Application Deadline: 31 December 2026
Department: Technology-CDSIO
Location: Hong Kong (SAR)
Description
About Mox
Mox is built by and for the ones who aspire to live life to the fullest – we call them Generation Mox! The name Mox reflects the endless opportunities we can create, - Mobile eXperience; Money eXperience; Money X (multiplier), eXponential growth, eXploration… it’s all up for us to define together.
Why Mox
Everything at Mox – from our products, features, to rewards – is designed based on customer research, tailor made for your needs. We care about what customers care about, especially in data security and privacy. Data ethics is core to everyone here at Mox. Mox rewards you with an array of banking and lifestyle benefits. Who says banking can’t be fun?
What we are looking for?
We are seeking a highly motivated
Cyber Security Engineer to join the growing
Cybersecurity team at Mox Bank.
In this role, you will focus on security engineering, automation, and systems maintenance. Reporting to the
Senior Platform Security Engineer, you will help embed automated security testing into software pipelines, maintain policy-as-code linting tools, write scripts that reduce manual operational effort, and keep internally built cybersecurity tools running reliably.
This is a strong growth opportunity for an ambitious junior engineer with 2–3+ years of experience. With direct mentorship from senior engineering and architecture leads, the role offers a clear pathway into DevSecOps and platform security.
Responsibilities
- Writing and maintaining scripts in Python, Bash, or similar languages to automate routine security tasks and operational workflows.
- Supporting security tools within CI/CD pipelines, including SAST, DAST, secrets detection, software composition analysis, and vulnerability triaging.
- Working with Git, source control practices, pull requests, and basic software delivery workflows to manage internal security tooling and infrastructure code.
- Foundational exposure to AWS cloud concepts, IAM roles, infrastructure-as-code, configuration drift monitoring, and cloud security hygiene.
- Maintaining internal systems, documentation, dependencies, and automation solutions so that cybersecurity tooling remains reliable, current, and production-aligned.
- Using automation tools, APIs, webhooks, and AI-assisted techniques responsibly to improve speed, accuracy, and operational efficiency.
Skills, Knowledge and Expertise
CI/CD Security Automation & Tooling Support:
- Scanner Operations: Assist in the day-to-day administration and health checks of automated security tools embedded in our developer pipelines, including SAST, DAST, and Software Composition Analysis.
- Secrets detection: Monitor automated pipelines for exposed secrets, API keys, and credentials, and trigger rapid remediation when alerts occur.
- Vulnerability triage: Review automated scan results, help identify false positives, and guide development squads on baseline remediation steps.
Scripting & Operational Efficiency:
- Security Scripting: Write clean, documented scripts, primarily in Python or Bash, to automate routine security checks, log aggregation, and administrative tasks.
- Alert integration: Maintain and optimize webhook-based messaging pipelines that push critical security alerts into squad and team collaboration channels.
Infrastructure & Policy-as-Code (IaC) Linting:- Static Code Analysis: Monitor and review configuration scans on Infrastructure-as-Code templates to identify misconfigured cloud storage, over-privileged security groups, or unencrypted assets before they reach production.
- Drift Monitoring: Support the team in tracking cloud configuration drift, helping identify when manual modifications bypass our GitOps pipelines.
System, Code & Infrastructure Maintenance:
- Internal Tool Upkeep: Manage the routine maintenance, performance health, and patching of internally built applications, scripts, and automation solutions developed by the cybersecurity engineering (CSE) squad.
- Dependency & Package Management: Monitor and update code dependencies, libraries, and base container images for internal cyber infrastructure to prevent security vulnerabilities within our own toolset (e.g., managing Dependabot alerts for internal repos).
- Documentation: Maintain up-to-date documentation, deployment guides, runtime instructions, and README files for all internal systems and automated code solutions to ensure team continuity.
- Infrastructure-as-Code Versioning: Ensure internal cybersecurity testing environments and infrastructure deployments match production configurations and are correctly tracked using Git version control.
Foundational Identity & Cloud Support:
- IAM Audit Assistance: Support the Senior IAM Engineer by executing routine, automated checks on cloud access roles, ensuring orphaned accounts are flagged for deletion.
- Evidence Gathering Support: Help package automated security report outputs and scanning metrics to pass to the Governance team for regulatory review.
Automation, Optimization & AI Leverage
- Automation-first execution: Identify, design, and implement opportunities to replace repetitive manual security tasks, data compilation, and alert triage with scalable scripts, code, or automated playbooks.
- Process and tool optimization: Review workflows, handoffs, and security tooling configurations to reduce operational friction, remove system noise, and improve the effectiveness of Mox’s security stack.
- Secure AI augmentation: Use AI, machine learning, and LLM assistants responsibly to accelerate script generation, log analysis, pattern matching, threat intelligence summaries, and draft reporting while maintaining internal data classification requirements.
Continuous Optimization & Digital Fluency:
- Optimizer mindset: Proactively look for ways to make existing processes faster, cleaner, more reliable, and less manual.
- AI & Prompt Literacy: Practical comfort and developing fluency in utilizing modern AI-powered coding assistants, analytics platforms, and conversational LLMs to securely enhance technical speed, analytical accuracy, and delivery output.
- Agile tooling familiarity: Basic exposure to automation tools, APIs, webhooks, or scripting patterns that help security systems communicate and share data.
All personal data provided by applicants will be used for recruitment and other employment-related purposes only. Personal data of unsuccessful applicants will be erased within 24 months of rejection of the applicant’s application.