Senior Security Engineer

Posted 12 Days Ago
Be an Early Applicant
Singapore, SGP
In-Office
Senior level
Energy • Utilities • Renewable Energy
We are on a mission to switch people and business to affordable, renewable energy.
The Role
The Senior Security Engineer will embed security into application development and cloud infrastructure, collaborating with teams to enhance security practices and drive improvements across systems.
Summary Generated by Built In

About Flo Energy

Hi, we are Flo! We are on a mission to switch as many people and businesses as possible to affordable, renewable solutions.

We began in a small shophouse in Singapore and have grown rapidly ever since, expanding into Australia with even bigger plans ahead.

Unlike other retailers, we have built our own best-in-class energy platform entirely in-house. Designed specifically for the sector, it automates complex processes and keeps costs down, letting us offer genuinely affordable products to our customers.

Behind Flo is a diverse team of passionate engineers, data scientists, operators, and energy experts. We come from different backgrounds, but we are united by the shared goal of creating a more sustainable future. If you want to make an impact and help accelerate the renewable energy transition, we would love to meet you.

Find out more about us on https://floenergy.sg/business


About the role

We are seeking a Senior Security Engineer (DevSecOps / Application Security) to join Flo as our first dedicated security engineer, focusing on embedding security into our application development and cloud infrastructure.


You will work closely with Engineering and Platform (DevOps) teams to integrate security into the software development lifecycle and cloud environments. This role is hands-on and execution-focused, while also requiring the ability to identify security gaps, recommend improvements, and influence teams to adopt secure practices.


This role is ideal for someone who enjoys working closely with developers, improving security in real-world systems, and driving practical security outcomes through collaboration.


What you'll do

As the Senior Security Engineer, you will focus on application and cloud security while supporting the broader cybersecurity posture of the organization. As the first security engineer, you will play a key role in improving how security is implemented in practice and how engineering teams adopt secure development practices.


Secure Development & Cloud Practices:

  • Collaborate with developers to embed secure coding practices and conduct code reviews for high-risk features.
  • Conduct threat modeling and provide security input on application and cloud design.
  • Integrate security scanning tools (SAST, DAST, SCA) into CI/CD pipelines.
  • Collaborate with the Platform Team (DevOps) to secure containerized workloads (e.g., Docker, Kubernetes), infrastructure-as-code, and serverless applications.
  • Work with the Platform Team to secure configuration across AWS accounts, including IAM, encryption, and network controls.
  • Implement and manage Web Application Firewalls (WAFs) to protect applications from OWASP Top 10 vulnerabilities and other common attacks.


Security Innovation & Continuous Improvement:

  • Stay current with emerging threats, vulnerabilities, and cybersecurity technologies.
  • Proactively identify security gaps and drive practical improvements across application and cloud environments.
  • Proactively identify areas for risk reduction and security automation.
  • Collaborate across teams to build a culture of security-first thinking in everything we build and deploy.
  • Work closely with Engineering and Platform teams to drive adoption of security best practices.
  • Communicate security risks and recommendations clearly and concisely.
  • Support teams in balancing security requirements with delivery timelines.
  • Contribute to building a culture of security awareness across engineering.


Qualifications

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Security, or a related field.
  • Strong experience in cybersecurity roles focused on application and cloud environments, preferably in senior or lead-level positions.
  • Strong understanding of secure coding, web security standards (e.g., OWASP Top 10), and CI/CD security practices.
  • Hands-on experience with CI/CD security.
  • Programming or scripting experience in Python or a general-purpose language such as Java, Kotlin, Go, or Ruby is preferred.
  • Familiarity with AWS security services, IAM policies, and network security configurations.
  • Strong understanding of IAM, SSO/SAML, and API security.
  • Experience with vulnerability scanners, container security, and code analysis tools (e.g., Snyk, Trivy, Semgrep).
  • Exposure to infrastructure-as-code (e.g., Terraform, CloudFormation) and cloud-native security tools like AWS Config, GuardDuty, and Security Hub.
  • Awareness of compliance frameworks such as ISO 27001, SOC 2, and PDPA.
  • Relevant certifications such as CompTIA Security+, AWS Certified Security, or equivalent.
  • Ability to clearly communicate security risks and remediation paths to engineering and platform teams.and SaaS management.

Top Skills

AWS
Ci/Cd
CloudFormation
Dast
Docker
Go
Guardduty
Iam
Java
Kotlin
Kubernetes
Python
Ruby
Sast
Sca
Security Hub
Terraform
Wafs
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
148 Employees
Year Founded: 2021

What We Do

We want you to feel good about using energy the way you need to today, as part of the journey to a more sustainable tomorrow. Flo believes the energy market needs to change. It needs to move away from expensive, dirty energy and give customers what they want: sustainable, renewable electricity that doesn’t break the bank. We want to give our customers the chance to contribute to the global renewable energy transition through our product offerings. Flo is driven by technology—it’s in our DNA. Unlike other retailers, our best-in-class energy platform is developed in-house by our own team. This allows us to keep our costs down and share those savings with our customers. With technology at the heart of everything we do, we are working towards our mission: switching as many people and businesses as possible to affordable, renewable electricity.

Similar Jobs

Airwallex Logo Airwallex

Security Engineer

Artificial Intelligence • Fintech • Payments • Business Intelligence • Financial Services • Generative AI
In-Office or Remote
Singapore, SGP
2000 Employees
5-5 Annually

Airwallex Logo Airwallex

Senior Software Engineer

Artificial Intelligence • Fintech • Payments • Business Intelligence • Financial Services • Generative AI
In-Office or Remote
Singapore, SGP
2000 Employees

Airwallex Logo Airwallex

Director, Product Strategy

Artificial Intelligence • Fintech • Payments • Business Intelligence • Financial Services • Generative AI
In-Office or Remote
Singapore, SGP
2000 Employees

Braze Logo Braze

Payroll Lead

Marketing Tech • Mobile • Software
Easy Apply
Hybrid
Singapore, SGP
2000 Employees

Similar Companies Hiring

UL Solutions Thumbnail
Software • Renewable Energy • Professional Services • Energy • Consulting • Chemical • Automotive
Chicago, IL
15000 Employees
Runwise Thumbnail
Greentech • Hardware • Real Estate • Software • Energy • PropTech
New York, NY
199 Employees
Energy CX Thumbnail
Greentech • Professional Services • Business Intelligence • Consulting • Energy • Financial Services • Utilities
Chicago, IL
108 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account