Join Amanotes as a Site Reliability Engineer with GCP expertise to enhance the security, resilience, and operational reliability of our cloud infrastructure and CI/CD pipelines, focusing on proactive security controls and AI platform governance.
We are looking for a hands-on Cloud Security Engineer to strengthen the security, resilience, and operational reliability of our infrastructure, CI/CD pipelines, cloud environments, and internal platforms.
This role goes beyond day-to-day security operations. You will help design and implement practical guardrails, tools, and processes that reduce vulnerabilities, prevent key leakage, improve security hygiene, and support broader governance and compliance goals across the organization.
In addition to owning core security responsibilities, this role should be broad enough in systems and operations to support cross-team collaboration and share workload when needed across cloud infrastructure, CI/CD, platform reliability, and other high-priority TechOps initiatives.
Identify, classify, track, and help resolve security findings across cloud environments, clusters, container images, endpoints, CI/CD pipelines, and related systems, focusing on high and critical risks.
Design, implement, and continuously improve security controls in CI/CD pipelines, including secret detection, CVE scanning, and policy-based gates, while standardizing rollout patterns across engineering teams.
Improve security across AWS and GCP environments, Kubernetes clusters, and registries by deploying scanning, sensing, and guardrail solutions to reduce attack surface at the runtime and infrastructure layers.
Propose and implement controls such as key rotation, access policies, RBAC, and fit-for-purpose authentication to remediate risks related to credential leakage, IAM misconfigurations, and excessive permissions.
Conduct periodic assessments, participate in incident handling, and build documentation or dashboards that improve security visibility and cross-team collaboration with TechOps, SRE, and stakeholders.
GCP Security & Operations: Proven hands-on experience securing and managing GCP environments, including IAM, Service Accounts, GKE, Security Command Center, and Artifact Registry.
DevSecOps & Infrastructure: Strong background in SRE or Infrastructure Security, with expertise in CI/CD (GitLab, ArgoCD), Kubernetes, container security, and infrastructure-as-code.
AI/LLM Integration & Governance:
Experience implementing security controls for AI platforms (Vertex AI, Gemini), model-access governance, and securing LLM-based application workflows.
Experience with AI security testing, prompt injection assessment, LLM red-teaming, and governance controls for GenAI platforms in production environments.
Security Tooling & Remediation: Proficiency in automated scanning (CVE, secrets, images) and a track record of driving complex vulnerability remediation plans in production environments.
Automation & Observability: Skilled in Python or Bash scripting and leveraging observability stacks (Datadog, Honeycomb) to build proactive security monitoring and reporting.
Core Fundamentals: Deep understanding of Linux systems, networking, RBAC, and zero-trust security patterns in a multi-cloud context (AWS experience is a plus).
Work on real-world security challenges across cloud, CI/CD, internal platforms, and AI workloads.
Create visible impact on infrastructure reliability, security hygiene, and governance maturity
Help TechOps build safer, more scalable, and more operationally effective platforms and controls
You will work in and help secure a modern multi-cloud and platform environment, with a primary focus on AWS, GCP, Cloudflare, and BytePlus, along with the internal platforms, CI/CD systems, and observability tooling that support our engineering ecosystem.
At Amanotes, you will be enjoying the dynamic working environment with unique music culture many benefits as below:
Consent Notice for Personal Data Processing
- By applying to any position at Amanotes, you acknowledge and agree that your personal data will be collected and processed for recruitment-related purposes. Please read the “Consent Notice for Personal Data Processing” carefully before submitting your application.
- Thank you for your interest in joining Amanotes.
About Amanotes
We are Amanotes – a dynamic music game company that’s using cutting-edge technology to transform how people experience music.
Since 2014, we’ve led the global simple music game market with over 3.5 billion downloads across 190+ countries, including chart-topping titles like Magic Tiles 3, Tiles Hop, Dancing Road, and Duet Cats.
As the #1 Music Game Publisher worldwide and the #1 App Publisher from Southeast Asia by downloads, our ambition is clear: to create iconic, hybrid-casual music games that people love and play for years.
What truly sets Amanotes apart is not just what we build — it’s how we grow and who we grow with:
🎓 We invest in your growth through learning budgets, coaching, and stretch opportunities.
🎶 We embrace a creative and dynamic culture, where everyone can play, share, and thrive.
🧘 We believe in work-life harmony — your rhythm matters here.
🏆 We recognize and reward impact, with competitive benefits and clear development paths.
Come join our music-filled workplace, where innovation meets rhythm — and let’s create a magical music experience together.
Amanotes – Where Everyone Can Music.
How To Apply?
Click the button or contact us at talents@amanotes.com.
- Identify, classify, track, and help resolve security findings across cloud environments, clusters, container images, endpoints, CI/CD pipelines, and related systems, focusing on high and critical risks. - Design, implement, and continuously improve security controls in CI/CD pipelines, including secret detection, CVE scanning, and policy-based gates, while standardizing rollout patterns across engineering teams. - Improve security across AWS and GCP environments, Kubernetes clusters, and registries by deploying scanning, sensing, and guardrail solutions to reduce attack surface at the runtime and infrastructure layers. - Propose and implement controls such as key rotation, access policies, RBAC, and fit-for-purpose authentication to remediate risks related to credential leakage, IAM misconfigurations, and excessive permissions. - Conduct periodic assessments, participate in incident handling, and build documentation or dashboards that improve security visibility and cross-team collaboration with TechOps, SRE, and stakeholders. - Proven hands-on experience securing and managing GCP environments, including IAM, Service Accounts, GKE, Security Command Center, and Artifact Registry. - Strong background in SRE or Infrastructure Security, with expertise in CI/CD (GitLab, ArgoCD), Kubernetes, container security, and infrastructure-as-code. - Experience implementing security controls for AI platforms (Vertex AI, Gemini), model-access governance, and securing LLM-based application workflows. - Experience with AI security testing, prompt injection assessment, LLM red-teaming, and governance controls for GenAI platforms in production environments. - Proficiency in automated scanning (CVE, secrets, images) and a track record of driving complex vulnerability remediation plans in production environments. - Skilled in Python or Bash scripting and leveraging observability stacks (Datadog, Honeycomb) to build proactive security monitoring and reporting. - Deep understanding of Linux systems, networking, RBAC, and zero-trust security patterns in a multi-cloud context (AWS experience is a plus).