Skip to content

Open nowPosted 130 days ago

AI Security Engineer

rockbund7 open roles

Where
Shanghai
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowAI Security Engineerrockbund · Shanghai
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on rockbund's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.6%1 day
  2. 3.4%3 days
  3. 7.8%7 days
  4. 14.3%14 days
  5. 33.7%30 days
This job: posted 130 days ago

The posting

Who We Are

Founded in 2019, Rock Bund Capital is a proprietary trading firm deeply committed to shaping the future of the cryptocurrency industry. We have an average daily trading volume reaching $1 billion and peak daily trading volume of $9 billion USD. We process over 15 million transactions daily, trading more than 1,000 symbols across major CEx and DEx.

Our teams bridge traditional finance, quantitative research, and high-performance engineering with native blockchain expertise. Having mastered volatile digital asset markets, we now leverage this technical and market expertise to drive our expansion into Traditional Finance.

What You Will Do

  1. Requirements Review & Security Design: Lead security reviews, threat modeling, and penetration testing for AI Agents. Design and implement defense mechanisms against emerging threats, including tool abuse, context contamination, data poisoning, and prompt injection.
  2. Automated Security Tooling: Design and develop AI-powered automated security detection tools. Utilize Machine Learning (ML) and Deep Learning (DL) techniques to enhance threat detection, anomalous behavior analysis, and vulnerability discovery efficiency.
  3. Security Operations & Auditing: Participate in building Agent behavior auditing and anomaly detection systems to identify runtime malicious behavior chains. Help construct an AI-driven Security Operations platform to automate alert triage, attack attribution, and incident response strategy generation.
  4. Security Guardrails Implementation: Co-design and implement Agent security guardrails, including input filtering, output sanitization, tool call permission controls, and sandbox isolation.
  5. Frontier Research & Adversarial Defense: Track and research cutting-edge security threats in the AI/Agent ecosystem (e.g., prompt injection, tool abuse, privilege escalation, data exfiltration, supply chain attacks). Explore, design, and deploy robust defense solutions tailored to real-world business scenarios.

Who You Are

  1. Experience: Minimum of 3 years of experience in security development or penetration testing, with at least 1 year dedicated to LLM/AI security offense and defense. Proven Red Teaming or real-world adversarial experience is highly preferred.
  2. Frameworks & Frameworks: Deep familiarity with security frameworks such as OWASP Top 10 for LLM and MITRE ATT&CK. Strong understanding of common AI attack vectors, adversarial logic, and mitigation strategies, paired with a strong passion for AI security.
  3. Domain Knowledge: Familiarity with the entire AI product lifecycle (design, development, deployment, and operations). Understanding of cloud-native threat detection and standard infrastructure security. Prior experience in Web3 security and defense is a strong plus.
  4. Technical Skills: Proficient in at least one programming language (e.g., Python, Go, C++). Capable of building custom security tools from scratch or heavily customizing/extending open-source security platforms.
  5. Soft Skills: Exceptional communication, collaboration, and project management skills. A self-starter with strong continuous learning capabilities, able to own projects independently and convert bleeding-edge research into practical production defenses.

Preferred Qualifications / Plus Points

  1. Proven track record in elite Red Teaming, or top-tier performance in major CTF/Cybersecurity competitions. Experience discovering and reporting high-severity vulnerabilities (e.g., CNVD/CNNVD, CVEs), or a record of publishing Web/AI security papers in top-tier conferences/journals, or filed patents.
  2. Familiarity with mainstream AI frameworks and orchestration tools (e.g., PyTorch, TensorFlow, LangChain, LlamaIndex), with hands-on experience in local LLM deployment and optimization.

Why Join Us

  • Competitive remuneration package and a meritocratic culture where accomplishments are rewarded
  • Fast paced and result-oriented with a flat structure
  • Teams collaborate in a casual working environment
  • Excellent exposure to the digital asset ecosystem and the latest market insight
  • Great career development opportunities

Disclaimer We do not accept unsolicited resumes from any professional staffing or search firms. All resumes, or any other information identifying potential candidates, shared with any employee of Rock Bund Capital or its affiliates by any method without a standing signed supplier agreement will be deemed free to contact without restrictions, and no placement fee of any kind will be paid in the event the candidate is hired by Rock Bund Capital or any of its affiliates.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against rockbund's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on rockbund's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    rockbund's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.