Posted May 13, 2026
Cymetrics 是亞洲領先的資安原廠之一,擁有專屬的高端資安產品。我們提供專業的紅隊演練、滲透測試和弱點掃描服務,集結了工程技術與資安專長的團隊。
團隊成員均擁有資安風險管理和滲透測試的專業知識,具有在四大管理顧問公司、領導資安服務商、知名品牌原廠的豐富經驗,且積極參與國際 CTF 競賽,並曾取得世界第三名。我們服務的客戶來自不同產業,包括政府、金融、製造業、高科技和電子商務等等。我們團隊也協助集團獲得 ISO 27001 和 ISO 27017 認證,強化集團資安治理。團隊的核心價值在於創新、專業和協作,以提供高效的資安解決方案。
身為 Cymetrics 的資安工程師,你會擔任紅隊演練、滲透測試的主要攻擊手,深入挖掘弱點,並一同與 Mid, junior level 的夥伴一起完成專案。在自有開發的產品中提供專業的想法與意見。一起討論並優化專案執行的成效。
Know more about Cymetrics: https://cymetrics.io/zh-tw/
TechBlog: https://tech-blog.cymetrics.io/
How to apply
Please apply for this position through 👉 https://grnh.se/bfdfcf844us
It will help us process your applications faster! Our Product
我們的資訊安全團隊 Cymetrics,專注於提供全面的資安評估 SaaS 平台。團隊成員均擁有資安風險管理和滲透測試的專業知識,具有在四大管理顧問公司、台灣領導資安服務商、知名品牌原廠的豐富經驗,且積極參與國際 CTF 競賽,並曾取得世界第三名,2024 年更獲得知名藍隊競賽 HITCON CYBER RANGE 第一名佳績。我們服務的客戶來自不同產業,包括政府、金融、製造業、高科技和電子商務等等。我們團隊也協助集團獲得 ISO 27001 和 ISO 27017 認證,強化集團資安治理。團隊的核心價值在於創新、專業和協作,以提供高效的資安解決方案。
Responsibilities
Requirements
Plus
Cymetrics is one of the leading cybersecurity solution providers in Asia, offering exclusive high-end cybersecurity products. We specialize in professional red teaming, penetration testing and vulnerability scanning services, assembling a team with engineering expertise and cybersecurity specialization. Team members possess professional knowledge in cybersecurity risk management and penetration testing, with extensive experience in major consulting firms, leading cybersecurity service providers, and renowned brand OEMs. They actively participate in international CTF (Capture The Flag) competitions, achieving top three places globally. Our clientele spans diverse industries, including government, finance, manufacturing, high-tech, and e-commerce, among others. Additionally, our team assists the group in obtaining ISO 27001 and ISO 27017 certifications, reinforcing the group's cybersecurity governance. The core values of our team lie in innovation, professionalism, and collaboration, aiming to deliver efficient cybersecurity solutions. As a Cybersecurity Engineer at Cymetrics, you will serve as the primary attacker in red teaming and penetration testing, deeply probing vulnerabilities, and collaborating with mid and junior-level partners to complete projects. You will contribute professional insights and opinions to our proprietary product development, engaging in discussions to optimize project execution effectiveness. Know more about Cymetrics: https://cymetrics.io/en-us/
Tech Blog: https://tech-blog.cymetrics.io/
Our Product
Our cybersecurity team, Cymetrics, is committed to providing a comprehensive cybersecurity assessment SaaS platform. With expertise in risk management and penetration testing, our team includes professionals from Big 4 consulting, leading cybersecurity services provider global banks, and top cybersecurity firms. Cymetrics excels in international CTF competitions, achieving a top-three global ranking and securing 1st place in the prestigious 2024 HITCON Cyber Range blue team. competition. Cymetrics supports clients across government, finance, manufacturing, high-tech, and e-commerce sectors. We’ve also secured ISO 27001 and ISO 27017 certifications for our group. Focused on innovation and collaboration, Cymetrics provides an AI security and LLM verification platform to assess AI models for vulnerabilities and Responsible AI compliance. Responsibilities
Planning and executing redteam project and penetration tests, aiding clients in identifying vulnerabilities, verifying remediation, and validating fix outcomes. - Conducting project meetings with clients, engaging in effective communication, clarifying issues, and assisting clients in problem resolution. - Assisting in the development of automated security tools, collaborating with the software engineering team to complete proprietary SaaS products. - Collaborating with the product development team to enhance cybersecurity products and platforms. - Researching vulnerabilities in websites or open-source projects and documenting findings in articles published on the company's TechBlog. Requirements
Three or more years of practical experience in red teaming, penetration testing and lateral movement in internal networks. - Familiarity with modern web frameworks (such as React, Angular, Vue.js) and client-side security vulnerabilities (e.g., XSS, CSRF, CSP bypass, GraphQL). - Familiarity with OWASP testing guides and other security testing methodologies, with a deep understanding of web vulnerabilities, operating systems, network architecture, and underlying principles. - Ability to articulate and document test results, provide remediation suggestions clearly, and effectively communicate with teams and clients. - Fluency in spoken and written English to explain penetration test reports to clients. Plus
Interest in blockchain-related cybersecurity technology. - Experience in bug bounty programs from reputable companies or participation in international CTFs (or equivalent CVE vulnerabilities). - Possession of OSWE, OSEP or OSCP certifications (or other equivalent information security certifications). - Proficiency in writing technical articles related to cybersecurity (vulnerability research, CTF write-ups, etc.). - Involvement in open-source projects, demonstrating contributions to and collaboration within the security community. - Fluency in spoken and written Chinese. How to apply
Please apply for this position through 👉 https://grnh.se/bfdfcf844us
It will help us process your applications faster!
Don't want to apply yourself?
Our team writes your resume, applies for you, preps you for interviews, and negotiates your offer.
Browse Jobs
By Role
By City