E

Technical Project Manager – DevSecOps

Exasoft

Singapore · Contract

Be the first to apply

Experience
8+ yrs
Salary
Openings
1
Posted
4 days ago
Work mode
In office
Education
Bachelor's degree
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

Overview

This role requires a technically proficient Technical Project Manager specialized in DevSecOps, responsible for steering multifaceted security projects. The position demands extensive experience with Secure SDLC, capable leadership of cross-disciplinary teams, and delivering security implementations punctually and cost-effectively. Strategic planning combined with practical expertise in design, coding, and building processes is essential.

Core Responsibilities

  • Lead the entire Secure SDLC process, ensuring security is integrated throughout each phase of software development.
  • Establish and control project scope, objectives, tasks, and resources, while monitoring execution and managing risks and dependencies across multiple project streams.
  • Collaborate closely with engineering, architecture, operations, and procurement to synchronize workflows with expected outputs.
  • Oversee project risks, dependencies, and changes, ensuring compliance with scheduled milestones and budgets.
  • Deliver transparent, accurate status reports and maintain dashboards, summaries, and progress updates to provide leadership with full project visibility.

Qualifications and Experience

  • Degree in Computer Science, Information Technology, or related discipline.
  • A minimum of eight years relevant experience, preferably within financial services or asset management sectors, including at least three years in project management roles.
  • Practical experience with Secure SDLC and CI/CD platforms such as GitLab CI, GitHub Actions, or Jenkins, including the integration of security checkpoints within pipelines.
  • Hands-on knowledge of container technologies and orchestration tools like Docker and Kubernetes, alongside their security mechanisms.
  • Familiarity with Infrastructure-as-Code tools including Terraform or CloudFormation and Policy-as-Code frameworks like OPA.
  • Strong foundation in application security principles, including OWASP Top 10, secure SDLC practices, and basic cryptography.
  • Experience with Cloud Native Services architecture (AWS Well-Architected Framework) and deploying cloud security measures in Azure and/or AWS, utilizing tools such as Microsoft Sentinel, Security Hub, Guard Duty, and Cloud Trail.
  • Understanding of Cloud Security Posture Management (CSPM) and awareness of supply-chain security protocols such as SBOM, SLSA, and artifact signing.
  • Expertise in threat modeling, secure design evaluations, risk assessment, and vulnerability management.
  • Demonstrated technical proficiency coupled with structured, methodical project management.
  • Strategic and analytical mindset capable of linking technical objectives with business goals.
  • Exceptional organizational skills and attention to detail, with a proactive problem-solving approach.
  • Effective leadership style capable of influencing cross-functional teams without formal authority.
  • Excellent communication abilities, both written and verbal, facilitating coordination among stakeholders and external vendors.
  • Certifications in PMP, Cybersecurity, DevSecOps, AWS, or Cloud technologies are beneficial.

Minimum education

Bachelor's Degree

Tools & software

Docker required Kubernetes required Terraform required

How they work

Communication Problem Solving Leadership Organisation Strategic Thinking
🤖
Online · instant AI help
Broxer