Your career compass awaits
Create a free account to unlock
- ✓ See how you match this role
- ✓ AI resume tailored to this specific job
- ✓ Inside Track Companion — find your insider contact
- ✓ Skills gap analysis and upskill plan
- ✓ Interview prep kit for this role
- ✓ Relocation concierge — salary, tax, cost of living
Free — no credit card required
Agent Security Expert
ICT
Company shared salary
NA
Market rate
NA
Based on similar roles (title + domain + location).
About the Company
Business Unit Cloud & Smart Industries Group (CSIG) is responsible for promoting the company's cloud and industry Internet strategy. CSIG explores the interactions between users and industries to create innovative solutions for smart industries via technological advancements such as cloud, AI, and network security. While driving the digitalization of retail, medical, education, transportation and other industries, CSIG helps companies serve users in smarter ways, building a new ecosystem of intelligent industries that connect users and businesses.
Responsibilities
- ● Own the end-to-end technical architecture of our Agent security product, making principled trade-offs across detection coverage, latency, and operational overhead.
- ● Design and implement runtime guardrails - including prompt injection defense, unauthorized tool-call interception, behavioral drift detection, and real-time credential leak prevention.
- ● Architect MCP and tool-chain supply-chain security capabilities against tool poisoning, cross-origin privilege escalation, and transitive trust abuse.
- ● Build an automated agent red-teaming pipeline to continuously discover vulnerabilities, generate adversarial test cases, and harden defenses before production deployment.
- ● Partner with product, engineering, and threat intelligence teams to translate emerging attack patterns into shipped security features, and mentor junior engineers on security-first design.
Requirements
- ● 8+ years of hands-on experience in security engineering, systems engineering, or a closely related field, with a track record of shipping production security components.
- ● Deep expertise in at least two of: application security, cloud-native security, identity and access management (IAM), or offensive/defensive security operations.
- ● Proficient in at least two of Go, Python, Rust, or C++, with experience building high-concurrency security services or detection pipelines.
- ● Strong working knowledge of the LLM/Agent stack - RAG architectures, function calling, MCP protocol, and mainstream agent frameworks - and the unique attack surfaces they introduce.
- ● Experience researching or shipping enterprise security products (EDR, CNAPP, AI-SPM, or equivalent); familiarity with sandboxing, eBPF, or container/virtualization isolation is a strong plus.
⚡ Full Resume Sandbox Canvas