Sponsor Kantor White collar

[EJV] Penetration Tester — AI Safety & Security (with Joining Bonus)

Bosch

Cara kami menyaring lowongan

LokasiHo Chi Minh City, Vietnam
TipeFull time
LevelMid
Model kerjaDi kantor
Diposting24 September 2026

Tentang pekerjaan

Rangkuman Get Karier, bukan salinan iklan aslinya

Bosch (unit BGSV) di Ho Chi Minh City mencari Penetration Tester untuk tim AI Safety & Security yang baru dibentuk. Perannya menjalankan rencana uji terstruktur terhadap produk berbasis AI milik Bosch, seperti deployment LLM, sistem agentic AI, dan integrasi tool-calling bergaya Model Context Protocol, untuk menguji apakah sistem itu aman dan tidak bisa dimanipulasi lewat prompt injection. Iklannya menawarkan bonus bergabung setara satu bulan gaji bagi yang bergabung sebelum 31 Desember 2026, tanpa menyebut angka gaji.

Kualifikasi

Yang perlu kamu siapkan, versi ringkas
  • Gelar S1 Ilmu Komputer, Machine Learning, atau bidang terkait.
  • 2-5 tahun di penetration testing, security testing, atau keamanan AI/ML terapan.
  • Pengalaman langsung menguji LLM atau sistem agentic AI (prompt injection, jailbreak, penyalahgunaan tool atau plugin); coursework, CTF, atau proyek pribadi ikut dihitung.
  • Paham OWASP Top 10 for LLM Applications dan/atau OWASP Top 10 for Agentic Applications.
  • Bisa scripting Python dan/atau JavaScript/Node untuk otomasi uji.
  • Nilai tambah: pengalaman Model Context Protocol (MCP), pentest web, API, atau jaringan, dan sertifikasi seperti OSCP, GPEN, GWAPT, atau CEH.

Deskripsi & syarat asli

Teks asli dari perusahaan, apa adanya. Tidak kami terjemahkan atau ubah.

Job Description: 🎁 Q4 JOINING BONUS Join BGSV by 31 December 2026 and receive a Joining Bonus equivalent to 1 month gross salary , subject to program eligibility and terms & conditions. About the Role We are looking for a Penetration Tester to join our AI Safety & Security team, working hands-on across Bosch's growing portfolio of AI-enabled products and internal tooling — LLM deployments, agentic AI systems, and Model Context Protocol – style tool-calling integrations. Under the direction of the team's Lead AI Safety & Security Engineer, you will execute structured test plans against real systems, covering both whether an AI system behaves safely (does it refuse harmful requests, stay within its intended scope) and whether it is secure (can it be manipulated via prompt injection or tricked into misusing its tools). This is an individual-contributor role on a newly forming team — you'll be running real engagements from day one, not just shadowing them. Key Responsibilities Execute penetration tests and safety evaluations against LLM-based features and AI agents, following test plans and specifications defined by the team lead. Run red-teaming and jailbreak testing to surface harmful, biased, or unsafe model outputs, and document reproducible findings. Test for prompt injection (direct and indirect), excessive agency, and tool/plugin abuse in agentic and MCP-style tool-calling systems. Verify human-in-the-loop and guardrail controls hold up under adversarial conditions, not just in normal use. Write clear, reproducible findings reports — evidence, severity, and a specific recommended fix — that both engineers and governance stakeholders can act on. Help build and maintain test tooling: adversarial-prompt scripts, jailbreak test cases, and MCP/tool-schema fuzzing scripts. Track published AI security research (OWASP LLM and Agentic Top 10s, MITRE ATLAS) and bring new attack techniques into the team's test suite. Work directly with AI/ML engineering teams to reproduce, triage, and confirm fixes for reported findings. Support the team lead in scoping and coordinating external red-teaming/pentest vendor engagements when work is outsourced.

Qualifications: Required Qualifications Bachelor's degree in Computer Science, Machine Learning, or a related field. 2–5 years in penetration testing, security testing, or applied AI/ML security work. Hands-on experience testing LLM or agentic AI systems — prompt injection, jailbreaks, or tool/plugin abuse; coursework, CTFs, or independent projects count given how new this field is. Working familiarity with the OWASP Top 10 for LLM Applications and/or OWASP Top 10 for Agentic Applications. Comfortable scripting in Python and/or JavaScript/Node to automate test cases. Clear, precise technical writing for findings reports. Preferred Qualifications Exposure to the Model Context Protocol (MCP) or comparable agent tool-calling frameworks. Traditional penetration testing experience across web, API, or network targets. Familiarity with AI governance concepts (NIST AI RMF, ISO/IEC 42001, EU AI Act). Open-source security tooling contributions, CTF results, or a public research/write-up portfolio. Relevant Certifications (any of the following a plus) Offensive security / penetration testing — OSCP, GPEN, GWAPT, or CEH. AI-specific security — ISC2 AI Security Certificate or Certified AI Security Professional (CAISP).

Additional Information: Why BOSCH? Because we do not just follow trends, we create them. Together we turn ideas into reality, working every day to make the world of tomorrow a better place. Do you have high standards when it comes to your job? So do we. At Bosch, you will discover more than just work. Benefits and Career Opportunities Working in one of the Best Places to Work in Vietnam and Top 30 of the Most Innovative Companies all over the world Join in a dynamic and fast-growing global company ( English-speaking environment), with opportunity to work in global projects and being a part of innovation team contributing initiative ideas to the hi-tech world Onsite opportunities : short-term and long-term assignments in worldwide offices Engage in our diverse training programs which surely help strengthen both your personal and professionalism 13th-month salary bonus + attractive performance bonus (you'll love it!) + annual performance appraisal 100% offered salary and mandatory social insurances in 2-month probation 15++ days of annual leave + 1-day of birthday leave Premium health insurance for employee and 02 family members Flexible working time and working model Lunch and parking allowance Good benefits of company activities such as: football, badminton, yoga, Aerobic, team building…

Selalu baca iklan lengkapnya di situs sumber sebelum melamar. Detail bisa berubah kapan saja.

Keyword CV dan Analisis Get Karier

Dua bagian, kekunci bareng

Dua bagian ini buat member

Hard skill dan soft skill yang diminta lowongan ini, siap disalin ke CV kamu. Plus analisis Get Karier: jalur visa dan aturan izin kerja di negaranya, bukti yang perlu terlihat di CV, dan langkah persiapannya, lengkap dengan sumbernya.

Masuk atau daftar gratis

Dari Get Karier

99 CV Siap Pakai

99 contoh CV per role dan level. Sesuaikan dengan keyword lowongan ini.