
Principal Security Operation Engineer
Posted Jul 27

Posted Jul 27
This is a fully remote position, open to applicants in Malaysia.
• Accountable for creating and implementing penetration testing, red-blue confrontation, and hands-on attack and defense simulations that replicate actual attack scenarios, while pinpointing potential security vulnerabilities in enterprise networks, applications, cloud environments, work networks, and essential business systems.
• Lead or engage in red-blue confrontation drills to assess the defense team's proficiency in attack detection, alarm analysis, traceability analysis, emergency response, and recovery.
• Design scenarios based on real attack chains, covering stages such as extranet breaches, web vulnerability exploitation, phishing entry points, privilege escalation, lateral movement, data discovery, privilege maintenance, and evasion of defenses.
• Utilize findings from attack reviews to drive the continuous enhancement of security detection rules, response processes, asset governance, and security baselines.
• Identify potential exposure in enterprise networks, internet assets, cloud assets, APIs, supply chain components, and third-party access risks, evaluate attack vectors, and offer mitigation strategies.
• Monitor and gather threat intelligence, observe trends in vulnerability exploitation, APT attack techniques, changes in red team toolchains, and apply these insights to enterprise attack and defense exercises.
• Perform security assessments on critical business systems, internal networks, cloud environments, work endpoints, API services, and AI applications, delivering comprehensive technical reports, outlining attack paths, impact analyses, and remediation suggestions.
• Over 5 years of experience in red team operations, penetration testing, security research, or conducting offensive and defensive exercises.
• Preference will be given to candidates with a background in large-scale enterprise attack and defense drills, red-blue confrontations, hardware support, cloud attack and defense, or intranet penetration.
• Candidates with experience in AI security, large-scale model security, intelligent agent security, automated penetration testing platforms, or the development of security tool platforms are preferred.
• Familiarity with enterprise security frameworks, with the ability to enhance defense capabilities, detection capabilities, and governance process optimization from an attack-focused perspective.
• Candidates holding security-related certifications such as OSCE, CISSP, CISM, CEH, CCSP, etc., will be prioritized.
• Strong skills in documentation and communication, capable of producing high-quality technical reports, review documents, attack chain analyses, and security development plans.
• Good problem analysis skills, eagerness to learn, teamwork capabilities, and resilience under stress are essential.
• Must be attentive to emerging technologies, new attack surfaces, and innovative tools, with the ability to proactively research and share insights internally.
• Study Growth Fund: We support your professional development and continuous learning.
• Internal Events: Engage in regular team-building activities, workshops, and events designed to foster collaboration and innovation.
• Global Collaboration: Join a diverse, international team, working alongside colleagues from around the globe.
• Career Advancement: Access opportunities for growth and progression within a rapidly expanding global organization.
• Internal Mobility: We value your long-term development. We provide internal job opportunities to help guide your career path.
GuidePoint Security
Gravie
Your Software Supplier
Dragonfli Group
Get handpicked remote jobs straight to your inbox weekly.