- Страна
- Гонконг
Откликайтесь
на вакансии с ИИ

Senior Product Security Engineer
Отличная вакансия в престижной финтех-компании с фокусом на современные технологии (Rust, Cloud). Высокий балл обусловлен сильной инженерной культурой и работой на стыке финансов и кибербезопасности.
Сложность вакансии
Роль требует глубоких знаний в области безопасности приложений и облачных инфраструктур, а также владения несколькими языками программирования (Rust, C++, Python). Работа в сфере количественных инвестиций подразумевает высокие требования к производительности и ответственности.
Анализ зарплаты
Зарплата в вакансии не указана, но для позиции Senior Product Security Engineer в финансовом секторе Гонконга рыночные показатели значительно выше средних по городу. Учитывая специфику количественного трейдинга (HFT/Quant), компенсация часто включает значительные бонусы.
Сопроводительное письмо
I am writing to express my strong interest in the Senior Product Security Engineer position at Qube Research & Technologies. With over five years of experience in application security and a deep background in securing high-performance systems, I am impressed by QRT's scientific approach to investing and your commitment to embedding security into the core of your technology stack.
In my previous roles, I have successfully integrated SAST/DAST tools into CI/CD pipelines and conducted extensive threat modeling for cloud-native applications. My proficiency in Python and Rust, combined with a solid understanding of both AWS and Azure environments, aligns perfectly with your requirement for a versatile engineer who can work across diverse languages and platforms. I am particularly excited about the opportunity to apply my skills in a low-latency, data-driven environment where security is a critical enabler of business success.
I am eager to bring my expertise in vulnerability management and secure system design to the Security team at QRT. Thank you for considering my application. I look forward to the possibility of discussing how my technical background can contribute to the continued security and innovation of your global investment platform.
Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в quberesearchandtechnologies уже сейчас
Присоединяйтесь к ведущей количественной инвестиционной компании и защищайте инновационные финансовые технологии в Гонконге!
Описание вакансии
Qube Research & Technologies (QRT) is a global quantitative and systematic investment manager, operating in all liquid asset classes across the world. We are a technology and data driven group implementing a scientific approach to investing. Combining data, research, technology, and trading expertise has shaped our collaborative mindset, which enables us to solve the most complex challenges. QRT’s culture of innovation continuously drives our ambition to deliver high quality returns for our investors.
Your future role within QRT
You will join the Security team, working closely with Software Engineers and Infrastructure teams to embed security into the design, development, and operation of systems across cloud services, business applications, and core infrastructure.
- Support the implementation and operation of product security controls across cloud services, core infrastructure, and business applications on Windows and Linux platforms
- Work with engineering teams to integrate security into system design and development, applying practical approaches suitable for fast-moving environments
- Contribute to secure software development practices, including supporting security reviews across languages such as Python, C++, Rust, Go, and Kotlin/Java
- Perform threat modelling, vulnerability assessments, and security code reviews with guidance from senior team members
- Assist with integrating and operating security tooling (e.g., SAST, DAST, dependency scanning) within CI/CD pipelines and runtime environments
- Identify security risks and contribute to remediation and mitigation plans with engineering teams
- Perform vendor security reviews to assess third-party security practices against internal standards
- Build your product security knowledge and share learnings with peers across engineering teams
Requirements:
- 3–5 years of experience in product security, application security, software engineering, or a related role
- Hands-on experience with secure coding practices and at least one of: Python, C++, Rust, Go, Kotlin/Java
- Solid technical foundation in software development, system architecture, or infrastructure, with a strong interest in security
- Working knowledge of security principles and common vulnerabilities affecting software, cloud platforms, and business applications
- Experience securing Windows and/or Linux-based systems
- Practical experience with at least one cloud platform (AWS or Microsoft Azure), ideally in hybrid environments
- Familiarity with threat modelling, vulnerability management, and risk assessment concepts
- Experience using or integrating security scanning tools into development workflows and/or CI/CD pipelines
- Strong problem-solving skills, clear communication, and willingness to learn in a fast-paced environment
- Exposure to low-latency or performance-sensitive systems
- Experience in financial services and/or regulated environments
- Interest in automation and security tooling development
QRT is an equal opportunity employer. We welcome diversity as essential to our success. QRT empowers employees to work openly and respectfully to achieve collective success. In addition to professional achievement, we are offering initiatives and programs to enable employees achieve a healthy work-life balance.
Создайте идеальное резюме с помощью ИИ-агента

Навыки
- Python
- C++
- Rust
- Go
- Kotlin
- Java
- AWS
- Azure
- SAST
- DAST
- Threat Modeling
- Vulnerability Assessment
- CI/CD
- Linux
- Windows
Возможные вопросы на собеседовании
Проверка навыков проектирования безопасных систем в контексте специфики компании.
Как бы вы подошли к моделированию угроз для торговой платформы с низкой задержкой (low-latency)?
Оценка практического опыта работы с современными языками программирования, упомянутыми в вакансии.
Какие специфические уязвимости памяти вы бы искали при аудите кода на C++ или Rust?
Проверка умения автоматизировать процессы безопасности.
Опишите ваш опыт интеграции инструментов безопасности (SAST/DAST) в CI/CD пайплайны без существенного замедления процесса разработки.
Оценка знаний облачной безопасности в гибридных средах.
С какими основными рисками безопасности вы сталкивались при работе в гибридной среде (on-prem + AWS/Azure) и как вы их минимизировали?
Проверка навыков взаимодействия с командами разработки.
Как вы убеждаете разработчиков приоритизировать исправление уязвимостей, если они считают, что это замедляет выпуск продукта?
Похожие вакансии
Pentester (Offensive Security)
Специалист по информационной безопасности
Application security specialist
Senior Cybersecurity Engineer
Sr. Manager, Identity & Access Management
Senior DevSecOps / Platform Security Engineer (AWS + Kubernetes)
1000+ офферов получено
Устали искать работу? Мы найдём её за вас
Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!
- Страна
- Гонконг