Skip to content

DevSecOps Engineer

Bjak Remote (Anywhere)September 29, 2026
Remote
Full-time
DevSecOps
Mid · 3+ yrs

About BJAK

The original mission of BJAK is we believe people deserve smarter ways to plan, save and grow their money. This is the origin of our name.

Started in 2019, we built the first mobile-first, insurance platform, enabling insurance to be accessible online by millions in the region. Today, its the leading insurance platform in Southeast Asia.

Today, we are expanding ways to help people in the region — this includes spending, saving, investing, exchanging, travelling, and more. Our mission is help people get more from their money every day.

We have teams working around the world, with over 20 nationalities from our offices and remotely, who truly enjoys their work. We are looking for the most talented and driven people we can find. We are looking for people who work for their passion, not counting hours. Who loves building great next-generation products, not status quo. Who cares about redefining how everyone around us can get the best financial applications, not for an exclusive few.

If you're this person, we'd love to talk to you.

The Role

Integrate security into BJAK's software delivery and infrastructure workflows. Work with Platform, Cloud, and Engineering to automate controls and support secure delivery across AWS and GCP.

What You Will Build

  • Embed code, dependency, container, infrastructure-as-code, and secrets scanning into CI/CD pipelines.

  • Maintain security guardrails for builds, releases, artifacts, deployment identities, and infrastructure changes.

  • Secure containerized workloads, orchestration platforms, and deployment environments across AWS and GCP.

  • Implement least-privilege access, secrets management, artifact integrity, and secure configuration practices.

  • Own DevSecOps implementation for SC TRM and BNM RMiT, including evidence, testing, remediation, and audit support.

  • Partner with teams using TypeScript/Node.js, Python, Swift, and Kotlin to integrate security checks into delivery workflows.

  • Improve monitoring, vulnerability reporting, incident readiness, and secure delivery guidance.

What We Look For

  • Degree in Computer Science, Information Security, or related field, or equivalent experience.

  • 3+ years in DevOps, platform engineering, cloud security, or DevSecOps.

  • Experience implementing and owning SC TRM and BNM RMiT controls for technology operations, change management, and secure delivery.

  • Hands-on with GitHub Actions, GitLab CI, Jenkins, or similar CI/CD tools.

  • Experience with AWS, GCP, Docker, Kubernetes, infrastructure as code, and cloud security controls.

  • Knowledge of security scanning, software supply chain security, secrets management, IAM, logging, and monitoring.

  • Scripting or programming skills in Python, TypeScript/Node.js, Bash, or Go and ability to collaborate across teams.

Language

English is our main working language across global teams. Strong English communication is required.

Job Details

Experience

Mid · 3+ yrs

Tools & Tech

AWS
Bash
Docker
GCP
GitHub
GitHub Actions
GitLab
GitLab CI
Go
Jenkins
Kotlin
Kubernetes
Node.js
Python
Swift
TypeScript