Back to jobs
New

Application Security Engineer

Singapore

Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and application behavior. With a combination of industry-leading tools, services, and expertise, only Black Duck helps organizations maximize security and quality in DevSecOps and throughout the software development life cycle.

 

Why this opportunity 

Black Duck helps organizations build secure, high-quality software by minimizing risk while maximizing speed and productivity. Our solutions span static analysis, software composition analysis, and dynamic testing, supported by services expertise that helps customers turn technology into mature DevSecOps practices. 

  • Work with customers that care deeply about secure software delivery and software quality.
  • Act as both a technical specialist and a trusted advisor, not just a product installer.
  • Collaborate with a global Services organization while helping grow our customer impact across China and Asia. 

What you will do 

You will lead implementation and adoption activities for Black Duck solutions, helping customers integrate application security into their development lifecycle and realize practical outcomes from their investment. 

  • Design customer-ready solutions: Understand customer goals, technical environments, and success criteria; then design practical implementation approaches for application security, quality, and compliance needs.
  • Deliver implementations end to end: Plan, configure, validate, and complete implementation work while keeping customers and internal stakeholders aligned on progress, risks, and next steps.
  • Integrate into DevOps workflows: Support integration of Black Duck solutions into SDLC, CI/CD, and DevOps environments so security becomes part of daily engineering practice.
  • Advise on secure development: Share best practices for vulnerability management, secure development processes, testing workflows, and operational efficiency.
  • Enable adoption and customer value: Help customers move from initial deployment to active usage by explaining capabilities, guiding decisions, and supporting adoption planning.
  • Partner with account teams: Provide delivery insight to internal stakeholders and identify opportunities where customers could gain additional value from Black Duck solutions. 

What you will bring 

We are looking for someone who enjoys the mix of technical problem-solving, customer interaction, and delivery ownership. You do not need to know every Black Duck product on day one; curiosity, strong fundamentals, and customer focus matter. 

  • Understanding of application security concepts, software vulnerabilities, or secure development practices.
  • Hands-on software development experience in Java, C/C++, C#, or a comparable language.
  • Scripting ability with Python, Bash, PowerShell, Perl, or similar automation tools.
  • Familiarity with CI/CD, DevOps tooling, and modern software delivery workflows.
  • Hands-on experience with enterprise IT infrastructure, cloud platforms such as AWS, Azure, or GCP, container technologies including Docker, Kubernetes, and modern platform architectures.
  • Strong analytical skills and the ability to troubleshoot technical issues methodically.
  • Clear communication style with both technical teams and business stakeholders.
  • Experience working directly with customers, internal partners, or cross-functional delivery teams.
  • Fluent English and Mandarin language skills are mandatory for this role, given the customer focus across China and Asia. 

Helpful experience, but not mandatory 

  • Technical consulting, professional services, customer success engineering, or implementation delivery experience.
  • Security certifications such as CISSP, CEH, CSSLP, or equivalent practical experience.
  • Experience with SaaS and on-premises deployments.
  • Knowledge of security testing, network protocols, vulnerability management, or software supply chain security.
  • A track record of building trusted customer relationships and guiding customers through technical change.
  • Cantonese language capability would be a significant advantage. 

What success looks like 

You will be successful when… 

Customers will see value when… 

You can translate customer requirements into a practical implementation plan. 

Implementations are understood, adopted, and connected to customer security goals. 

You can explain technical trade-offs clearly and confidently. 

Engineering and security teams feel enabled rather than simply handed a tool. 

You can manage delivery details while maintaining a trusted advisor relationship. 

Internal stakeholders have visibility, and customers know what is happening next. 

Practical details 

  • Location: Singapore.
  • Travel: up to approximately 40%, depending on customer and business needs.
  • Education: bachelor’s degree in Computer Science, Engineering, or a related field; master’s degree or equivalent experience is a plus.
  • Global collaboration: experience working with distributed teams is valued. 

 

Black Duck is an equal opportunity employer. We consider all applicants for employment without regard to race, color, national origin, religion, sex, gender identity or expression, age, disability, sexual orientation, veteran or military service status, or any other characteristic protected by applicable law. Black Duck complies with all applicable laws prohibiting employment discrimination in every jurisdiction where it operates and provides reasonable accommodations to individuals with disabilities in accordance with applicable law.

Apply for this job

*

indicates a required field

Phone
Resume/CV

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf