- Company: Get A Job.ai
- Location: Malaysia
- Salary: Pay not listed
Website Get A Job.ai
Represented by Get A Job.ai
About This Opportunity
Our talent team at Get A Job.ai is representing a confidential cryptocurrency platform in their search for a Principal Security Operation Engineer based in Malaysia. This role sits at the intersection of offensive security, AI security, and enterprise defense optimization—ideal for seasoned red team practitioners ready to shape security architecture at scale.
Responsibilities
You will lead security validation efforts across multiple domains:
- Red-Blue Confrontation: Design and execute penetration tests, simulate real attack scenarios across networks, applications, cloud environments, and core business systems; evaluate defense capabilities including detection, alarm analysis, and emergency response
- Attack Surface Analysis: Identify exposure across internet assets, cloud infrastructure, APIs, and supply chain components; monitor threat intelligence and track APT methods, vulnerability trends, and red team toolchains
- AI Security: Conduct security evaluations of AI applications, RAG knowledge bases, Agent systems, and model services; research large-scale model attack techniques including Prompt Injection, Jailbreak, RAG poisoning, and unauthorized tool invocation
- Tool Development: Build Red Team-specific tools for vulnerability mining, privilege escalation, lateral movement, and defense bypass; contribute to automated security evaluation platforms integrating scanning, asset mapping, and PoC verification
- Security Reporting: Deliver detailed technical reports covering attack paths, impact analysis, and remediation recommendations; transform attack findings into detection rules, baseline specifications, and governance mechanisms
- Cross-Functional Collaboration: Work with blue team, infrastructure, development, and business units on attack reviews, vulnerability remediation, and security capability building
What We're Looking For
Core Requirements:
- 5+ years in red team, penetration testing, security research, or offensive/defensive exercises
- Deep expertise in TCP/IP, network architecture, identity authentication, and common security device configurations
- Mastery of red team toolchains: Sliver, Cobalt Strike, Burp Suite, Metasploit, Nmap, Impacket, and similar
- Strong understanding of Windows, Linux, macOS security mechanisms, log systems, and permission models
- Proficiency in one or more languages: Python, Go, Bash, PowerShell, JavaScript for tool development and automation
Offensive Capabilities:
- Full penetration testing lifecycle experience: reconnaissance, exploitation, privilege escalation, lateral movement, persistence, data discovery
- Familiarity with enterprise security product evasion: WAF, EDR, SIEM, NDR, zero-trust gateways, bastion hosts
- Independent vulnerability analysis and PoC creation; ability to assess 0day/1day risks
AI Security Skills:
- Understanding of large-scale model architectures: Prompt, RAG, Embedding, vector databases, Agent, Function Calling, MCP, plugin systems
- Practical knowledge of AI attack methods: Prompt Injection, Jailbreak, RAG poisoning, sensitive data leakage, unauthorized tool calls, Agent permission escape
- Ability to design test cases evaluating model I/O, context isolation, data boundaries, and permission controls
- Experience using AI for security tasks: vulnerability analysis, code auditing, attack path planning, report generation
Preferred Background:
- Experience in large-scale attack/defense drills, cloud penetration, or internal network operations
- AI security platform development or automated penetration testing infrastructure
- Security certifications: OSCP, OSCE, CISSP, CISP, CEH, CCSP
- Contributions to vulnerability research, CVE submissions, open-source projects, or technical publications
- Familiarity with MITRE ATT&CK, OWASP Top 10, OWASP LLM Top 10, NIST AI RMF
Bonus Experience:
- Cloud platform security (AWS, Azure, GCP, regional cloud providers)
- Kubernetes, containers, Service Mesh, CI/CD, DevSecOps, supply chain security
- Zero trust architecture, threat hunting, Attack Surface management
- MCP Server, AI Agent frameworks, vector databases, LLM API gateways, model evaluation frameworks
How We Work With You
When you apply through Get A Job.ai, a recruiter from our team will review your profile and conduct an initial screening. If there's a strong match, we'll submit your candidacy to our client for consideration and guide you through their interview process. Please do not contact the client directly—all communication and coordination will flow through Get A Job.ai to ensure the best candidate experience.
Pay
Compensation details will be discussed during the screening process based on experience and qualifications.
Equal Opportunity: Get A Job.ai is committed to inclusive hiring practices. We welcome candidates from all backgrounds and work to ensure fair evaluation throughout the recruiting process.
Apply with Get A Job.ai
A recruiter will review your profile and submit you to the client. Do not contact the client directly.
Apply through Get A Job.ai. A recruiter will review your profile and submit you. Do not contact the client directly.
Apply through Get A Job.ai. A recruiter will review your profile and submit you.
Explore Get A Job.ai online
Working in Malaysia
Malaysia is a country in Southeast Asia. A federal constitutional monarchy, it consists of 13 states and three federal territories, separated by the South China Sea into two regions: Peninsular Malaysia on Mainland Southeast Asia and East Malaysia on the island of Borneo. Peninsular Malaysia shares land and maritime borders with Thailand, as well as maritime borders with Singapore, Vietnam, and Indonesia; East Malaysia shares land borders with Brunei and Indonesia, and maritime borders with the Philippines and Vietnam. Kuala Lumpur is the country's national capital, largest city, and the seat
🇲🇾 Relocation safety for Malaysia: Exercise Normal Caution — via Warnely, CC BY 4.0
National unemployment rate in Malaysia: 3.8% — via World Bank
GDP per capita in Malaysia: $13,125 — via World Bank
Consumer price inflation in Malaysia: 1.4% (annual) — via World Bank
Real GDP growth in Malaysia: 5.2% (annual) — via World Bank
Job details above are provided by the employer/source. The sections on this page are compiled from public data sources with AI assistance.
Accommodations: if you need a workplace accommodation to apply for or perform this job, see ADA.gov or EEOC.gov for guidance on your rights and how to request one.
Listing facts
- Role Principal Security Operation Engineer
- Employer Get A Job.ai
- Location Malaysia
- Type Full Time
- Pay (from listing) Pay not listed
- Posted September 5, 2026
- Apply by October 5, 2026
- Country Malaysia
- Overview Full job description on this page (631 words)
Facts above come from this job record on Get A Job.AI — not copied from third-party review sites.
Limited public data for this employer
We only show facts we can ground in public sources (Wikidata, O*NET, news/discussion links, or this listing). We do not invent Glassdoor-style ratings, salaries, or testimonials when data is thin. Use the listing facts, occupation context, and related openings below while we continue researching.
Explore related openings
Keep exploring on Get A Job.ai
Not quite the right fit? Your next opportunity is a click away.
- Browse all jobs
- More jobs by category
- Remote jobs you can do from anywhere
- Research typical pay for this role
- Set a job alert so new matches reach you first
- Upload your resume to apply faster
Hiring instead? Post a job and reach candidates searching right now.
