Principal Security Operation Engineer (Red Team)
Bybit
Established in 2018, Bybit is one of the world’s leading cryptocurrency exchanges and digital financial platforms, serving over 80 million users across more than 200 countries and regions. Powered by world-class technology and a user-first mindset, Bybit delivers a seamless ecosystem across trading, payments, wealth management, custody, institutional services, and Web3 — connecting users to the future of digital finance.
Our core values define how we build. We listen, care and improve to create products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we foster a high-performance and fast-moving environment where talent is empowered to drive real impact at the global scale. Supported by 24/7 multilingual customer service and a strong commitment to innovation, we are shaping the future of finance through technology, collaboration, and bold execution.
Today, Bybit is recognized as one of the most trusted and transparent platforms in the digital asset industry, continuing to expand its global presence while building the infrastructure for the next generation of financial services.
Job responsibilities Red-blue confrontation drill- Responsible for developing and executing penetration testing, red-blue confrontation, and practical attack and defense drills that simulate real attack scenarios, identifying potential security risks in enterprise networks, applications, cloud environments, work networks, and core business systems.
- Lead or participate in red-blue confrontation exercises to evaluate the defense team's ability in attack detection, alarm analysis, traceability analysis, emergency response, and recovery.
- Based on the real attack chain design exercise scenario, covering extranet breakthrough, web vulnerability exploitation, phishing entrance, privilege escalation, lateral movement, Data Discovery, privilege maintenance, and defense bypass stages.
- Combining the attack review results, promote the continuous optimization of security detection rules, response processes, asset governance, and security base lines.
- Identify enterprise network exposure, internet assets, cloud assets, APIs, supply chain components, and third-party access risks, evaluate attack paths, and provide mitigation recommendations.
- Monitor and collect threat intelligence, track vulnerability exploitation trends, APT attack methods, red team toolchain changes, and apply them to enterprise attack and defense exercises.
- Combining business scenarios to model attack paths and discover feasible attack chains from external exposure surfaces to core assets.
- Tracking AI-related security risks, including security issues in large-scale model applications, RAG systems, Agent systems, plug-in/tool calls, MCP services, AI code generation, and automated workflows.
- Responsible for the security evaluation of AI applications, intelligent agent systems, RAG Knowledge Base, AI Agent toolchain and model services within the enterprise.
- Research and verify large-scale model-related attack techniques, including Prompt Injection, Jailbreak, Indirect Prompt Injection, data leakage, unauthorized tool invocation, security risks caused by model illusions, RAG poisoning, vector library pollution, sensitive information leakage, etc.
- Design AI red team test cases and evaluation framework, and conduct security verification on model input and output, context isolation, permission control, tool call chain, and data access boundary.
- Participate in the construction of AI security protection plan, including prompt word security policy, content security detection, tool call permission constraints, sensitive data desensitization, audit tracking, Agent sandbox isolation and security evaluation benchmark construction.
- Explore the application of AI in red team automation, vulnerability analysis, attack path planning, PoC verification, and report generation, and promote the platformization, automation, and intelligence of attack and defense capabilities.
- Develop and optimize Red Team-specific tools and scripts for vulnerability mining, information collection, privilege escalation, lateral movement, credential analysis, traffic disguise, defense bypass, and automated report generation.
- Study and validate new attack techniques, and simulate real threats in combination with enterprise business scenarios.
- Build or participate in the construction of automated security evaluation platform, integrated vulnerability scanning, audio fingerprint recognition, asset mapping, PoC verification, attack path analysis, AI Agent arrangement and other capabilities.
- Combining LLM/Agent technology to explore automated penetration testing, intelligent vulnerability verification, code security auditing, and red team task scheduling.
- Conduct security evaluations on critical business systems, internal networks, cloud environments, work end points, API services, and AI applications, and output detailed technical reports, attack paths, impact analysis, and repair recommendations.
- Output AI security evaluation reports for AI applications, including attack examples, risk levels, exploitable paths, data leakage risks, permission boundary issues, and governance recommendations.
- Assist in improving enterprise security protection mechanisms, promote optimization of WAF, EDR, SIEM, NDR, HIDS, zero trust, identity permissions, and log auditing capabilities.
- Transform attack and defense discovery into security detection rules, base line specifications, develop security requirements, and continuous governance mechanisms.
- Collaborate with the blue team, security operation, infrastructure, R & D, algorithm, data, and business teams to complete attack review, vulnerability repair, detection rule optimization, and security capability building.
- Provide security support to other departments of the enterprise, including emergency response drills, development security consulting, AI application pre-launch security review, and security training.
- Participate in the security design review of AI applications and security products, and promote the advance of security capabilities in R & D, testing, and Pushonline.
- Proficient in basic knowledge of cyber security, including TCP/IP protocol, network architecture, identity authentication, access control, principles and configurations of common security devices.
- Proficient in common attack techniques and red team toolchains, such as Sliver, Cobalt Strike, NPS, Burp Suite, Metasploit, Nmap, Masscan, Frida, Impacket, etc.
- Familiar with mainstream operating systems Windows, Linux, macOS security mechanism, log system, permission model and common use.
- Familiar with common web frameworks, API architectures, microservice structures, containers, and security risks in Kubernetes environments.
- Proficient in penetration testing and red team processes, including information collection, vulnerability scanning, vulnerability exploitation, intranet penetration, privilege escalation, lateral movement, privilege maintenance, Data Discovery, and trace cleaning.
- Familiar with the working principles and adversarial methods of enterprise-level security products, including WAF, EDR, SIEM, NDR, HIDS, zero-trust gateway, bastion host, and identity authentication system.
- Possess independent vulnerability analysis and PoC writing capabilities, able to reproduce, verify, and assess the impact of public vulnerabilities and 0day/1day risks.
- Proficient in one or more programming/scripting languages, such as Python, Go, Bash, PowerShell, JavaScript, etc., with experience in tool development and automation platform construction.
- Familiar with the basic architecture of large-scale model applications, familiar with technical forms such as Prompt, RAG, Embedding, vector databases, Agent, Function Calling, MCP, and plugin systems.
- Understand or practice AI security testing methods, including Prompt Injection, Jailbreak, RAG data poisoning, sensitive information leakage, unauthorized tool invocation, model output security, Agent permission escape, etc.
- Able to design security test cases for AI applications, evaluate model input/output, context isolation, data boundaries, permission control, and tool invocation chain risks.
- Experience in using AI to assist security work, including vulnerability analysis, code auditing, intelligence analysis, attack path planning, report generation, or automated testing.
- Familiar with AI application security governance ideas, including model call auditing, prompt word security, sensitive data protection, content security detection, permission minimization, and sandbox isolation.
- More than 5 years of experience in red team, penetration testing, security research, or offensive and defensive exercises.
- Candidates with experience in large-scale enterprise attack and defense drills, red-blue confrontation, HW/major support, cloud attack and defense, or intranet penetration are preferred.
- Candidates with experience in AI security, large-scale model security, intelligent agent security, automated penetration testing platform or security tool platform construction are preferred.
- Familiar with enterprise security construction system, able to promote defense capability, detection capability, and governance process optimization from an attack perspective.
- Priority will be given to those who hold security-related certifications such as ♀ P, OSCE, CISSP, CISP, CEH, CISSP, CCSP, etc.
- Possess strong document writing and expression abilities, able to output high-quality technical reports, review documents, attack chain analysis, and security construction plans.
- Possess good problem analysis ability, learning ability, teamwork ability, and stress resistance.
- Be sensitive to new technologies, new Attack Surfaces, and new tools, and be able to proactively research and share internally.
- Familiar with Cloud Computing Platform security and cloud attack and defense technologies, such as AWS, Azure, GCP, Tencent Cloud, Alibaba Cloud, etc.
- Familiar with Kubernetes, containers, Service Mesh, CI/CD, DevSecOps and supply chain security.
- Possess experience in zero trust, secure operation, threat hunting, Attack Surface management, and vulnerability management platform construction.
- Familiar with MCP Server, AI Agent framework, RAG system, vector database, LLM API gateway, model security evaluation framework.
- Experience in Automated Red Team, AI Penetration Testing, Intelligent Vulnerability Verification, Agent Orchestration, Security Knowledge Base or Security RAG System Construction.
- Experience in vulnerability submission, CVE, technical articles, open source projects, topic sharing, or tool release in the security community.
- Familiar with security frameworks such as MITRE ATT & CK, OWASP Top 10, OWASP LLM Top 10, NIST AI RMF, etc.
- Study Growth Fund: We support your professional development and continuous learning.
- Internal Events: Participate in regular team-building activities, workshops, and events designed to promote collaboration and innovation.
- Global Collaboration: Be part of a diverse, international team, working alongside colleagues from around the world.
- Career Advancement: Access opportunities for growth and advancement within a rapidly expanding global company.
- Internal Mobility: Grow with us- Your long-term development is important to us. We offer internal job opportunities to help build your career path.
$148.5k - $223.9k
...and you are the future of Salesforce.We are looking for a Senior Offensive Security Engineer (Red Team) with a strong, hands-on attacker mindset to execute advanced offensive security operations across our products, platforms, and enterprise environment. This role is highly...SuggestedFull timeRemote work- ...skilled and driven Cybersecurity Red Team-Penetration Tester to join our offensive security team. In this role, you will... ...Execute comprehensive red team operations and objective-based testing to... ..., Incident Response, Detection Engineering and development groups to provide...SuggestedWork at officeWork from homeFlexible hours3 days per week
$165k - $195k
...Cyber is seeking a mid-to-senior Red Team Associate Principal Consultant to join our offensive security practice. You will plan and... ...~Design and conduct social engineering campaigns including phishing, vishing, and smishing operations ~Conduct adversary simulation...PrincipalContract workTemporary work- ...site by directly applying to the posted job. What You'll Do Execute comprehensive Red Team simulations across network/application penetration testing, cloud security, social engineering, physical security, mobile testing, and OSINT within defined rules of engagement. Develop...PrincipalRemote work2 days per week
- ...You'll Do:The Adversarial Red Team Lead Associate Principal provides professional... ...projects, strengthening OCC's security posture by independently... ..., physical, and social engineering domains, while coordinating... ...technologies; prefer operational experience as an administrator...PrincipalFull timeWork at officeRemote work2 days per week
$40 per hour
...cybersecurity professionals to join our team to help train AI models. In this... ..., you will evaluate AI-generated security content, solve technical... ...cybersecurity (e.g., penetration testing, red teaming, incident response, detection engineering, DFIR, malware analysis, threat...Hourly payFull timePart timeRemote work- ...Cybersecurity Senior Advisor - Red Team Lead at Southern... ...:Adversary Emulation Operations: Plan, scope, and... ...Hunting, Detection Engineering, and SOC teams to validate... ...evasion of modern security controls (e.g., EDR/... ...senior Red Team leader or principal operator within...Remote workRelocation
- ...goal of enabling human life on Mars.SECURITY ENGINEER (BLUE TEAM) SpaceX is targeted by sophisticated... ...Security Engineer to join the security operations Blue Team to build the capabilities needed... ...(SIEM) systems.Knowledge of common Red Team and Adversarial attack trends...Permanent employmentTemporary workWork at officeRemote workMonday to FridayWeekend work
$107.5k - $204.5k
...government issued security clearance is required... ..., world-class operations and investments in... ...experience and renowned engineering expertise to meet... ...a well-qualified Principal System Security... ...Engineering (SSE) team in developing solutions... ...UNIX, MS Windows, Red Hat Enterprise...PrincipalContract workTemporary workWork experience placementWork at officeRemote workRelocation packageFlexible hours$125.4k - $181.42k
...communities we serve.The Job:We are seeking a visionary Principal AI Security Engineer to serve as the primary architect and guardian of our Artificial... ...Modeling: Conduct AI-specific threat modeling and red-teaming exercises to identify vulnerabilities in RAG (Retrieval-...PrincipalFull timeFor contractorsWork at officeLocal areaRemote work- Who are we?Cohere is the leading security-first enterprise AI company. We build cutting... ...for our customers. Cohere is a team of researchers, engineers, designers, and more, who are all... ...Paris. Join us!As a Senior Security Operations Engineer you will:Serve as trusted advisor...Full timeWork at officeLocal areaRemote workHome officeFlexible hours
$192k - $240k
..., Brex enables founders and finance teams to accelerate operations, gain real-time visibility, and control... ...you need to grow your career.Engineering at BrexEngineering at Brex is about... ...intention. Our teams span Software, Data, Security, and IT, and operate with high...Work at officeRemote workWork from home- ...matters at a company where you matter.Your Impact As a Senior Security Operations Engineer II, you will play a key role in building secure, reliable, and developer-friendly infrastructure that enables teams to move quickly without compromising security. You will solve...Work at officeRemote work
- Principal Cloud Security Operations Engineer (Scripting, AWS, DevOps, CISM, CCSA, CISSP, CCIE Security, CEH) in San Francisco, CA AWS, CEH, CISA, CISSP, DevOps... ...Engineer as a member of the Development Operations team will provide support and enhancements to cloud security...PrincipalPermanent employmentFull timeWork experience placementRemote workRelocation
$145k - $175k
Job DescriptionWe are seeking an experienced Security Operations Engineer to help advance the next generation of security capabilities across our... ...Engineering, Application Development, Risk Management, and Audit teams to strengthen the organization’s security posture across...Temporary workWork at officeRemote work$319k
...The blocks that form our foundational teams — People, Finance, Counsel, Hardware, Information Security, Platform Infrastructure Engineering, and more — provide support and guidance... ...Bring yours to Block. THE ROLE As a Principal Security Engineer focused on Software...PrincipalFull timeLocal areaRemote workFlexible hours- ...globe. We develop and publish products principally through Rockstar Games, 2K, and Zynga... ...and efficiency, and individual and team development opportunities. Our industry... ....THE CHALLENGEWe are looking for a Security Operations Engineer to support, maintain, and contribute...Casual workFlexible hours
$40 per hour
A cybersecurity solutions provider is seeking experienced cybersecurity professionals to join their remote team. You will evaluate AI-generated security content, solve technical problems related to cybersecurity, and contribute to the development of reliable AI security...Hourly payRemote work$40 per hour
A cybersecurity innovation firm is looking for experienced professionals to join their remote team. In this role, you will evaluate AI-generated cybersecurity content, design technical solutions to train AI systems, and provide valuable feedback for improvement. Candidates...Hourly payRemote work$40 per hour
A cybersecurity AI solutions company is seeking experienced cybersecurity professionals to join their remote team. You will evaluate AI-generated security content, design technical cybersecurity problems, and provide feedback to enhance AI systems. Ideal candidates should...Hourly payRemote work$160.3k - $240.5k
...recherche d’un(e) développeur(se) principal(e) en sécurité, à l’aise dans un... ...$ CADThe OpportunityOur SecOps team is seeking a senior, hands-on security engineer to serve as the team’s technical... ...ForExperience in Security Operations, Incident Response, Detection Engineering...PrincipalFull timeWork at officeRemote workWorldwide- ...us pave the way. Our team is not intimidated by... ...analyzing our organization's security infrastructure,... ...teams-including Cloud Engineering, Network Security, IAM... ...maturation of the SOC's operational processes. Participate... ...Advisers LLC. Cetera's principal office is located at 6...Full timeWork at officeRemote workFlexible hours
- About this role:Wells Fargo is seeking a Principal Vulnerability & Patch Management Security Engineer to provide enterprise leadership for... ...DevOps, and Application Development teams to eliminate technical roadblocks, improve operational efficiency, and deliver scalable...PrincipalFull timeWork experience placementWork at officeRemote work2 days per week3 days per week
$40 per hour
...experienced cybersecurity professionals to evaluate AI-generated security content and solve technical problems. This fully remote role... ...have 2+ years of relevant experience and coding skills. Join our team to contribute to the future of AI in cybersecurity. #J-18808-Ljbffr...Remote jobHourly payFlexible hours$142.8k - $274.8k
...combines technical capabilities, cross-team collaboration, with business insight... ...on-line services. This role is for a Principal Security Engineer with a background in security... ...for embedded devices running Real-Time Operating Systems (RTOS), utilizing OS primitives...PrincipalOngoing contractWork at officeLocal areaWorldwide3 days per week$85k - $160k
...company specializing in real-world offensive security and adversary simulation. We are hiring a Cyber Security Specialist – Red Team with proven, repeated real-world... ...theory-heavy profiles. We are looking for operators who can consistently obtain stable OS-level...Remote jobImmediate start- ...As a remote Principal Enterprise Security Engineer, the individual will drive the long-term vision and design of enterprise security architecture, providing... ...expertise while collaborating closely with security teams and engineering partners. Key Responsibilities Define...PrincipalRemote work
$201.3k - $352.3k
...DescriptionIt all started when engineer Fred Luddy wrote code that... ...Job DescriptionThe ServiceNow Security Organization (SSO) The ServiceNow... ...Security Incident Response Team (PSIRT). PSIRT is ServiceNow'... ...a recognized expert who can operate independently and as part of...Work at officeImmediate startRemote workFlexible hours- ...for critical network security products at enterprise... ...security platforms are engineered, governed, automated,... ...compliance, and business teams. This is an... ...product delivery, reduce operational and cyber risk, and improve... ...QualificationsYou should demonstrate principal-level technical depth,...PrincipalFull timeWork at officeRemote work3 days per week
$114k - $171k
...history.Northrop Grumman’s Space Sector is seeking a Principal Operations Systems Engineer - Level 3 to join our team in Aurora, CO. This position is 100% onsite and... ...obtain and maintain a U.S. Government Top Secret security clearance, SCI access, and complete a...PrincipalFull timeRemote workRelocation packageShift workNight shiftRotating shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Security Operation Engineer (Red Team). Be the first to apply!
- chief engineer Remote
- director sales engineering Remote
- engineering director Remote
- project engineer assistant project manager Remote
- principal network engineer Remote
- senior director engineering Remote
- director of product engineering Remote
- director data engineering Remote
- senior chief engineer Remote
- hotel chief engineer Remote



