collaborating with engineering teams to scale security capabilities.

What you'd actually do

  1. Design, build, and operate secure, scalable infrastructure and developer-friendly security platforms.
  2. Develop and maintain in-house tools for vulnerability management and CMDB lifecycle management, enabling asset discovery, tracking, and remediation workflows.
  3. Design, provision, and manage AWS infrastructure that supports enterprise security services using infrastructure-as-code and cloud-native architectures.
  4. Enhance CI/CD systems with automated security testing, compliance checks, and deployment safeguards.
  5. Implement and improve Kubernetes security practices, including workload protection, policy enforcement, cluster hardening, and runtime monitoring.

Skills

Required

  • 7+ years of experience in security engineering, infrastructure, site reliability, or platform engineering roles.
  • Exceptional software development skills with experience building production-grade tools, services, or platforms (e.g., Go, Python, or similar languages).
  • Proven ability to design and develop internal security platforms and tooling, particularly for vulnerability management, asset inventory, or CMDB systems.
  • Strong experience securing cloud environments (e.g., AWS, Azure) and containerized workloads running in production.
  • Hands-on experience provisioning and managing AWS infrastructure using infrastructure-as-code tools such as Terraform or CloudFormation.
  • Experience operating CSPM and cloud security scanning platforms and partnering with engineering teams to remediate critical vulnerabilities.
  • Hands-on experience with Kubernetes security, including cluster hardening, workload protection, policy enforcement, and runtime monitoring.
  • Deep understanding of Linux systems, networking, distributed systems, and their associated security controls.
  • Experience integrating security into CI/CD pipelines, including automated scanning, policy enforcement, and secure deployment practices.
  • Proficiency in automation and infrastructure-as-code to build scalable and secure platforms.

What the JD emphasized

  • security tooling
  • vulnerability management
  • CI/CD pipelines
  • AWS infrastructure
  • Kubernetes security