Loading...

Principal Security Operation Engineer

  • Company: Get A Job.ai
  • Location: Malaysia
  • Salary: Pay not listed

Website Get A Job.ai

Represented by Get A Job.ai

About This Opportunity

Our talent team at Get A Job.ai is representing a confidential cryptocurrency platform in their search for a Principal Security Operation Engineer based in Malaysia. This role sits at the intersection of offensive security, AI security, and enterprise defense optimization—ideal for seasoned red team practitioners ready to shape security architecture at scale.

Responsibilities

You will lead security validation efforts across multiple domains:

  • Red-Blue Confrontation: Design and execute penetration tests, simulate real attack scenarios across networks, applications, cloud environments, and core business systems; evaluate defense capabilities including detection, alarm analysis, and emergency response
  • Attack Surface Analysis: Identify exposure across internet assets, cloud infrastructure, APIs, and supply chain components; monitor threat intelligence and track APT methods, vulnerability trends, and red team toolchains
  • AI Security: Conduct security evaluations of AI applications, RAG knowledge bases, Agent systems, and model services; research large-scale model attack techniques including Prompt Injection, Jailbreak, RAG poisoning, and unauthorized tool invocation
  • Tool Development: Build Red Team-specific tools for vulnerability mining, privilege escalation, lateral movement, and defense bypass; contribute to automated security evaluation platforms integrating scanning, asset mapping, and PoC verification
  • Security Reporting: Deliver detailed technical reports covering attack paths, impact analysis, and remediation recommendations; transform attack findings into detection rules, baseline specifications, and governance mechanisms
  • Cross-Functional Collaboration: Work with blue team, infrastructure, development, and business units on attack reviews, vulnerability remediation, and security capability building

What We're Looking For

Core Requirements:

  • 5+ years in red team, penetration testing, security research, or offensive/defensive exercises
  • Deep expertise in TCP/IP, network architecture, identity authentication, and common security device configurations
  • Mastery of red team toolchains: Sliver, Cobalt Strike, Burp Suite, Metasploit, Nmap, Impacket, and similar
  • Strong understanding of Windows, Linux, macOS security mechanisms, log systems, and permission models
  • Proficiency in one or more languages: Python, Go, Bash, PowerShell, JavaScript for tool development and automation

Offensive Capabilities:

  • Full penetration testing lifecycle experience: reconnaissance, exploitation, privilege escalation, lateral movement, persistence, data discovery
  • Familiarity with enterprise security product evasion: WAF, EDR, SIEM, NDR, zero-trust gateways, bastion hosts
  • Independent vulnerability analysis and PoC creation; ability to assess 0day/1day risks

AI Security Skills:

  • Understanding of large-scale model architectures: Prompt, RAG, Embedding, vector databases, Agent, Function Calling, MCP, plugin systems
  • Practical knowledge of AI attack methods: Prompt Injection, Jailbreak, RAG poisoning, sensitive data leakage, unauthorized tool calls, Agent permission escape
  • Ability to design test cases evaluating model I/O, context isolation, data boundaries, and permission controls
  • Experience using AI for security tasks: vulnerability analysis, code auditing, attack path planning, report generation

Preferred Background:

  • Experience in large-scale attack/defense drills, cloud penetration, or internal network operations
  • AI security platform development or automated penetration testing infrastructure
  • Security certifications: OSCP, OSCE, CISSP, CISP, CEH, CCSP
  • Contributions to vulnerability research, CVE submissions, open-source projects, or technical publications
  • Familiarity with MITRE ATT&CK, OWASP Top 10, OWASP LLM Top 10, NIST AI RMF

Bonus Experience:

  • Cloud platform security (AWS, Azure, GCP, regional cloud providers)
  • Kubernetes, containers, Service Mesh, CI/CD, DevSecOps, supply chain security
  • Zero trust architecture, threat hunting, Attack Surface management
  • MCP Server, AI Agent frameworks, vector databases, LLM API gateways, model evaluation frameworks

How We Work With You

When you apply through Get A Job.ai, a recruiter from our team will review your profile and conduct an initial screening. If there's a strong match, we'll submit your candidacy to our client for consideration and guide you through their interview process. Please do not contact the client directly—all communication and coordination will flow through Get A Job.ai to ensure the best candidate experience.

Pay

Compensation details will be discussed during the screening process based on experience and qualifications.

Equal Opportunity: Get A Job.ai is committed to inclusive hiring practices. We welcome candidates from all backgrounds and work to ensure fair evaluation throughout the recruiting process.

Apply with Get A Job.ai

A recruiter will review your profile and submit you to the client. Do not contact the client directly.

More options

Apply with Get A Job.ai

Apply through Get A Job.ai. A recruiter will review your profile and submit you. Do not contact the client directly.

Apply through Get A Job.ai. A recruiter will review your profile and submit you.

Local insights for this role are preparing — this section updates automatically in a few seconds (or refresh).

Listing facts

  • Role Principal Security Operation Engineer
  • Employer Get A Job.ai
  • Location Malaysia
  • Type Full Time
  • Pay (from listing) Pay not listed
  • Posted September 5, 2026
  • Apply by October 5, 2026
  • Country Malaysia
  • Overview Full job description on this page (631 words)

Facts above come from this job record on Get A Job.AI — not copied from third-party review sites.

Limited public data for this employer

We only show facts we can ground in public sources (Wikidata, O*NET, news/discussion links, or this listing). We do not invent Glassdoor-style ratings, salaries, or testimonials when data is thin. Use the listing facts, occupation context, and related openings below while we continue researching.

Explore related openings

Keep exploring on Get A Job.ai

Not quite the right fit? Your next opportunity is a click away.

Hiring instead? Post a job and reach candidates searching right now.

Principal Security Operation Engineer Get A Job.ai · Malaysia