🎁 Before you apply, rehearse this interview. Create your free WorkMundi account and get an Interview Training on HelpsYouSpeak — no cost, no card. I want my training →
Role Overview This is a builder-operator position requiring a combination of technical engineering and operational excellence. Success in this role is defined by a fully managed and secured endpoint environment, the implementation of short-lived credentialing for engineering workflows, and the establishment of robust monitoring and alerting systems. You will ensure that ISO 27001 controls are integrated into daily operations, facilitating efficient evidence collection for audits. Working alongside external security partners and our internal DevOps team, you will serve as the primary technical lead for security implementation. Key Responsibilities Endpoint Security Management — Direct the deployment and optimization of the security stack across the Mac and Windows fleet. Manage MDM baselines, EDR configuration, and the triage of escalations from managed detection services. Cloud Security Operations — Maintain least-privilege IAM principles across AWS and GCP environments. Implement SSO, hardware-based MFA, and manage service account hygiene, secrets, and cloud governance guardrails. Detection Engineering — Centralize telemetry from cloud audit logs, endpoints, and networks. Develop and maintain high-fidelity alerting for critical security events, including unauthorized IAM changes and anomalous data egress. Incident Response — Serve as the primary responder for security incidents. Conduct investigations, execute containment strategies, and produce comprehensive post-incident reviews while maintaining updated runbooks. ISMS Operations — Operationalize ISO 27001 controls through automation. Facilitate evidence collection, conduct periodic access reviews, and manage corrective actions to support internal and external audits. Security SDLC Integration — Collaborate with engineering teams to integrate security into the development lifecycle. Implement secret scanning, dependency analysis, and conduct security reviews for high-risk architectural changes. Security Culture & Advocacy — Lead security awareness initiatives and phishing simulations. Act as a subject matter expert and accessible resource for security-related inquiries across the organization. What We're Looking For Required: 3+ years hands-on security or DevOps/infrastructure experience with meaningful security ownership — title matters less than what you've operated Working proficiency with at least one major cloud (AWS or GCP): IAM, audit logging, and security tooling (GuardDuty, Security Command Center, or equivalents) Experience deploying or administering endpoint management/EDR tooling across a fleet (any of: Intune, Jamf, Kandji, CrowdStrike, SentinelOne, Defender) Scripting ability for automation (Python, Bash, or PowerShell) — enough to glue systems together and automate evidence collection You can investigate an incident: read logs, build a timeline, distinguish evidence from assumption, and write it up clearly Thai and English working proficiency Nice to have: ISO 27001 exposure from the inside — you've lived through an audit, owned controls, or closed nonconformities PDPA familiarity, or GDPR experience that translates Experience at a SaaS or fintech company Infrastructure-as-code experience (Terraform) for codifying security baselines Certifications like AWS Security Specialty, ISO 27001 LA/LI, GIAC, or CISSP — valued, never required Benefits: Competitive salary and benefits package Relocation support and flexible work hours. 45 days a year work from anywhere policy Collaborative and friendly work environment Comprehensive training and mentorship program to help you grow your skills and advance your career Opportunities to work on cutting-edge technologies and have an impact on the future of the industry Opportunity for professional growth in a dynamic environment. Location: BKK BangRak Office (MRT Samyan or BTS Saladaeng)
Here's how to pick the right one and stand out in your application.
144.883Jobs
31.687IN
81%EN
That number is real. WorkMundi's database shows 144,883 open engineer roles across the world. India has the most with 31,687 jobs, followed by the United States with 30,084. If you just finished reading one job ad and felt paralyzed by choice, you're not alone—but this scale is actually an advantage. It means you can afford to be selective.
Start by geography and language. The majority of engineer ads—117,837 of them—have the job posting text written in English. Use that as one filter, but remember: the ad text language tells you nothing about whether the role actually requires you to speak English day-to-day. Read the job description carefully. Then check which countries have the volume you're targeting. Singapore, Poland, and Australia round out the top five after India and the US.
Next, learn who's hiring. Accenture has posted 2,801 engineer roles. andurilindustries, speechify, and jobgether are also actively recruiting. If you're applying to one of these names, research their hiring patterns and interview style before you apply. That homework pays off.
When you interview, expect the question every engineer hears: 'Tell me about a time you had to debug a problem that wasn't in your job description.' Have a specific story ready—not a general one. Name the tools, the deadline pressure, and what you learned. Hiring managers listen for whether you see problem-solving as part of the role itself, not a favour.