Logo

Web Security Engineer

OKX
Hong Kong
Full time
On site

Overview

Department

IT

Job type

Full time

Compensation

Salary not specified

Location

Hong Kong, East Asia

Company size

Mature [ 50+ employess ]

Resume Assistance

See how well your resume matches this job role with our AI-powered score. By uploading your resume, you agree to our Terms of Service

Ready to apply?

You're one step away - it takes less than a minute to upload your resume

Develop and optimize internal web security capabilities, including intrusion technique research and detection rule development. Verify and improve the reliability of existing security capabilities through red-team and blue-team exercises.

Requirements

  • Bachelor’s degree or above in information security, computer science, or related fields.
  • Solid foundation in security offensive and defensive knowledge, understanding common vulnerability principles and attack techniques, and familiarity with best practices and common defense solutions.
  • Strong experience in data analysis and strategy analysis; experience in risk strategy/data mining is a plus.
  • Good learning ability and communication skills.
  • Experience independently managing penetration testing, intrusion detection capability development and maintenance, traffic detection modeling, and security emergency response.
  • Experience in system risk control, technical risk modeling, and related work. Practical experience in threat modeling and risk control is a plus
  • Responsibilities

  • Responsible for the development and continuous optimization of internal web security capabilities, including intrusion technique research, intrusion behavior analysis, feature extraction, traffic detection modeling, and the development/validation/iteration of detection rules.
  • Responsible for verifying and continuously improving the reliability, coverage depth, and breadth of existing security capabilities through red-team and blue-team exercises.
  • Responsible for establishing and maintaining the company's internal risk control system, conducting risk analysis to identify risk patterns and features for business risk modeling, providing early warnings and solution planning, and driving product and business process optimization to reduce business risk incidents.
  • Participate in intrusion event emergency response, handling, and post-incident review.
  • Benefits

  • Competitive total compensation package
  • L&D programs and education subsidy for employees' growth and development
  • Various team building programs and company events
  • Wellness and meal allowance
  • Comprehensive healthcare schemes for employees and dependants
  • More that we love to tell you along the process!
  • © All rights reserved.