Amanotes

Site Reliability Engineer (GCP Experience)

Amanotes · Ho Chi Minh City, Vietnam

Technology, Information and Media · 51-200 employees

Yesterday
Senior (5-10 yrs) Full-time Vietnam
Log in to apply, save this posting, or score it against your profile with AI.

About the role

You will design and implement security guardrails, tools, and processes to improve infrastructure resilience and operational reliability. Additionally, you will identify and remediate security vulnerabilities across cloud environments, CI/CD pipelines, and containerized platforms.

What they look for

GCP AWS Kubernetes CI/CD Infrastructure as code Python Bash Security automation IAM GKE Vertex AI Datadog Honeycomb Zero-trust security Container security Vulnerability management

Requirements

The role requires hands-on experience with GCP security, Kubernetes, and infrastructure-as-code within an SRE or security engineering context. Proficiency in Python or Bash scripting and experience with AI/LLM governance and security tooling are also essential.

Benefits

Competitive salary 13th-month salary Year-end bonus Flexible working time Personal learning and well-being budget Team-building budget Lunch and parking allowance Internal training and sharing International conferences E-learning access Music events Employee assistance program Paid annual leave Paid sick leave Work from home days

Full description

\n

About the Role We are looking for a hands-on Cloud Security Engineer to strengthen the security, resilience, and operational reliability of our infrastructure, CI/CD pipelines, cloud environments, and internal platforms.

This role goes beyond day-to-day security operations. You will help design and implement practical guardrails, tools, and processes that reduce vulnerabilities, prevent key leakage, improve security hygiene, and support broader governance and compliance goals across the organization.

In addition to owning core security responsibilities, this role should be broad enough in systems and operations to support cross-team collaboration and share workload when needed across cloud infrastructure, CI/CD, platform reliability, and other high-priority TechOps initiatives.

What you will do

• Identify, classify, track, and help resolve security findings across cloud environments, clusters, container images, endpoints, CI/CD pipelines, and related systems, focusing on high and critical risks.

• Design, implement, and continuously improve security controls in CI/CD pipelines, including secret detection, CVE scanning, and policy-based gates, while standardizing rollout patterns across engineering teams.

• Improve security across AWS and GCP environments, Kubernetes clusters, and registries by deploying scanning, sensing, and guardrail solutions to reduce attack surface at the runtime and infrastructure layers.

• Propose and implement controls such as key rotation, access policies, RBAC, and fit-for-purpose authentication to remediate risks related to credential leakage, IAM misconfigurations, and excessive permissions.

• Conduct periodic assessments, participate in incident handling, and build documentation or dashboards that improve security visibility and cross-team collaboration with TechOps, SRE, and stakeholders.

Qualifications

• GCP Security & Operations: Proven hands-on experience securing and managing GCP environments, including IAM, Service Accounts, GKE, Security Command Center, and Artifact Registry.

• DevSecOps & Infrastructure: Strong background in SRE or Infrastructure Security, with expertise in CI/CD (GitLab, ArgoCD), Kubernetes, container security, and infrastructure-as-code.

• AI/LLM Integration & Governance:

• Experience implementing security controls for AI platforms (Vertex AI, Gemini), model-access governance, and securing LLM-based application workflows.

• Experience with AI security testing, prompt injection assessment, LLM red-teaming, and governance controls for GenAI platforms in production environments.

• Security Tooling & Remediation: Proficiency in automated scanning (CVE, secrets, images) and a track record of driving complex vulnerability remediation plans in production environments.

• Automation & Observability: Skilled in Python or Bash scripting and leveraging observability stacks (Datadog, Honeycomb) to build proactive security monitoring and reporting.

• Core Fundamentals: Deep understanding of Linux systems, networking, RBAC, and zero-trust security patterns in a multi-cloud context (AWS experience is a plus).

Why Join This Role

• Work on real-world security challenges across cloud, CI/CD, internal platforms, and AI workloads.

• Create visible impact on infrastructure reliability, security hygiene, and governance maturity

• Help TechOps build safer, more scalable, and more operationally effective platforms and controls

Our EnvironmentYou will work in and help secure a modern multi-cloud and platform environment, with a primary focus on AWS, GCP, Cloudflare, and BytePlus, along with the internal platforms, CI/CD systems, and observability tooling that support our engineering ecosystem.

Benefits At Amanotes, you will be enjoying the dynamic working environment with unique music culture many benefits as below:

  • Competitive salary upon experience
  • 13th-month salary
  • Year-end Bonus
  • Flexible working time
  • Personal learning and well-being budget
  • Team-building budget
  • Lunch and parking allowance
  • Various learning activities, including internal training & sharing, international conferences, and e-learning (Udemy, LinkedIn Learning...).
  • Engaging music events: Music Night, Amasing Night, Music schools…
  • Employee Assistance Program to support mental health & well-being.
  • Minimum 12 days of paid annual leave, plus 10 days of paid sick leave.
  • 12 days working from home per year.

\nConsent Notice for Personal Data Processing

- By applying to any position at Amanotes, you acknowledge and agree that your personal data will be collected and processed for recruitment-related purposes. Please read the “Consent Notice for Personal Data Processing” carefully before submitting your application.

- Thank you for your interest in joining Amanotes.

About Amanotes

We are Amanotes – a dynamic music game company that’s using cutting-edge technology to transform how people experience music.

Since 2014, we’ve led the global simple music game market with over 3.5 billion downloads across 190+ countries, including chart-topping titles like Magic Tiles 3, Tiles Hop, Dancing Road, and Duet Cats.

As the #1 Music Game Publisher worldwide and the #1 App Publisher from Southeast Asia by downloads, our ambition is clear: to create iconic, hybrid-casual music games that people love and play for years.

What truly sets Amanotes apart is not just what we build — it’s how we grow and who we grow with:

🎓 We invest in your growth through learning budgets, coaching, and stretch opportunities.

🎶 We embrace a creative and dynamic culture, where everyone can play, share, and thrive.

🧘 We believe in work-life harmony — your rhythm matters here.

🏆 We recognize and reward impact, with competitive benefits and clear development paths.

Come join our music-filled workplace, where innovation meets rhythm — and let’s create a magical music experience together.

Amanotes – Where Everyone Can Music.

How To Apply?

Click the button or contact us at talents@amanotes.com.