IT Security Specialist
Kuala Lumpur, Malaysia
OKX
Buy BTC, ETH, XRP and more on OKX, a leading crypto exchange – explore Web3, invest in DeFi and NFTs. Register now and experience the future of finance.Who We Are:
At OKX, we believe that the future will be reshaped by crypto, and ultimately contribute to every individual's freedom.
OKX is a leading crypto exchange, and the developer of OKX Wallet, giving millions access to crypto trading and decentralized crypto applications (dApps). OKX is also a trusted brand by hundreds of large institutions seeking access to crypto markets. We are safe and reliable, backed by our Proof of Reserves.
Across our multiple offices globally, we are united by our core principles: We Before Me, Do the Right Thing, and Get Things Done. These shared values drive our culture, shape our processes, and foster a friendly, rewarding, and diverse environment for every OK-er.
OKX is part of OKG, a group that brings the value of Blockchain to users around the world, through our leading products OKX, OKX Wallet, OKLink and more.
About the Opportunity: This role focuses on offensive security and security operations (SOC), with a dedicated focus to penetration testing, threat intelligence, code review, and digital forensics. The successful candidate will be responsible for identifying vulnerabilities, evaluating risks, and providing insights that bolster the security posture of OKX. You will play a critical role in safeguarding the business against potential cyber threats, ensuring the integrity of our systems through both proactive and reactive measures. Job Responsibilities:- Penetration Testing: Conduct regular pentesting of internal and external systems, web applications, and APIs to identify vulnerabilities and security risks.
- Threat Intelligence: Continuously monitor and analyze emerging threats, providing actionable intelligence to enhance security measures.
- Code Review : Perform secure code reviews to detect security flaws in software development and implementation stages.
- Forensics: Lead forensic investigations following security incidents, providing detailed reports to identify root causes and remediation actions.
- Incident Response: Support cyber security incident response efforts, ensuring swift and effective management of security breaches.
- Collaboration: Work closely with development teams, system administrators, and stakeholders to ensure alignment on security best practices.
- Bachelor’s degree in Computer Science, or a Master’s in Information Systems/Technology.
- At least 2 years of hands-on experience in offensive security, including penetration testing, threat intelligence, and code review.
- In-depth knowledge of security testing methodologies, tools (e.g., Burp Suite, Metasploit, Nmap), and frameworks such as OWASP TOP 10.
- Familiarity with digital forensics tools and processes.
- Excellent command of both written and spoken English and Mandarin to support communication with diverse stakeholders.
Why Join Us?
- Competitive remuneration package (Basic Salary + Yearly Bonuses).
- Meal Allowance up to RM 500/month
- Monthly Team Building
- RM 2500 Benefits per annum (Training & Wellness)
- Convenient workplace (5 minutes walk from MRT TRX).
- Excellent prospects for growth and promotion - we provide you with assistance, opportunities for skill development, mentoring, and training programmes to help you succeed.
- Employee engagement, recognition and appreciation program.
- Multinational working environment - Advance your career by interacting with individuals from various backgrounds, cultures, and nations.
#LI-ZF1 #LI-ONSITE
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: APIs Blockchain Burp Suite Computer Science Crypto Forensics Incident response Metasploit Nmap Offensive security OWASP Pentesting SOC Threat intelligence Vulnerabilities
Perks/benefits: Career development Competitive pay Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.