hirly

Rock Bund Capital

AI Security Engineer

Shanghai

See how you match this job — and similar ones. Free.

Upload your resume and hirly scores it against this role at Rock Bund Capital first, then against similar open jobs, and shows where you fit and why.

PDF or DOCX, up to 12MB. No sign-up to see your matches.

Get past the screening software and onto a recruiter's desk

hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.

  • Keywords matched to this posting
  • Fit score before you apply
  • Cover letter included

Matched against 2.5M live jobs from 200,000+ employers in 200+ countries.

Tailor my resume for this job →

Apply from your AI assistant

Connect hirly to Claude and ask it to apply to this job. hirly tailors your resume, fills the employer’s form and asks before sending. ChatGPT: manual setup today.

Some employer sites stop an application at a CAPTCHA or sign-in and hand it back with a link. Applying needs a paid plan. Works with any assistant that supports MCP.

hirly's read of this role

Role family
Engineering
Seniority
Mid level
Country
CN
Work mode
On-site / unstated
First seen by hirly
3 Oct 2026

Derived automatically from the posting. Upload your resume above to see how the role scores against it.

the posting

Who We Are

Founded in 2019, Rock Bund Capital is a proprietary trading firm deeply committed to shaping the future of the cryptocurrency industry. We have an average daily trading volume reaching $1 billion and peak daily trading volume of $9 billion USD. We process over 15 million transactions daily, trading more than 1,000 symbols across major CEx and DEx.

Our teams bridge traditional finance, quantitative research, and high-performance engineering with native blockchain expertise. Having mastered volatile digital asset markets, we now leverage this technical and market expertise to drive our expansion into Traditional Finance.

What You Will Do

Requirements Review & Security Design: Lead security reviews, threat modeling, and penetration testing for AI Agents. Design and implement defense mechanisms against emerging threats, including tool abuse, context contamination, data poisoning, and prompt injection.

Automated Security Tooling: Design and develop AI-powered automated security detection tools. Utilize Machine Learning (ML) and Deep Learning (DL) techniques to enhance threat detection, anomalous behavior analysis, and vulnerability discovery efficiency.

Security Operations & Auditing: Participate in building Agent behavior auditing and anomaly detection systems to identify runtime malicious behavior chains. Help construct an AI-driven Security Operations platform to automate alert triage, attack attribution, and incident response strategy generation.

Security Guardrails Implementation: Co-design and implement Agent security guardrails, including input filtering, output sanitization, tool call permission controls, and sandbox isolation.

Frontier Research & Adversarial Defense: Track and research cutting-edge security threats in the AI/Agent ecosystem (e.g., prompt injection, tool abuse, privilege escalation, data exfiltration, supply chain attacks). Explore, design, and deploy robust defense solutions tailored to real-world business scenarios.

Who You Are

Experience: Minimum of 3 years of experience in security development or penetration testing, with at least 1 year dedicated to LLM/AI security offense and defense. Proven Red Teaming or real-world adversarial experience is highly preferred.

Frameworks & Frameworks: Deep familiarity with security frameworks such as OWASP Top 10 for LLM and MITRE ATT&CK. Strong understanding of common AI attack vectors, adversarial logic, and mitigation strategies, paired with a strong passion for AI security.

Domain Knowledge: Familiarity with the entire AI product lifecycle (design, development, deployment, and operations). Understanding of cloud-native threat detection and standard infrastructure security. Prior experience in Web3 security and defense is a strong plus.

Technical Skills: Proficient in at least one programming language (e.g., Python, Go, C++). Capable of building custom security tools from scratch or heavily customizing/extending open-source security platforms.

Soft Skills: Exceptional communication, collaboration, and project management skills. A self-starter with strong continuous learning capabilities, able to own projects independently and convert bleeding-edge research into practical production defenses.

Preferred Qualifications / Plus Points

Proven track record in elite Red Teaming, or top-tier performance in major CTF/Cybersecurity competitions. Experience discovering and reporting high-severity vulnerabilities (e.g., CNVD/CNNVD, CVEs), or a record of publishing Web/AI security papers in top-tier conferences/journals, or filed patents.

Familiarity with mainstream AI frameworks and orchestration tools (e.g., PyTorch, TensorFlow, LangChain, LlamaIndex), with hands-on experience in local LLM deployment and optimization.

Why Join Us

Competitive remuneration package and a m eritocratic culture where accomplishments are rewarded

Fast paced and result-oriented with a flat structure

Teams collaborate in a casual working environment

Excellent exposure to the digital asset ecosystem and the latest market insight

Great career development opportunities

  • Disclaimer
  • We do not accept unsolicited resumes from any professional staffing or search firms. All resumes, or any other information identifying potential candidates, shared with any employee of Rock Bund Capital or its affiliates by any method without a standing signed supplier agreement will be deemed free to contact without restrictions, and no placement fee of any kind will be paid in the event the candidate is hired by Rock Bund Capital or any of its affiliates.
Original posting on Rock Bund Capital's site ↗

Browse similar roles

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job