Senior Security Operations Engineer, AIDC
Own full-stack security operations for Asian AI data centers, including detection engineering, incident response, host and network hardening, vulnerability management, security tooling development, compliance support, and cross-time-zone coordination.
Responsibilities
- Own security alert monitoring, triage, and incident response for Asian AIDCs in a 7x24 on-call rotation.
- Handle L2/L3 incidents involving GPU clouds, containers, Kubernetes, InfiniBand/RoCE networks, BMC access, malware, and anomalous activity.
- Operate SIEM, HIDS, and eBPF runtime security tools; tune detections and manage alert quality.
- Develop detection-as-code practices, threat hunting campaigns, security automation, and SOC documentation.
- Perform Linux hardening, vulnerability management, network security operations, IAM support, and virtualization security maintenance.
- Support incident response, customer remediation, SOC 2 and ISO 27001 evidence collection, and global security handoffs.
Requirements
- Bachelor's degree or higher in Computer Science, Cybersecurity, Computer Engineering, or a related field.
- 5+ years of information security experience, including at least 3 years in cloud infrastructure, IaaS, or data center security operations.
- L2/L3 incident response experience with intrusion detection, malware analysis, and forensics.
- Strong Linux administration and hardening skills, including CIS Benchmarks, auditd, firewall rules, and log analysis.
- Hands-on experience with Wazuh, Splunk, Elastic SIEM, or an equivalent SIEM platform.
- Knowledge of Docker and Kubernetes security fundamentals.
- Strong Python and Shell scripting skills.
- Solid network security fundamentals, including TCP/IP, firewalls, IPS/IDS, VPN, tcpdump, and Wireshark.
- Familiarity with MITRE ATT&CK.
- Professional fluency in English and Mandarin Chinese.
- Willingness to work irregular hours and participate in major-incident on-call coverage.
- GPU cloud, HPC, eBPF, KVM/QEMU, detection-as-code, large-scale HIDS, or threat hunting experience is strongly preferred.
Benefits
- Attractive welfare benefits and developmental opportunities such as training and mentoring.
- Inclusive environment with opportunities for autonomy, learning, networking, and direct impact.
- Opportunity to contribute to new projects and develop security processes and systems.