Skip to main content

Senior API Security Engineer at Encora

Department: Malaysia Team

Location
Kuala Lumpur
Level
not_specified
Posted

Description

The role focuses on securing APIs by hunting business logic vulnerabilities, validating OAuth2, OIDC, and JWT implementations, automating API-gateway attacks, hardening Kong or Azure API Gateway, and designing authentication, authorization, SSO, MFA, and partner-integration security patterns. It requires Python scripting, REST and GraphQL security knowledge, OAuth 2.0 and OpenID Connect expertise, and experience with Postman, Burp Suite, and 42Crunch.

For job seekers

Ready to find a role that actually fits?

Upload your résumé, start a Job Search Thread, and let Metaintro rank real openings against your experience — then guide you from search to offer.

Match

Compare live roles against your current evidence.

Position

Turn proof projects into role-specific applications.

Improve

Use market feedback to keep the skill plan current.

Return to navigation