DBS Bank
Specialist, Application Security, VAPT, Technology and Operations
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
About DBS Bank
DBS Bank, established on July 16, 1968, by the Singapore government, initially focused on industrial financing to support Singapore's economic development. It has since evolved into a full-service commercial bank and is the largest bank in Southeast Asia by assets, with over 280 branches across the region. The bank was renamed DBS Bank Ltd in 2003 to reflect its broader role in the financial sector. DBS Bank offers a wide range of services, including commercial and corporate banking, consumer banking, investment and wealth management, and digital banking. It provides tailored financial solutions for businesses of all sizes, personal banking products for individuals, and private banking services for high net worth clients. Recognized for its digital innovation, DBS has received accolades such as Best Digital Bank in the World in 2016. The bank operates in 17 markets across Asia, with a strong presence in key economies like Singapore, Hong Kong, and China.
Security at DBS Bank
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
“The DBS Bank Application Security team's mission is to ensure the security of applications developed within the bank. They focus on developer enablement, contributing to training and education on secure coding practices, and view developers as the first line of defense. While their risk philosophy is not publicly available, their stated goals include exploring innovative Generative AI (GenAI) use cases to enhance application security outcomes, specifically integrating GenAI capabilities into existing application security tools like SAST, DAST/IAST for intelligent automation in security testing, vulnerability analysis, and secure coding guideline enforcement.”
Security Team
- The Application Security team at DBS Bank is managed by Nicolas Collery, Executive Director (Information Security Specialist), who aims to enable developers and application teams to publish secure software.
- Key public-facing leaders include Reuven Mautner, SVP, Application Security practice lead, who emphasizes developers as the first line of defense.
- The estimated team size is 2-5 based on public LinkedIn profiles as of.
- Active job postings as of include 'AVP/Sr. Assoc, Application Security Engineer' and 'Associate VP (Security Engineering)', with common skill patterns highlighting GenAI capabilities, SAST, DAST/IAST, Python-based automation, Secure SDLC practices, DevSecOps principles, NIST, and OWASP.
Key Initiatives
- DBS Bank runs a Security Champions Program, acknowledging 'DBS Silver AppSec Titans' for their commitment.
- Their 'Shift Left' approach involves implementing Python-based automation and GenAI solutions to enhance Secure SDLC practices and foster a security-aware development culture.
- The vulnerability management process includes intake through vulnerability analysis and root cause investigations, with remediation involving collaboration with development teams for timely and effective resolution.
- They provide advisory on application security tools and processes, including IAST and secure coding guidelines.
- Recent initiatives (within the last 6 months) include the launch of a new 'Mobile wallets' security feature within the DBS/POSB digibank app and training on DBS security tools at community events.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.