Talent.com
Senior Product Security Engineer
Senior Product Security EngineerSitecore Malaysia Sdn. Bhd. • Kuala Lumpur, Kuala Lumpur, Malaysia
Senior Product Security Engineer

Senior Product Security Engineer

Sitecore Malaysia Sdn. Bhd. • Kuala Lumpur, Kuala Lumpur, Malaysia
1 hari lalu
Penerangan pekerjaan

About Us

At Sitecore, our mission is to simplify how brands reach, engage, and serve people by delivering intelligent, personalized digital experiences that connect the world. We empower the world’s most iconic brands to build lifelong relationships with their customers—seamlessly, smartly, and at scale.

As the leading provider of agentic digital experience software, Sitecore brings together content, commerce, and data into one composable platform that enables brands to deliver millions of meaningful, adaptive experiences every day. Trusted by global leaders such as American Express, Porsche, Starbucks, and L’Oréal, Sitecore helps brands transform engagement through experiences that are not only personalized but predictive and dynamic.

Our foundation is our people—a diverse, passionate, and collaborative global team spanning over 25 countries. We believe that every experience matters, and that belief starts with how we work together. We are actively cultivating AI skills across our teams to unlock new levels of creativity, efficiency, and insight. From engineering to customer experience, AI capabilities are becoming integral to how we design, build, and deliver the next generation of digital experiences.

About the Role

As a Senior Product Security Engineer with a focus on Penetration Testing and AI Security, you will play a critical role in identifying, exploiting, and mitigating vulnerabilities across Sitecore’s platforms, infrastructure, and AI-driven features. You will work closely with product engineering teams, cloud operations, and compliance stakeholders to ensure our systems are resilient against evolving threats, including those introduced by AI technologies.

What You’ll Do

Penetration Testing & Vulnerability Assessment

  • Perform advanced penetration tests on Sitecore products, services, and cloud environments.
  • Simulate real‑world attack scenarios to identify weaknesses in applications, APIs, and infrastructure.
  • Develop and maintain automated testing frameworks for continuous security validation.

AI Security Testing

  • Assess AI / ML models and pipelines for adversarial vulnerabilities, data poisoning, and model inversion risks.
  • Evaluate prompt injection, jailbreak attempts, and other LLM‑specific attack vectors.
  • Collaborate with AI engineering teams to implement robust security controls for AI‑driven features.
  • Security Research & Threat Modelling

  • Stay ahead of emerging threats, attack vectors, exploit techniques, including AI‑related risks.
  • Conduct threat modelling for new features and architectures.
  • Collaboration & Remediation

  • Work with engineering teams to prioritize and remediate vulnerabilities.
  • Provide actionable guidance and best practices for secure coding and architecture.
  • Reporting & Compliance

  • Document findings with detailed technical reports and executive summaries.
  • Support compliance initiatives (ISO 27001, SOC 2, GDPR) through security testing and evidence collection.
  • WAF Administration

  • Manage and optimize WAF configurations for security and performance.
  • Implement and maintain WAF (Web Application Firewall) rules, DDoS protection, and bot mitigation.
  • Collaborate with DevOps and infrastructure teams to ensure WAF integration aligns with security architecture.
  • What You Need to Succeed

  • 8+ years in security engineering with a strong focus on penetration testing.
  • Hands‑on experience with AI security testing or adversarial ML techniques is a strong plus.
  • Expertise in tools such as Burp Suite, Metasploit, Nmap, and custom exploit development.
  • Strong knowledge of OWASP Top 10, SANS CWE, and secure coding principles.
  • Familiarity with AI / ML frameworks (TensorFlow, PyTorch) and LLM security considerations.
  • Cloud security (Azure preferred) and containerised environments (Docker / Kubernetes).
  • Comfortable working in a fast‑paced, dynamic environment with shifting priorities.
  • Additional Skills That Could Set You Apart

  • Familiarity with headless CMS architecture, front‑end frameworks, and web technologies.
  • OSCP, CRTO, GPEN or similar advanced penetration testing certifications.
  • AI security certifications or demonstrated research in adversarial ML.
  • CISSP or equivalent for broader security knowledge.
  • Why Sitecore?

    At Sitecore, we offer a vibrant work culture, a collaborative environment, and the opportunity to work on products that shape digital experiences globally. We’re dedicated to fostering growth, innovation, and a commitment to our employees’ professional and personal development. Be part of a visionary, innovation‑driven team shaping the next era of AI‑powered content management in a leading composable DXP.

    Equal Employment Opportunity

    Sitecore is proud to be an equal opportunity workplace. We are committed to equal employment opportunity without unlawful regard to race, color, ancestry, religion, gender, national origin, sexual orientation, age, citizenship, marital status, disability, veteran status or any other local legally protected characteristic.

    #J-18808-Ljbffr

    Buat amaran kerja untuk carian ini

    Product Engineer • Kuala Lumpur, Kuala Lumpur, Malaysia

    Pekerjaan berkaitan
    Sr Cyber Security Engineer

    Sr Cyber Security Engineer

    Flintex Consulting Pte Ltd • Kuala Lumpur, 14, my
    Quick Apply
    Security Architecture & Engineering.Design and implement enterprise-wide security infrastructure and architecture.Evaluate and recommend security tools and technologies.Ensure security is embed...Tunjukkan lagi
    Kemas kini terakhir: 30+ hari yang lalu
    Senior Product Security Engineer - AI & Pen Testing

    Senior Product Security Engineer - AI & Pen Testing

    Sitecore • Kuala Lumpur, Kuala Lumpur, Malaysia
    A leading digital experience platform provider in Kuala Lumpur is seeking a Senior Product Security Engineer.You will conduct advanced penetration testing and assess AI security, collaborating with...Tunjukkan lagi
    Kemas kini terakhir: 2 hari yang lalu • Dinaikkan pangkat
    (Senior) Security Engineer, Security Engineering & Threat Intelligence

    (Senior) Security Engineer, Security Engineering & Threat Intelligence

    Ring Inc • Kuala Lumpur, Kuala Lumpur, Malaysia
    We are looking for an intermediate level security engineer to join our Global Cybersecurity Services Team.As part of our modern cybersecurity operating model, the role will be engaged in enhancing ...Tunjukkan lagi
    Kemas kini terakhir: 30+ hari yang lalu • Dinaikkan pangkat
    Onsite Security Operations Engineer - EDR / XDR & PAM

    Onsite Security Operations Engineer - EDR / XDR & PAM

    Dexian Asia Pacific • SelangorMalaysia, Selangor, Malaysia
    A leading IT consulting firm in Malaysia seeks a CyberSecurity Resident Engineer to support daily security operations onsite. The role involves managing security tools and monitoring security alerts...Tunjukkan lagi
    Kemas kini terakhir: 2 hari yang lalu • Dinaikkan pangkat
    Senior Product Security Engineer Kuala Lumpur, Malaysia Senior Product Security Engineer

    Senior Product Security Engineer Kuala Lumpur, Malaysia Senior Product Security Engineer

    Sitecore • Kuala Lumpur, Kuala Lumpur, Malaysia
    Senior Product Security Engineer – Penetration Testing and AI Security.Engineering & Technology, Kuala Lumpur, Malaysia.At Sitecore, our mission is to simplify how brands reach, engage, and serve p...Tunjukkan lagi
    Kemas kini terakhir: 3 hari yang lalu • Dinaikkan pangkat
    L2 Security Engineer (SOC)

    L2 Security Engineer (SOC)

    Logicalis • Kuala Lumpur, Kuala Lumpur, Malaysia
    Location : Logicalis, Federal Territory of Kuala Lumpur, Malaysia.Be among the first 25 applicants.Actively research and stay updated with latest and new cyberattacks, TTPs, threat attackers, vulner...Tunjukkan lagi
    Kemas kini terakhir: 30+ hari yang lalu • Dinaikkan pangkat
    System Security Engineer

    System Security Engineer

    Public Mutual Berhad • Kuala Lumpur, Kuala Lumpur, Malaysia
    Empowering the Workforce | Guiding Others to Achieve Their Career Goals.Monitor security alerts and events using Security Information and Event Management (SIEM) tools. Prioritize, analyze, and tria...Tunjukkan lagi
    Kemas kini terakhir: 30+ hari yang lalu • Dinaikkan pangkat
    Security Engineer

    Security Engineer

    PayNet (Payments Network Malaysia) • Kuala Lumpur, Kuala Lumpur, Malaysia
    Lead security solution initiatives, from architecture, design, deployment to operationalizing and other technical security assessment and implementation (at various layers).Ensure sound security pr...Tunjukkan lagi
    Kemas kini terakhir: 2 hari yang lalu • Dinaikkan pangkat
    Senior Product Security Engineer : Pen Testing & AI Security

    Senior Product Security Engineer : Pen Testing & AI Security

    Sitecore • Kuala Lumpur, Kuala Lumpur, Malaysia
    A leading digital experience platform in Kuala Lumpur is seeking a Senior Product Security Engineer focused on Penetration Testing and AI Security. This role involves identifying and mitigating secu...Tunjukkan lagi
    Kemas kini terakhir: 1 hari yang lalu • Dinaikkan pangkat
    Senior Product Security Engineer

    Senior Product Security Engineer

    Sitecore • Kuala Lumpur, Kuala Lumpur, Malaysia
    Sitecore Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Senior Product Security Engineer – Penetration Testing and AI Security. Engineering & Technology, Kuala Lumpur, Malaysia.At Sitecor...Tunjukkan lagi
    Kemas kini terakhir: 1 hari yang lalu • Dinaikkan pangkat
    Senior Security Automation Engineer – Cloud & DevSecOps Leader

    Senior Security Automation Engineer – Cloud & DevSecOps Leader

    BAT • Kuala Lumpur, Kuala Lumpur, Malaysia
    A global multi-category business is seeking a Senior Security Automation Engineer in Kuala Lumpur, Malaysia.This position involves bridging SecOps, policy engineering, and automation to enhance sec...Tunjukkan lagi
    Kemas kini terakhir: 4 hari yang lalu • Dinaikkan pangkat
    Senior Security Engineer

    Senior Security Engineer

    CARSOME • Kuala Lumpur, Kuala Lumpur, Malaysia
    Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Kuala Lumpur, Federal Territory of Kuala Lumpur, Malaysia.Be among the first 25 applicants. Get AI-powered advice on this job and more exclu...Tunjukkan lagi
    Kemas kini terakhir: 16 hari yang lalu • Dinaikkan pangkat
    Expression of Interest : Senior Security Automation Engineer

    Expression of Interest : Senior Security Automation Engineer

    BAT • Kuala Lumpur, Kuala Lumpur, Malaysia
    BAT is evolving at pace into a global multi-category business.Our purpose is to create A Better Tomorrow™ by Building a Smokeless World. To achieve our ambition, we are looking for colleagues who ar...Tunjukkan lagi
    Kemas kini terakhir: 30+ hari yang lalu • Dinaikkan pangkat
    Security Engineer (CyberArk Privileged Identity Access Management)

    Security Engineer (CyberArk Privileged Identity Access Management)

    Accenture Southeast Asia • Kuala Lumpur, Kuala Lumpur, Malaysia
    Security Engineer (CyberArk Privileged Identity Access Management).Security Engineer (CyberArk Privileged Identity Access Management). As a Security Engineer at Accenture, you will play a critical r...Tunjukkan lagi
    Kemas kini terakhir: 30+ hari yang lalu • Dinaikkan pangkat
    Security Engineer : Build & Audit Defenses

    Security Engineer : Build & Audit Defenses

    UNAVAILABLE • Kuala Lumpur, Kuala Lumpur, Malaysia
    A global network and digital integrator is seeking a security expert in Kuala Lumpur.The role involves implementing security measures, responding to alerts, and collaborating on security policies.R...Tunjukkan lagi
    Kemas kini terakhir: 3 hari yang lalu • Dinaikkan pangkat
    Senior Product Security Engineer : AI Security & Pen Testing

    Senior Product Security Engineer : AI Security & Pen Testing

    Sitecore Malaysia Sdn. Bhd. • Kuala Lumpur, Kuala Lumpur, Malaysia
    A leading digital experience software firm in Kuala Lumpur is seeking a Senior Product Security Engineer to focus on penetration testing and AI security. The ideal candidate will have over 8 years o...Tunjukkan lagi
    Kemas kini terakhir: 1 hari yang lalu • Dinaikkan pangkat
    Security Engineer

    Security Engineer

    Ensign InfoSecurity • Kuala Lumpur, Kuala Lumpur, Malaysia
    Manage the ticketing system and ensure all tickets are up to date with the latest information / updates.Handles customers’ calls / escalation and performs 1st & 2nd level troubleshooting and resolution...Tunjukkan lagi
    Kemas kini terakhir: 5 hari yang lalu • Dinaikkan pangkat
    Application Security Engineer

    Application Security Engineer

    Avenga • Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, .MY
    Quick Apply
    At Avenga, we believe that human creativity empowers technology that matters.Operating globally, our 6000+ specialists provide a full spectrum of services, including business and tech advisory, ent...Tunjukkan lagi
    Kemas kini terakhir: 30+ hari yang lalu