Senior Software Engineer, Data & Endpoint Security
OKX
Who We Are
About the Opportunity
We are seeking a Security Engineer to join our team. This role focuses on detection engineering and incident response. Candidates will specialize in either Data Security or Endpoint Security, utilizing enterprise big data platforms for threat detection and risk analytics.
What You’ll Be Doing
Data Security
- Develop and enhance enterprise data security detection capabilities, including but not limited to DLP, sensitive data identification, data encryption/decryption, and data masking.
- Continuously validate and optimize existing data security rules, models, and detection strategies to improve coverage and accuracy.
- Participate in data security incident identification, response, investigation, and forensics.
- Build and maintain data asset maps; use graph-based techniques to trace data flows and identify risks of sensitive data exfiltration.
- Use enterprise data platforms to perform risk analytics, anomaly detection, and data-focused threat modeling.
Endpoint / Host Security
- Build and improve host-based detection capabilities, including malware analysis, intrusion detection, threat modeling, and host behavior baseline modeling across office and production environments.
- Continuously refine host security policies and detection models to improve detection performance and reduce false positives.
- Handle host security alerts and incident response end-to-end.
- Enhance endpoint data collection pipelines to improve data completeness, integrity, and real-time coverage.
- Detect and analyze APT attacks and attempted intrusions across multi-cloud and hybrid environments; support endpoint security architecture improvements.
What We Look For In You
- Bachelor’s degree or above in Information Security, Network Security, Computer Science, or related fields; 3–5+ years of experience in data security or host security.
- Strong understanding of security attack/defense techniques and enterprise security system design.
- Hands-on experience with data security or endpoint security products (e.g., DLP, EDR, UEBA, sensitive data identification).
- Proficiency in macOS and Linux systems; experience with enterprise endpoint protection solutions.
- Familiarity with big data analytics platforms such as Flink, Spark, Hive, Elasticsearch, and graph analysis technologies.
- Strong analytical thinking, communication skills, and a solid understanding of compliance and legal obligations in security operations.
Nice to Haves
- Experience designing endpoint data protection or host agent solutions.
- Experience detecting or analyzing APT attacks in enterprise environments.
- Experience in data lineage analysis, graph-based security analytics, or sensitive data flow tracing.
- Hands-on experience with security data models, detection rule engines, or in-house security product development.
- Prior experience building or operating host/data security systems within an enterprise security team.
Perks & Benefits
- Competitive total compensation package
- L&D programs and Education subsidy for employees' growth and development
- Various team building programs and company events
- Wellness and meal allowances
- Comprehensive healthcare schemes for employees and dependants
- More that we love to tell you along the process!