logo-colorCreated with Sketch.

DevSecOps & Platform Engineer

Location
Ho Chi Minh City, Vietnam
Type
Full Time
Team
Engineering

Trusting Social is an AI Fintech pioneer that's revolutionizing credit access in emerging markets. Our mission is "Advancing AI to Meet the Financial Needs of Everyday Consumers with Empathy." We've assessed over 1 billion consumers across four countries, and we're on a mission to provide 100 million credit lines using the power of AI and Big Data.

How You'll Make an Impact

The SRE team operates the backbone of a multi-cloud, AI-driven fintech platform — running Kubernetes clusters, CI/CD pipelines, cloud infrastructure, and security tooling across GCP, AWS, and Azure at real production scale. As a DevSecOps & Platform Engineer, you own significant slices of the security, platform, and automation layers that development and AI/ML teams depend on every day. You operate independently on well-scoped problems, take end-to-end ownership of your domains, and are trusted to design and ship changes to production systems.

What You'll Do

Security & DevSecOps Operations

  • Own security tooling end-to-end: design, deploy, configure, and validate WAF rules, GitHub Advanced Security scans, and CI/CD security gates — verifying they catch what they’re meant to catch, then tuning them to reduce noise.
  • Drive vulnerability management across applications, infrastructure, and containers; triage CVEs by real risk, track them to closure, and improve the process so nothing slips.
  • Build and maintain log collection and normalization from multiple sources (applications, infrastructure, security tools) and design alerting for SOC/SRE/DevSecOps..

Platform & Cloud Infrastructure

  • Operate and improve Kubernetes workloads: deploy applications, diagnose pod and service issues, and go beyond the runbook — extending and authoring runbooks as you resolve novel failures.
  • Design and maintain Infrastructure as Code (Terraform) for real cloud resources across AWS, GCP, and Azure, holding DevSecOps/SRE standards as the baseline and raising it where it’s weak.
  • Support and harden the AI Platform: ensure the resources, tooling, and environments AI/ML teams need for experiments, training, and inference are provisioned, secure, and reliable.

Automation & CI/CD

  • Build and own automation in Python, Golang, TypeScript, or Bash that removes manual work across provisioning, health checks, security checks, billing data collection, and asset inventory — owning the outcome, not just the code.
  • Improve CI/CD pipelines on GitHub Actions: add and maintain lint, SAST, and dependency-scan stages, ensuring the gates actually block bad changes rather than merely running.

Monitoring & Incident Response

  • Own monitoring for your systems through Prometheus, Grafana, and Datadog; act on alerts, surface patterns, and cut false positives.
  • Take a defined role in incident response: drive log/data collection, write accurate timelines, contribute to root-cause analysis, and update runbooks so the team learns from every event.

What We're Looking For

Experience & Background

  • 2+ years of hands-on experience in Cloud (AWS, GCP, or Azure), DevOps, SRE, Security, or Automation — or equivalent depth demonstrated through substantial personal projects and open-source contributions.
  • Degree in Computer Science, Information Technology, Computer Engineering, Cybersecurity, or a related field, or equivalent practical experience.

How You Work

  • You use AI tools actively — crafting clear prompts, evaluating outputs critically, and applying AI to move faster and cover more ground across security analysis, script generation, and documentation.
  • You take initiative without being directed: when you identify a gap in a pipeline, a missing alert, or an undocumented process, you raise it and propose a fix rather than waiting for someone to assign it.
  • You connect knowledge across domains — security principles, infrastructure thinking, and scripting fluency work together in how you approach a problem, not in separate silos.
  • You invest in your own growth as a daily practice: you read documentation to answer your own questions first, test in sandboxes before asking, and bring what you learn back into the work.
  • You communicate with precision and awareness of downstream impact — in runbooks, incident notes, and async channels where clarity is not optional.

Skills & Competencies

  • Domain Expert — Builds repeatable, documented processes for security and platform tasks; doesn't leave a task "done" if the next person couldn't reproduce it.
  • AI Operator — Monitors the quality of configurations, scripts, and pipelines under their ownership; catches drift early rather than waiting for an alert to fire.
  • Platform Guardian — Treats guardrails and audit trails as part of the deliverable, not an afterthought; security checks go into the pipeline before deployment.
  • Linux command line proficiency: SSH, filesystem, basic networking commands.
  • Containerization: Docker (build, run, optimize images; docker-compose is a plus).
  • Basic scripting in at least one language: Python, Golang, or TypeScript/JavaScript (Bash is a plus).
  • Basic understanding of at least one cloud platform: AWS, GCP, or Azure.
  • Familiarity with Kubernetes (pods, deployments, services), CI/CD tools (GitHub Actions, GitLab CI), and Git workflows is a plus; Terraform or SAST/DAST tool experience is an advantage.
  • Strong English communication skills (spoken and written — professional fluency required).
  • High adaptability and comfort operating in fast-paced, ambiguous environments.

What We Offer

Join our vibrant team and enjoy:

  • Opportunity to work and learn from one of the best and brightest technology teams in Vietnam
  • Be part of a winning team with exponential growth regionally, experience recruiting world-class talents
  • Competitive compensation package, including 13th-month salary and performance bonuses
  • Comprehensive health care coverage for you and your dependents
  • Generous leave policies, including annual leave, sick leave, and flexible work hours
  • Convenient central district 1 office location, next to a future metro station
  • On-site lunch with multiple options, including vegetarian
  • Grab for work allowance and fully equipped workstations
  • Fun and engaging team-building activities, sponsored sports clubs, and happy hour every Thursday
  • Unlimited free coffee, tea, snacks, and fruit to keep you energized
  • An opportunity to make a social impact by helping to democratize credit access in emerging markets

At Trusting Social, we live by ownership, integrity, and agility in execution. We believe in doing what's right, what's best, and what's innovative. If you're smart, driven, and want to make a difference in the world with the most advanced and fascinating technology, come join our team. We offer the runway to truly make an impact.

Learn more about us:
https://trustingsocial.com
https://www.youtube.com/watch?v=inAEDGvOcL8&t=29s