Principal Security Operation Engineer (Red Team)
Bybit
Established in 2018, Bybit is one of the world’s leading cryptocurrency exchanges and digital financial platforms, serving over 80 million users across more than 200 countries and regions. Powered by world-class technology and a user-first mindset, Bybit delivers a seamless ecosystem across trading, payments, wealth management, custody, institutional services, and Web3 — connecting users to the future of digital finance.
Our core values define how we build. We listen, care and improve to create products and experiences that put users first. Backed by a global team of ambitious builders, problem-solvers, and innovators, we foster a high-performance and fast-moving environment where talent is empowered to drive real impact at the global scale. Supported by 24/7 multilingual customer service and a strong commitment to innovation, we are shaping the future of finance through technology, collaboration, and bold execution.
Today, Bybit is recognized as one of the most trusted and transparent platforms in the digital asset industry, continuing to expand its global presence while building the infrastructure for the next generation of financial services.
Job responsibilities Red-blue confrontation drill- Responsible for developing and executing penetration testing, red-blue confrontation, and practical attack and defense drills that simulate real attack scenarios, identifying potential security risks in enterprise networks, applications, cloud environments, work networks, and core business systems.
- Lead or participate in red-blue confrontation exercises to evaluate the defense team's ability in attack detection, alarm analysis, traceability analysis, emergency response, and recovery.
- Based on the real attack chain design exercise scenario, covering extranet breakthrough, web vulnerability exploitation, phishing entrance, privilege escalation, lateral movement, Data Discovery, privilege maintenance, and defense bypass stages.
- Combining the attack review results, promote the continuous optimization of security detection rules, response processes, asset governance, and security base lines.
- Identify enterprise network exposure, internet assets, cloud assets, APIs, supply chain components, and third-party access risks, evaluate attack paths, and provide mitigation recommendations.
- Monitor and collect threat intelligence, track vulnerability exploitation trends, APT attack methods, red team toolchain changes, and apply them to enterprise attack and defense exercises.
- Combining business scenarios to model attack paths and discover feasible attack chains from external exposure surfaces to core assets.
- Tracking AI-related security risks, including security issues in large-scale model applications, RAG systems, Agent systems, plug-in/tool calls, MCP services, AI code generation, and automated workflows.
- Responsible for the security evaluation of AI applications, intelligent agent systems, RAG Knowledge Base, AI Agent toolchain and model services within the enterprise.
- Research and verify large-scale model-related attack techniques, including Prompt Injection, Jailbreak, Indirect Prompt Injection, data leakage, unauthorized tool invocation, security risks caused by model illusions, RAG poisoning, vector library pollution, sensitive information leakage, etc.
- Design AI red team test cases and evaluation framework, and conduct security verification on model input and output, context isolation, permission control, tool call chain, and data access boundary.
- Participate in the construction of AI security protection plan, including prompt word security policy, content security detection, tool call permission constraints, sensitive data desensitization, audit tracking, Agent sandbox isolation and security evaluation benchmark construction.
- Explore the application of AI in red team automation, vulnerability analysis, attack path planning, PoC verification, and report generation, and promote the platformization, automation, and intelligence of attack and defense capabilities.
- Develop and optimize Red Team-specific tools and scripts for vulnerability mining, information collection, privilege escalation, lateral movement, credential analysis, traffic disguise, defense bypass, and automated report generation.
- Study and validate new attack techniques, and simulate real threats in combination with enterprise business scenarios.
- Build or participate in the construction of automated security evaluation platform, integrated vulnerability scanning, audio fingerprint recognition, asset mapping, PoC verification, attack path analysis, AI Agent arrangement and other capabilities.
- Combining LLM/Agent technology to explore automated penetration testing, intelligent vulnerability verification, code security auditing, and red team task scheduling.
- Conduct security evaluations on critical business systems, internal networks, cloud environments, work end points, API services, and AI applications, and output detailed technical reports, attack paths, impact analysis, and repair recommendations.
- Output AI security evaluation reports for AI applications, including attack examples, risk levels, exploitable paths, data leakage risks, permission boundary issues, and governance recommendations.
- Assist in improving enterprise security protection mechanisms, promote optimization of WAF, EDR, SIEM, NDR, HIDS, zero trust, identity permissions, and log auditing capabilities.
- Transform attack and defense discovery into security detection rules, base line specifications, develop security requirements, and continuous governance mechanisms.
- Collaborate with the blue team, security operation, infrastructure, R & D, algorithm, data, and business teams to complete attack review, vulnerability repair, detection rule optimization, and security capability building.
- Provide security support to other departments of the enterprise, including emergency response drills, development security consulting, AI application pre-launch security review, and security training.
- Participate in the security design review of AI applications and security products, and promote the advance of security capabilities in R & D, testing, and Pushonline.
- Proficient in basic knowledge of cyber security, including TCP/IP protocol, network architecture, identity authentication, access control, principles and configurations of common security devices.
- Proficient in common attack techniques and red team toolchains, such as Sliver, Cobalt Strike, NPS, Burp Suite, Metasploit, Nmap, Masscan, Frida, Impacket, etc.
- Familiar with mainstream operating systems Windows, Linux, macOS security mechanism, log system, permission model and common use.
- Familiar with common web frameworks, API architectures, microservice structures, containers, and security risks in Kubernetes environments.
- Proficient in penetration testing and red team processes, including information collection, vulnerability scanning, vulnerability exploitation, intranet penetration, privilege escalation, lateral movement, privilege maintenance, Data Discovery, and trace cleaning.
- Familiar with the working principles and adversarial methods of enterprise-level security products, including WAF, EDR, SIEM, NDR, HIDS, zero-trust gateway, bastion host, and identity authentication system.
- Possess independent vulnerability analysis and PoC writing capabilities, able to reproduce, verify, and assess the impact of public vulnerabilities and 0day/1day risks.
- Proficient in one or more programming/scripting languages, such as Python, Go, Bash, PowerShell, JavaScript, etc., with experience in tool development and automation platform construction.
- Familiar with the basic architecture of large-scale model applications, familiar with technical forms such as Prompt, RAG, Embedding, vector databases, Agent, Function Calling, MCP, and plugin systems.
- Understand or practice AI security testing methods, including Prompt Injection, Jailbreak, RAG data poisoning, sensitive information leakage, unauthorized tool invocation, model output security, Agent permission escape, etc.
- Able to design security test cases for AI applications, evaluate model input/output, context isolation, data boundaries, permission control, and tool invocation chain risks.
- Experience in using AI to assist security work, including vulnerability analysis, code auditing, intelligence analysis, attack path planning, report generation, or automated testing.
- Familiar with AI application security governance ideas, including model call auditing, prompt word security, sensitive data protection, content security detection, permission minimization, and sandbox isolation.
- More than 5 years of experience in red team, penetration testing, security research, or offensive and defensive exercises.
- Candidates with experience in large-scale enterprise attack and defense drills, red-blue confrontation, HW/major support, cloud attack and defense, or intranet penetration are preferred.
- Candidates with experience in AI security, large-scale model security, intelligent agent security, automated penetration testing platform or security tool platform construction are preferred.
- Familiar with enterprise security construction system, able to promote defense capability, detection capability, and governance process optimization from an attack perspective.
- Priority will be given to those who hold security-related certifications such as ♀ P, OSCE, CISSP, CISP, CEH, CISSP, CCSP, etc.
- Possess strong document writing and expression abilities, able to output high-quality technical reports, review documents, attack chain analysis, and security construction plans.
- Possess good problem analysis ability, learning ability, teamwork ability, and stress resistance.
- Be sensitive to new technologies, new Attack Surfaces, and new tools, and be able to proactively research and share internally.
- Familiar with Cloud Computing Platform security and cloud attack and defense technologies, such as AWS, Azure, GCP, Tencent Cloud, Alibaba Cloud, etc.
- Familiar with Kubernetes, containers, Service Mesh, CI/CD, DevSecOps and supply chain security.
- Possess experience in zero trust, secure operation, threat hunting, Attack Surface management, and vulnerability management platform construction.
- Familiar with MCP Server, AI Agent framework, RAG system, vector database, LLM API gateway, model security evaluation framework.
- Experience in Automated Red Team, AI Penetration Testing, Intelligent Vulnerability Verification, Agent Orchestration, Security Knowledge Base or Security RAG System Construction.
- Experience in vulnerability submission, CVE, technical articles, open source projects, topic sharing, or tool release in the security community.
- Familiar with security frameworks such as MITRE ATT & CK, OWASP Top 10, OWASP LLM Top 10, NIST AI RMF, etc.
- Study Growth Fund: We support your professional development and continuous learning.
- Internal Events: Participate in regular team-building activities, workshops, and events designed to promote collaboration and innovation.
- Global Collaboration: Be part of a diverse, international team, working alongside colleagues from around the world.
- Career Advancement: Access opportunities for growth and advancement within a rapidly expanding global company.
- Internal Mobility: Grow with us- Your long-term development is important to us. We offer internal job opportunities to help build your career path.
$148.5k - $223.9k
...and you are the future of Salesforce.We are looking for a Senior Offensive Security Engineer (Red Team) with a strong, hands-on attacker mindset to execute advanced offensive security operations across our products, platforms, and enterprise environment. This role is highly...SuggestedFull timeRemote work$96k - $181k
...Adversary and Exposure Management team rolls up into Key's broader... ...within Corporate Information Security. Cyber Defense's mission is... ...Senior Offensive Security Engineer serves as the technical and operational lead for the Cyber Defense Red Team and is responsible for guiding...SuggestedWork at officeRemote workFlexible hours- ...challenging single-turn nuclear security prompts classified as benign... ...programme design, operations, or assessment at a national... ...physical protection system engineering, including sensors, barriers... ...international assistance programmes. Red-teaming experience is preferred....SuggestedRemote work
$150k - $165k
...We are seeking a highly skilled Red Team Operational Vulnerability Assessor (OVA)/Operator... ...) Red Teams certified by the National Security Agency (NSA) and accredited by United... ...remediation. ● Collaborate with defensive and engineering teams to improve detection and...SuggestedFull timeContract workImmediate startRemote workRelocation packageMonday to FridayShift workDay shift$148.5k - $223.9k
...and you are the future of Salesforce.We are looking for a Senior Offensive Security Engineer (Red Team) with a strong, hands-on attacker mindset to execute advanced offensive security operations across our products, platforms, and enterprise environment. This role is highly...SuggestedFull timeRemote work$147.05k - $198.95k
...Responsibilities: The Principal Security Engineer, under the direction of the... ...of Security Engineering and Operations, is responsible for... ...as needed Provide other teams with security consulting services... ...developing alarm/report concepts), Red Teaming concepts and...PrincipalWork experience placementRemote workWorldwide- ...Information Security Technology - Engineering - Principal Playing an essential role in the U... ...remediation from design through operations. • Develop strategic... ...decisions across teams without relying on direct... ...case and misuse analysis, red teaming, security testing...PrincipalRemote work
- ...Job Description Job Description Sr. Agent Security / AI Red-Team Engineer — Federal and DoD Programs About the Role PGTEK is seeking a Sr. Agent Security / AI Red-Team Engineer to support our L400 Advanced Development capability. You will attack our agents before...Full timeTemporary workImmediate startRemote work
- ...the Additional Protocol; nuclear fuel-cycle engineering involving enrichment, reprocessing, or criticality; nuclear security engineering involving material protection, control... ..., acquisition, or smuggling pathways. Red-teaming experience is preferred. Strong technical...For contractorsRemote work
- ...assembling a panel of nuclear domain experts to red-team frontier AI models. The goal is to test... ...regimes, Additional Protocol. Nuclear Engineer, Fuel Cycle, enrichment, reprocessing and criticality, end to end. Nuclear Security Engineer (national laboratory), MPC&A,...Temporary work
$220k - $280k
...fully remote to in-office. We operate as a digital-first company... ...design. For example, our engineering team in India works primarily... ...We’re looking for a Principal Information Security Engineer to lead and elevate... ...vulnerability assessment, or red team activities ~ Track...PrincipalWork at officeRemote workHome officeFlexible hours$86.8k - $198k
Red Team Penetration TesterThe Opportunity: We’re mission accelerators... ...during onsite and remote security assessments and by... ...artifacts, CONOPS, systems engineering plans, design specifications... ...Testing (PENTEST), Red Team Operations, Tool or Software Development...Full timeContract workPart timeWork at officeLocal areaRemote work$86.8k - $198k
Red Team Penetration TesterThe Opportunity: We’re mission accelerators... ...during on-site and remote security assessments, and by... ...artifacts, CONOPS, systems engineering plans, design specifications... ...Testing (PENTEST), Red Team operations, PHP, ASP, SQL databases, Java...Full timeContract workPart timeWork at officeLocal areaRemote work- Principal Cloud Security Operations Engineer (Scripting, AWS, DevOps, CISM, CCSA, CISSP, CCIE Security, CEH) in San Francisco, CA AWS, CEH, CISA, CISSP, DevOps... ...Engineer as a member of the Development Operations team will provide support and enhancements to cloud security...PrincipalPermanent employmentFull timeWork experience placementRemote workRelocation
- ...goal of enabling human life on Mars.SECURITY ENGINEER (BLUE TEAM) SpaceX is targeted by sophisticated... ...Security Engineer to join the security operations Blue Team to build the capabilities needed... ...(SIEM) systems.Knowledge of common Red Team and Adversarial attack trends...Permanent employmentTemporary workRemote workWeekend work
$221.2k - $387.1k
...It all started when engineer Fred Luddy wrote code that... ...Description The ServiceNow Security Organization (SSO)... ...enterprises. You'll operate with minimal direction... ...design standards other teams build against, partnering... ...as modernizing blue and red team practices or...PrincipalWork at officeImmediate startRemote workFlexible hours- ...goals faster. And because Tines is secure and private by design, it’s popular with security, IT, engineering, finance, and other security-focused teams. At Tines, we're driven by our values... ...are looking for a Senior Security Operations Engineer passionate about security...Home office
$148.5k - $237.6k
...matters at a company where you matter.Your ImpactAs a Senior Security Operations Engineer II, you will play a key role in building secure, reliable, and developer-friendly infrastructure that enables teams to move quickly without compromising security. You will solve...Work experience placementWork at officeRemote work$107.5k - $204.5k
...government issued security clearance is required... ..., world-class operations and investments in... ...experience and renowned engineering expertise to meet... ...a well-qualified Principal System Security... ...Engineering (SSE) team in developing solutions... ...UNIX, MS Windows, Red Hat Enterprise...PrincipalContract workTemporary workWork experience placementWork at officeRemote workRelocation packageFlexible hours$107.5k - $204.5k
...government issued security clearance is required... ..., world-class operations and investments in... ...experience and renowned engineering expertise to meet... ...a well-qualified Principal System Security (... ...Engineering (SSE) team in developing... ...UNIX, MS Windows, Red Hat Enterprise Linux...PrincipalContract workTemporary workWork experience placementFor subcontractorWork at officeRemote workRelocation packageFlexible hours$149k - $271.5k
...an integral part of how we build and operate. AI tool usage during interviews... ...may impact your candidacy. About The Team The Information Security and Technology team is responsible for... ...work in production, earn adoption from engineering teams, and get better over time —...Summer workRemote workFlexible hours- ...Bain Capital and Altai Ventures and began operations in May 2022. We're focused on automating... ...vulnerabilities, implementing security measures, threat hunting, responding to... ...unique perspectives and experiences to our team. We welcome applicants from all backgrounds...Remote work
- ...Security Operations Engineer Location: Remote Role Overview This role will function as a technical specialist bridging security engineering... ...systems for intrusions and partnering with engineering teams to proactively identify flaws, tune detection capabilities...Remote work
$35 - $45 per hour
...Security Operations Engineer in the Autonomous Vehicles Industry We are seeking a Security Operations Engineer who will be responsible for monitoring... ...sit in the Pittsburgh office but can be 100% remote. The team focuses on building, testing, and maintaining threat...Temporary workWork at officeRemote work- ...Visa, Robinhood, and PayPal. The Opportunity As a Security Operations Engineer, you will serve on the front lines of our security program,... ...improving detections and automations that help the team move faster and operate more effectively. This role is central...Remote work
$91.2k - $118.6k
...Job Description: Vertex Inc. is looking for a Security Operations Engineer role to strengthen our security monitoring, incident response, detection... ..., and building operational solutions that help security teams work faster and more effectively. Given the 24/7/365...Minimum wageLocal areaRemote workNight shiftRotating shiftWeekend work- ...increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate... ...products are reflected in how our team works: we embrace AI as a core... ...of this role As a Senior Security Engineer on GitLab’s Security Incident Response...Full timeRemote work
- ...the pioneer of the Connected Operations™ Cloud, which is a platform that... ...operations and be on a team that’s shaping an exciting array... ...the role: As a member of our Security Operations Team, you will collaborate... ...with a global team of engineers to monitor and respond to...Full time
- ...next steps. Our partner is looking for an Intermediate Security Engineer, Security Incident Response Team (SIRT) based in Australia. This role places you... .... You’ll join a globally distributed Security Operations environment responsible for detecting, investigating...Full timeRemote workFlexible hoursShift work
$192k - $240k
..., Brex enables founders and finance teams to accelerate operations, gain real-time visibility, and control... ...you need to grow your career.Engineering at BrexEngineering at Brex is about... ...intention. Our teams span Software, Data, Security, and IT, and operate with high...Work at officeRemote workWork from home
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Security Operation Engineer (Red Team). Be the first to apply!
- director data engineering Remote
- principal engineer Remote
- senior chief engineer Remote
- principal infrastructure engineer Remote
- director sales engineering Remote
- principal data engineer Remote
- senior civil engineer project manager Remote
- chief engineer Remote
- project engineer assistant project manager Remote
- director software engineering Remote


