Security Engineer Endpoint Security jobs in Seoul – Browse 404 openings on RoboApply Jobs

Security Engineer Endpoint Security jobs in Seoul

Open roles matching “Security Engineer Endpoint Security” with location signals for Seoul. 404 active listings on RoboApply Jobs.

404 jobs found

1 - 20 of 404 Jobs
Apply
companyToss Bank logo
Full-time|On-site|Seoul

About the Team You Will Join The Security Division at Toss Bank comprises multiple teams including Security Policy, Privacy Protection, System Security, Network Security, Security Red Team, Security Blue Team, IT Service, and Security Audit. The Security Engineer (Endpoint Security) will work within the Security Division to manage various tasks aimed at protecting endpoints from external threats, particularly as part of the System Security Team. The Security Division collaborates with various teams to create secure and reliable services, and the System Security Team works closely with product organizations, Legal & Compliance, Platform Engineering, and Internal Audit to ensure security and regulatory compliance. We are dedicated to providing a secure environment for electronic financial transactions and to seamlessly integrating security into the daily operations of our users. Key Responsibilities Operate security solutions to protect Toss Bank's customers. Build, manage, and operate endpoint security solutions including Antivirus (AV), Data Loss Prevention (DLP), Network Access Control (NAC), and Endpoint Privilege Management (EPM). Ensure stable operation of endpoint security solutions and quickly resolve operational issues. Establish endpoint security policies for Windows and Mac OS and engage in proactive information security activities. Analyze events through endpoint security solutions and conduct threat response activities. Desired Qualifications A minimum of 5 years of experience in operating endpoint security solutions. Deep understanding of PC and server operating systems. Familiarity with basic networking and architecture concepts. Strong understanding of the operational principles and policies of endpoint security solutions. Experience with open-source endpoint security solutions and automation of security solutions is a plus. Application Instructions Please include detailed descriptions of your responsibilities and specific examples in your resume, as simple project lists may not be sufficient. We recommend submitting a portfolio along with your resume. Highlight your experiences and knowledge relevant to the job area in your application. In your portfolio, please document your studies or practical experiences in security technology and your level of understanding. Join Us at Toss Bank Application Submission > Job Interview > Cultural Fit Interview > Reference Check > Compensation Discussion > Final Acceptance and Onboarding Please Note Any discovery of false information in your resume or disciplinary actions during your employment history may result in cancellation of your application.

Mar 9, 2026
Apply
companyToss Securities logo
Full-time|On-site|Seoul

About the Team You'll Join The Security Division at Toss Securities is composed of the Security Policy Team, Security Engineering Team, Security Audit Team, and IT Innovation Team, with the Security Engineering Team focusing on technical security tasks. The security team receives comprehensive support across the organization to ensure the safety of Toss Securities services and collaborates closely with all departments. Each team member actively engages with peers in similar roles across subsidiaries, sharing knowledge and experiences to achieve common goals. The team comprises members with diverse experience levels ranging from 1 to 20 years, many of whom have backgrounds in information security firms and corporate information security roles. This year, the Security Engineering Team aims to enhance its information security management system to achieve international recognition and strengthen its capabilities in SOAR, ZTNA, and Cloud/Container security. Your Responsibilities You will identify potential security threats, data leakage risks, and compliance violations across endpoint environments and work to mitigate these issues. Analyze conflicts between security requirements and actual workflows, implementing solutions that balance security and user experience. Address endpoint security issues by analyzing root causes and implementing improvements to prevent recurrence. Manage to maintain consistent endpoint security standards throughout the device lifecycle. Design and automate policy-based control logic to evaluate endpoint status, user context, device posture, and the policy settings of security solutions to determine access permissions. Integrate endpoint security controls with IAM and access control to enhance the overall security framework. Who We're Looking For Experience in designing and customizing detection rules, blocking policies, and monitoring logic based on potential security threats in endpoint environments. Experience in designing and implementing technical solutions such as policy exceptions, temporary authorizations, and selective monitoring to ensure security controls do not hinder actual workflows. Experience in investigating endpoint security issues through log analysis, process tracing, and filesystem investigation at the Windows and macOS levels to identify root causes and establish preventive measures. Experience in designing and managing systems to maintain consistency in security standards throughout the entire lifecycle of devices, from provisioning to disposal. Ability to implement a Policy Decision Point that determines access permissions based on endpoint status information collected via security solution APIs, with experience in Python/Go, OPA, or AI/MCP-based tools being a plus. Experience in integrating security context collected from endpoints (such as device compliance and threat detection results) with IAM, network, and application layer access controls via SCIM, Webhook, and API would be advantageous. Your Pathway to Joining Toss Securities Application Submission > Job Interview > Cultural Fit Interview > Reference Check > Negotiation of Terms > Final Acceptance and Onboarding Additional Information Employment may be rescinded if false information is found in the resume or if any disciplinary actions are confirmed during employment history. Individuals who are prohibited from employment under Toss Securities regulations or have disqualifying factors may have their applications canceled. Individuals with disabilities and veterans will receive preferential treatment in accordance with relevant laws. A Note for Potential Colleagues We value innovation, collaboration, and a passion for security in our team. Join us to make a significant impact in the world of cybersecurity!

Mar 10, 2026
Apply
companyDaangn logo
Full-time|On-site|SEOUL

Welcome to the Daangn Team!At Daangn, we strive to create an environment where individuals can grow alongside the company's success.We are here to assist you in reaching that moment of joy while working with wonderful colleagues. Introducing the Security TeamThe Security Team aims to ensure that Daangn provides services securely. We defend against external attacks and prevent the leakage of valuable internal information. All our activities comply with various information protection laws and regulations. By understanding Daangn's business model, we provide clear standards that are implemented technically. Through these efforts, we create a reliable service that users can trust.Key ResponsibilitiesAssess and improve security risks in AI/ML-based service environments.Audit and manage access controls and security configurations for AI service components, including training data, model files, APIs, and infrastructure.Monitor and respond to security issues in LLM and generative AI environments, such as prompt injection and data leaks.Analyze AI service logs to detect anomalies, investigate security events, and resolve issues.Conduct security vulnerability assessments and actions during model deployment and operation.Establish and continuously improve security guidelines and policies.We Seek Candidates Who:Have experience in vulnerability assessments, penetration testing, or incident response.Are familiar with LLMs and understand the operational mechanisms of prompt-based services.Have a foundational understanding of cloud architecture (IAM, networking, storage) in platforms like AWS, GCP, or Azure.Possess basic knowledge of AI/ML or LLM service structures.Have experience in log analysis and root cause identification.Are proactive in addressing security issues, focusing on improvements rather than just reporting.Preferred Qualifications:Understanding of ML pipelines (data collection → training → deployment → monitoring).Experience with container environments such as Docker and Kubernetes.Have at least one year of experience in security, cloud, backend, or ML engineering.Have experience in improving repetitive tasks through security automation or scripting.Regularly learn about and share new AI security issues or trends.Additional InformationThere is a 3-month probation period for full-time hires.As per the Employment Promotion and Vocational Rehabilitation of Persons with Disabilities Act and the Act on the Honorable Treatment and Support of Veterans, individuals with disabilities and veterans will receive preferential hiring.

Mar 16, 2026
Apply
companyTosscareers logo
Full-time|On-site|Seoul

#LI-DNI Join Our Dynamic Security Team! As a Security Engineer at Tosscareers, you will be part of the Information & Security Tribe, handling technical operations within the Security Purple Team and Security Green Team. The Security Purple Team is a hybrid of Red and Blue teams, focusing on event analysis, incident response, vulnerability assessments, penetration testing, and scenario-based threat modeling. We prioritize customer safety and collaborate closely with all teams to enhance Toss's security measures. Your Responsibilities Will Include: Designing, building, and operating SIEM (Splunk, Opensearch, Elasticsearch). Creating robust architectures for secure log collection across various environments (On-Prem, AWS, K8S). Ensuring stable operation and enhancement of log pipelines (NIFI, KAFKA, Hadoop). Establishing and managing logging/monitoring systems for performance optimization and incident response of the Security Data Platform (SIEM). Designing and normalizing standard models for various logs to improve log analysis efficiency. We Are Looking For Candidates Who: Have experience in designing and building scalable and optimized SIEM systems. Can identify and resolve issues in log collection, data loading, search, and query building processes. Have worked with heterogeneous security log pipelines in On-Prem and AWS environments (ETL, ELT). Have standardized various forms of security logs (OCSF, CIM, etc.) for easier analysis. Have automated tasks using Python scripting. Resume Tips: Detail specific examples of your work, particularly your roles in projects, the technologies used, and improvements made before and after. Explain any challenges faced during problem-solving and how you addressed them. If you have diverse problem-solving experiences (technical, managerial), provide concrete examples. Include specific cases where you applied learned technical skills to your work.

Mar 9, 2026
Apply
companyToss logo
Full-time|On-site|Seoul

Team and Collaboration The Security team at Toss brings together a range of professionals: CISO, Security Engineers, Security Researchers, Information Security Managers, Privacy Managers, and IT Managers. This group works closely with the Infra team, product development silos, Legal, and Compliance to build secure services for Toss. Members also connect with security peers across subsidiaries, sharing knowledge and collaborating on specialized areas. Working here means helping to build and improve security systems that support Toss in delivering reliable services. What You Will Do Design and operate AWS cloud security architecture, managing cloud security infrastructure such as CSPM and CWPP. Set up detection and response systems using logs, and automate security policies with IaC tools like Terraform. Manage IDS/IPS, WAF, and DDoS protection systems, addressing network vulnerabilities proactively. Design and refine detection policies through traffic and packet analysis, including regular expressions. Collect and respond to security events using SIEM/SOAR, and operate endpoint solutions like EDR and DLP to strengthen organizational security. Lead security design at the service architecture level and support technical compliance requirements. Requirements At least 5 years of experience as an in-house Security Engineer. Hands-on experience building and operating security systems in AWS cloud environments. Background in constructing and managing network security solutions (IDS/IPS, WAF) and capability in traffic and packet analysis, including optimizing detection policies. Experience with SIEM for event correlation analysis and developing threat hunting and response playbooks is preferred. Familiarity with endpoint security solutions such as EDR, AV, and DLP, as well as handling malware responses and configurations, is a plus. Technical experience with security certifications and financial regulations (ISO27001, PCI-DSS, ISMS-P) is advantageous. Resume Tips Describe previous roles with clear examples, emphasizing project contributions, technology stacks, and measurable improvements. Share how you approached and solved challenges, including your thought process. Include experiences where you identified and responded to security threats or resolved technical and managerial issues. Highlight specific cases where you learned and applied new security technologies or addressed emerging threats. Hiring Process Application Job Interview Cultural Fit Interview Reference Check Compensation Negotiation Final Offer and Onboarding Voices from the Team "I enjoy working with exceptional colleagues." One team member who joined after serving as the sole security officer at a previous company shared how building Toss's security infrastructure alongside the team has brought stability and a stronger security posture. This collaborative environment has become a source of pride as the team secures valuable assets together. Toss encourages setting personal goals every half-year, empowering team members to take ownership and collaborate with accomplished peers.

Apr 29, 2026
Apply
companydaangn logo
Full-time|On-site|SEOUL

Security Engineers at daangn focus on protecting infrastructure and keeping user data safe. This position centers on finding vulnerabilities through penetration testing and setting up strong security protocols across our systems. Role overview This role involves hands-on work with infrastructure security in Seoul. The main responsibility is to identify and assess security risks, then act to address those issues. Attention to detail and a methodical approach are important, as your work directly impacts the safety of our platform. What you will do Conduct penetration tests to uncover vulnerabilities in our infrastructure Implement and maintain security protocols to meet high standards Support ongoing efforts to protect user data and system integrity Requirements Experience with infrastructure security and penetration testing Ability to identify, analyze, and address security vulnerabilities Commitment to maintaining strong security practices

Apr 29, 2026
Apply
companyToss Bank logo
Full-time|On-site|Seoul

About the Team You Will JoinThe Security Division of Toss Bank consists of various teams including Security Policy, Privacy Protection, System Security, Network Security, Security Red Team, Security Blue Team, IT Service, and Security Audit teams.The Network Security Engineer at Toss Bank will be responsible for the implementation and management of internal and external firewall systems, along with various tasks related to network security, including the operation of DDoS, IPS, and WAF systems.The Security Division collaborates with multiple teams to create a safe and reliable service for Toss Bank. The Network Security Team particularly works closely with product groups, and Legal & Compliance, Platform Engineering, and Internal Audit teams to ensure compliance and internal controls.Toss Bank's Security Division is committed to securing electronic financial transactions for clients and providing a safe working environment for employees.Responsibilities You Will HaveManage and improve network security solutions (FW, DDoS, IDS/IPS, WAF, Suricata) to protect services and employee work environments.Monitor and respond to network attacks and anomalies in real-time, continuously reviewing, tuning, and optimizing detection policies and rules.Design stable network security architecture and lead the construction and enhancement of new systems.Enhance operational efficiency through automation, creating an environment where security personnel can focus on strategic tasks.Ideal Candidate ProfileExperience in building and operating network security solutions (FW, DDoS, IDS/IPS, WAF, Suricata).Ability to analyze network security events/logs and experience in understanding and responding to various attacks.A deeper understanding of enterprise security infrastructure beyond simple equipment operations, focusing on policy, permissions, assets, and risk-based operations.Experience or fundamental understanding of network security architecture design, as well as experience in network troubleshooting and packet analysis (e.g., using Wireshark).Please Include the Following in Your ResumeRather than listing projects, we recommend detailing your roles, contributions, and results with specific examples.If you have experience designing network security architecture, detecting/blocking intrusions through pattern/signature analysis, or participating in drills, please mention them.Especially if you have detailed experiences in building/operating network security solutions or troubleshooting, please describe them thoroughly.

Mar 9, 2026
Apply
companyToss Securities logo
Full-time|On-site|Seoul

About the Team You'll JoinThe Network Security Engineer at Toss Securities is part of the Network Engineering Team, collaborating closely with Network Engineers and IDC Managers.We work with top talents across various sectors, including finance, commerce, portals, and gaming, to establish and support secure networks for both external and internal customers.Our goal is to ensure that our teams can focus on product development by building robust infrastructure capable of supporting the largest retail securities firm in the market, driving automation for faster product launches. Your ResponsibilitiesAs a Network Security Engineer, you will manage security devices such as firewalls and VPNs to protect our customers and teams.Maintain a reliable, high-availability network that operates 24/7, continuously improving its resilience.Collaborate on the design and implementation of networks that interact with applications and servers.Build and operate network security devices, providing security foundation technologies within the data center. Who We Are Looking ForA minimum of 5 years of experience in building and operating network security devices.Experience in analyzing, optimizing, and maintaining firewall policies is essential.Strong understanding of TCP/IP protocols with packet analysis experience for troubleshooting.Experience with API integration of network security devices or scripting for automation is a plus.Familiarity with financial information protection regulations and experience in related implementations is advantageous.Experience designing and building security network architectures optimized for high traffic is highly desirable.Experience in public cloud environments (AWS, GCP, Azure) is a strong plus. Resume RecommendationsPlease describe a memorable technical issue you resolved (optimization, bug fix, etc.).Detail your contributions to projects, including your role, technologies used, and outcomes before and after the project. Journey to Joining Toss SecuritiesApplication submission > Technical interview > Cultural fit interview > Reference check > Salary negotiation > Final acceptance and onboarding. Please NoteAny inaccuracies in your resume or disciplinary history during employment may result in cancellation of the hiring process.Candidates identified as ineligible according to Toss Securities' regulations may have their applications canceled.Persons with disabilities and veterans will be given preference in accordance with applicable laws.

Mar 9, 2026
Apply
companyToss Careers logo
Full-time|On-site|Seoul

About the Team You Will JoinThe Security Infrastructure team is dedicated to designing security architectures that ensure the safe expansion of Toss's business, implementing and automating these architectures in real-world environments.This team covers cloud, network, and endpoint security, directly designing and implementing security policies and controls based on key infrastructure.We select technology stacks, create log architectures, and access control models, building a structure that defends against actual threats rather than merely implementing security for security's sake.Our team consists of members with diverse experiences, primarily from corporate information security roles and specialized information protection companies.We are looking for individuals who start with the question of “Why?” to improve security structures and design safer, more efficient methods while balancing technology and business needs.Responsibilities You Will UndertakeDevelop and manage information security solutions that protect Toss's services and employee environments.Establish and operate an access control system for internal information systems.Build a network separation environment and information leak response systems in accordance with financial compliance.Plan and operate systems to enhance security visibility and access control systems.Conduct modern threat analysis and incorporate global trends while establishing AI-based detection and analysis systems and real-time response strategies.Additional ResponsibilitiesDesign, build, and operate infrastructure security architectures across cloud (AWS/GCP/Azure) and on-premises/hybrid environments, covering networks, servers, databases, and containers. You may focus on either cloud or network based on your strengths.Design and reliably implement core security policies like IAM, network segmentation, access control, and encryption (KMS) in real environments.Structure repetitive security operations based on IaC and automation while collaborating with other teams to establish actionable security standards.Analyze security events and breach incidents to design and fundamentally improve security structure, policies, and automation.Ideal CandidateWe are searching for individuals with over 3 years of relevant experience.You should have experience dealing with infrastructure across cloud, network, and systems, not limited to one area.Experience in enhancing detection and response systems using security solutions like CSPM/CNAPP, SIEM, EDR, WAF, and KMS is essential.Experience in designing or improving operational efficiency through security automation and IaC with tools like Terraform/CloudFormation, Ansible, and Python is required.You should have experience interpreting and integrating security requirements in financial and regulatory environments (ISMS-P, ISO27001, PCI-DSS).

Mar 9, 2026
Apply
companyToss Bank logo
Contract|On-site|Seoul

Join Our TeamToss Bank's Security Division consists of specialized teams including Security Policy, Privacy Protection, System Security, Network Security, Red Team, Blue Team, IT Service, and Security Audit.The Security Operations Specialist (System Security) plays a crucial role in safeguarding Toss Bank’s systems against external threats, operating within the System Security Team.This division collaborates with various teams to create a safe and reliable Toss Bank service. Specifically, the System Security Team works closely with product organizations, Legal & Compliance, Platform Engineering, and Internal Audit to ensure regulatory compliance and internal controls. The synergy across all teams fosters effective collaboration towards shared goals.The Security Division is committed to providing secure electronic financial transaction services, ensuring that security is integrated into users' workflows for a safe working environment.Key ResponsibilitiesDevelop, manage, and enhance access control security solutions.Manage security solutions such as Server Access Control (SAC), Database Access Control (DAC), and Apache Ranger.Troubleshoot and resolve various issues arising from security solutions.Enhance operational policies and elevate management standards through diverse tools and methods.Who We're Looking ForExperience in information security is beneficial but not mandatory. Candidates with experience managing access control security solutions or understanding the principles of various security solutions are preferred.Interest in automating security tasks using PowerShell, Python, or APIs to improve efficiency and management is desirable.Understanding of IT infrastructure, operating systems, and databases relevant to security solution operations is expected.A strong desire to analyze and resolve issues that arise during the operation of security solutions is sought.Experience in automating repetitive operational tasks and working with log parsing, cleansing, and detection rule creation is advantageous.Experience in implementing security policies to comply with electronic financial transaction laws and regulations is a plus.Resume Submission GuidelinesPlease provide detailed examples of your work experience, highlighting your role in projects, technologies used, and improvements made before and after.If you faced challenges while solving problems, explain your thought process and how you resolved them.If you have experience identifying and responding to security threats or solving diverse issues (technical and managerial), please detail these experiences.Document your experiences in learning new security technologies and threats specifically.Application ProcessApplication Submission > Job Interview > Cultural Fit Interview > Reference Check (if applicable) > Offer Negotiation > Final Acceptance and OnboardingImportant NotesThis is a contract position with an initial contract period of one year.New graduates are welcome to apply!Any discrepancies found in the resume or disciplinary actions during previous employment may result in cancellation of the hiring process.

Mar 9, 2026
Apply
companyToss Securities logo
Full-time|On-site|seoul

Join Our Team The Security Audit Manager at Toss Securities will be part of the Security Division, working within the dedicated Security Audit Team. This team is responsible for conducting independent internal audits across the entire information security management system, IT infrastructure, and data management frameworks. Collaboration with various teams is essential to create reliable financial services, covering areas including security, infrastructure, platforms, and products. The Security Audit Team consists of specialists focusing on Information Security Management Systems and Data Management, supporting the decisions of the CISO and CPO. Key Responsibilities Develop annual audit plans based on information security policies and relevant regulations, auditing the security management status of IT infrastructure and information security systems comprehensively. Evaluate the adequacy and compliance of critical information security areas, including access control, security policy implementation, and encryption management. Inspect compliance with security requirements in modern IT environments, such as cloud computing and open-source software, including vulnerability management practices. Assess the appropriateness of IT disaster recovery and security incident response processes, identifying areas for improvement. Objectively analyze audit results, drafting reports and proposing actionable improvement strategies for identified issues. Ideal Candidate Profile Proven experience in information security audits or consulting, with demonstrated leadership skills in evaluating and enhancing information security management systems. Expertise in IT infrastructure and security systems (firewalls, IPS/IDS, WAF, etc.), along with experience in vulnerability analysis and assessment. Deep understanding of information security management system certification standards (ISMS-P, ISO 27001, etc.) and relevant regulations for conducting audits. Proficiency in security auditing within modern technology environments, including MSA, Kubernetes, and Cloud. Excellent communication skills to facilitate effective collaboration across diverse teams. Resume Tips Highlight your experience in information security management system audits or internal controls, including specific examples relevant to the role. Include experiences of improving IT environments or information security activities through audit responses and self-assessments. Detail instances where you identified vulnerabilities and made recommendations that enhanced the organization's security posture. If you have security audit experience in cloud environments or emerging technologies, please emphasize that as well as any complex problem-solving experiences with various teams. Application Process with Toss Securities Submit Application > Job Interview > Cultural Fit Interview > Reference Check > Salary Negotiation > Final Offer and Onboarding Important Notes Any discrepancies found in the resume or reports of disciplinary actions during employment may lead to cancellation of the hiring process. Individuals disqualified from hiring according to Toss Securities regulations will not be considered. Persons with disabilities and national veterans are given preference in accordance with relevant laws.

Mar 10, 2026
Apply
companyToss Securities logo
Full-time|On-site|Seoul

Join Our Security Team! The security team at Toss Securities is composed of dedicated professionals, including a CISO, Security Engineers, Security Researchers, Information Security Managers, and Privacy Managers. We are committed to creating secure services, receiving robust support from the entire organization, and collaborating effectively across all departments. Our team members, with diverse experience ranging from 1 to 20 years, primarily come from backgrounds in information security firms and corporate security roles. We actively share knowledge and collaborate to achieve common goals. To ensure the safe operation of our securities services, we conduct vulnerability assessments across various fields such as applications, cloud, infrastructure, and network. We are also developing automated testing systems using DAST, SAST, and IAST tools to enhance our testing framework. Your Responsibilities: Collaborate with relevant departments from the service planning stage to perform security reviews and provide guidelines for safe service implementation. Conduct vulnerability assessments on Toss Securities' internal and external services (WTS, MTS, operational systems, etc.), analyze results, and suggest improvements. Perform infrastructure vulnerability assessments as required by electronic financial regulations and domestic/international security certifications (Public/Private Cloud, Server, DBMS, Network, etc.). Execute scenario-based internal/external penetration tests and conduct preliminary checks to prevent internal information leaks. Who We're Looking For: Individuals with over 7 years of experience in vulnerability assessments. Experience in operating or conducting assessments with infrastructure vulnerability assessment tools. Experience in developing tools or automation programs for vulnerability assessments. Ability to perform REST API vulnerability assessments based on an understanding of MSA environments. Experience in security audits identifying vulnerabilities such as IDOR in Java or Kotlin source code. Experience in assessing application vulnerabilities in Android or iOS environments. Understanding of electronic financial services and securities systems is a plus. Experience or understanding of Attack Surface Management is a bonus. Application Tips: Include any services or programs you've developed or participated in, specifying the language, role, deployment status, and operational environment. Detail specific vulnerabilities identified through SAST, DAST, Image Scanning, Secret Scanning, and your corrective actions (company/service names can be anonymized). Explain how you assessed and responded to actual security incidents or potential risks, such as secret exposure or high-risk image vulnerabilities. Share challenges and solutions encountered during security assessment automation or policy application processes. Hiring Process at Toss Securities: Application submission > Job interview > Cultural fit interview > Reference check > Salary negotiation > Final acceptance and onboarding. Additional Information: Providing false information in your resume or discovering disciplinary actions in your employment history may lead to termination of the recruitment process.

Mar 27, 2026
Apply
company
Full-time|On-site|Seoul HQ

Key ResponsibilitiesCraft and implement a robust end-to-end security architecture tailored for SoC-based products.Develop features for Secure Boot and Anti-rollback mechanisms.Manage Key Provisioning alongside Hardware Root of Trust.Oversee Secure Lifecycle State management (LCS) for firmware, keys, and devices.Design and integrate security modules to enhance firmware and system-level defenses.Conduct thorough vulnerability assessments, attack surface evaluations, and implement memory protection hardening strategies.Integrate, validate, and optimize hardware cryptographic engines including AES/GCM engines, TRNG, PKA, RSA, PQC, and hash accelerators.Establish secure firmware update and rollback protocols along with comprehensive product lifecycle controls.QualificationsDeep understanding of embedded security principles, including Secure Boot, key management, and cryptography.Demonstrated experience with TLS, X.509, ECC, AES, and various cryptographic or security libraries.Proficient in C/C++ or Rust for developing secure system software.Experience identifying and analyzing security vulnerabilities in SoC/FPGA-based systems.Practical experience with hardware cryptographic engines and security IP blocks (e.g., AES/GCM, SHA accelerators, TRNG/DRBG, PKA).Solid understanding of firmware and key lifecycle management.Preferred QualificationsFamiliarity with TPM, HSM, TrustZone, OP-TEE, or related hardware security architectures.Experience in implementing secure firmware signing, provisioning, and deployment pipelines.Background in validating cryptographic engines under standards such as FIPS 140-3, NIST CMVP.Security engineering experience specifically for AI accelerators, networking chips, or SoCs.Contribute to development practices aligned with standards such as FIPS, PSA Certified, CAVP, and CMVP.

Dec 12, 2025
Apply
companyToss Securities logo
Full-time|On-site|Seoul

About the Team You'll JoinThe Security Division at Toss Securities consists of the Security Policy Team, Security Engineering Team, Security Audit Team, and IT Innovation Team, with the Security Engineering Team focusing on technical security tasks.The Security Division receives comprehensive support across the organization to create secure services and collaborates closely with all departments.The Security Division is made up of the Security Engineering Team and the Security Policy Team.Team members actively share experiences and knowledge with colleagues in similar roles within the company to achieve common goals.The team includes individuals with diverse experience levels, ranging from 1 to 20 years, most of whom have backgrounds in cybersecurity firms or as corporate security officers.In 2024, the Security Engineering Team aims to enhance its information security management framework to achieve international recognition, focusing on improving areas such as SOAR, ZTNA, and Cloud/Container security.Your ResponsibilitiesDevelop and manage Toss Securities' security monitoring system using SIEM.Gather and analyze various logs to create monitoring policies for security threats.Analyze and respond to security threats and incidents occurring in customer-facing services and employee work environments.Conduct incident analysis and response tasks.Ideal Candidate ProfileExperience in building and operating various log collection/analysis systems such as Splunk, ELK, and Kafka is essential.Proficient in creating correlation rules for sequential scenario detection in SIEM.Strong analytical skills for security incidents and security events are required.Ability to automate procedures for security log analysis, validation, and response development is necessary.Experience in threat response in various service environments, including IDC, CDN, Public Cloud, and Kubernetes, is a plus.Resume RecommendationsInclude at least two memorable examples of policies you created to detect security threats.If applicable, detail any cases of technical problem-solving (optimization, bug fixes, etc.) focusing on the technologies used and the outcomes achieved.Journey to Join Toss SecuritiesApplication Submission > Job Interview > Cultural Fit Interview > Reference Check > Salary Negotiation > Final Offer & OnboardingPlease NoteIf any false information is found in the resume or submitted documents, or if any disciplinary actions are confirmed during employment history, the hiring may be canceled.Hiring may be canceled for individuals who are prohibited from employment according to Toss Securities' regulations or who have disqualifying factors.Individuals with disabilities and veterans will be given preference according to relevant laws.A Word for Future Colleagues“You can enjoy working and growing as a security engineer in an environment where the latest technologies are actively adopted!”I am engaged in analyzing cybersecurity events and responding to incidents. To do this, additional data collection and expansion of the analysis system are necessary, and Toss's rapid collaboration culture allows me to focus quickly on the essence of analysis tasks.Working alongside experts in systems, networks, and security fields fosters my growth daily, and the active adoption of cutting-edge technologies makes it a pleasure for event analysts eager for trends to join us.

Mar 10, 2026
Apply
companyCoupang, Inc. logo
Full-time|On-site|Seoul, South Korea

Company OverviewCoupang is committed to delivering exceptional customer experiences. When our customers ask, "How did I live without Coupang?" we know we have fulfilled our mission. With a relentless dedication to making shopping, dining, and everyday life easier for our customers, Coupang is at the forefront of transforming the multibillion-dollar e-commerce industry. As one of the fastest-growing e-commerce companies, we have established a unique position in the domestic market and built trust with our customers.We pride ourselves on being a global public company with a startup culture. This agility is our driving force as we continuously launch new services and expand our business. Every employee at Coupang is given the opportunity to embody an entrepreneurial spirit and drive innovation and initiatives. The courage to dive into work without hesitation and achieve results is at the core of how we operate. At Coupang, you will witness growth in yourself, your colleagues, your team, and the entire company every day.All Coupang employees are genuinely invested in our mission to shape the future of commerce. We tackle customer challenges, defy traditional beliefs, and push the boundaries of what’s possible. If you seek a remarkable work experience in a hyper-connected world with high availability and cutting-edge technology, join us at Coupang.Job OverviewThe Coupang Blue Team plays a pivotal role in monitoring all cyber incidents through log analysis, detecting threats, and responding swiftly to minimize damage. To achieve this goal, the Blue Team comprises various specialized units, including the Security Operations Center (SOC), the Detection and Response Team (DART), the Detection Engineering team focusing on enhancing incident detection capabilities, and the Blue Operations team responsible for the effective and stable operation of diverse security solutions and services.

Dec 23, 2025
Apply
company
Full-time|On-site|Seoul HQ

About the RoleWe are seeking a dedicated Security Engineer to report directly to the CTO. This role is instrumental in establishing the company's security framework and implementing a Zero Trust architecture across our organization.You will be responsible for developing security policies, configuring systems, managing accounts, controlling access, ensuring cloud security, and conducting penetration testing.Key ResponsibilitiesEstablish and execute an enterprise security strategy and policies based on Zero Trust principles.Build and operate identity and access management systems (SSO, IAM, RBAC, etc.).Design and configure security architecture for SaaS and cloud infrastructure (AWS, GCP, etc.).Diagnose and enhance security vulnerabilities within internal systems and services.Collaborate with development and infrastructure teams to integrate security practices (code reviews, CI/CD security, etc.).Set up and manage incident response systems and monitoring environments.

Oct 3, 2025
Apply
companyToss Bank logo
Full-time|On-site|Seoul

About the Team You’ll Join The Security Division at Toss Bank is composed of several specialized teams including Security Policy, Privacy Protection, System Security, Network Security, Security Red Team, Security Blue Team, IT Service, and Security Audit. As a Security Analyst at Toss Bank, you will be an integral part of the Security Blue Team, focusing on event analysis and incident response, as well as scenario-based threat modeling. The Security Division collaborates extensively with various teams to ensure the delivery of safe and reliable services. Notably, the Security Blue Team works closely with product organizations, Legal & Compliance, Platform Engineering, and Internal Audit to enhance service safety and compliance. Our commitment lies in securing electronic financial transactions for our customers and ensuring that security is seamlessly integrated into daily operations, providing a safe working environment. Your Responsibilities Analyze and respond to security threats and incidents affecting customer services and employee work environments. Identify security threats and design operational scenarios through various logs collected in the SIEM system. Respond to events detected by security monitoring and review blocking policies for security solutions like DDoS, IPS, IDS, WAF, and AV to prevent recurrence. Enhance operational efficiency through the automation of repetitive security tasks, allowing security personnel to focus on more strategic responsibilities. Ideal Candidate Profile Profound analytical skills for security events and logs, with a solid understanding of various attack techniques (TTPs) and Indicators of Compromise (IOC). Experience in deriving threats and responding through intrusion detection analysis tools and security solutions. Familiarity with creating advanced detection rules based on SIEM. Experience in developing automation scripts for security tasks using Python, PowerShell, or similar tools to improve operational efficiency. Please Include in Your Resume If you have actual incident response experience, please detail the type of incidents, analysis processes, responses, and follow-up actions step by step. Experience in threat modeling through various security logs and direct response efforts is highly valued. If you have automated security tasks using Python or PowerShell, please specify the purpose, implementation, and improvements in operational efficiency. Avoid simply listing results; instead, describe your understanding and learning throughout the project. Application Process at Toss Bank Application submission > Job interview > Cultural fit interview > Reference check > Compensation discussion > Final acceptance and onboarding. Important Notes Employment may be revoked if any false information is found in the resume or if there are disciplinary actions in work history. Applicants with disqualifications as per Toss Bank’s employment regulations may have their applications canceled. Individuals with disabilities or those eligible for national veterans' benefits will be prioritized in accordance with relevant laws.

Mar 9, 2026
Apply
companyToss Securities logo
Full-time|On-site|Seoul

About the Team You'll Join The Security Division at Toss Securities comprises the Security Policy Team and the Security Engineering Team, with the Security Policy Team including roles such as Information Security Manager and Privacy Manager. This division enjoys comprehensive support across the organization to create secure Toss Securities services and collaborates closely with all departments. Team members actively exchange experiences and knowledge with peers in similar roles across affiliates to achieve shared goals. The team consists of members with diverse experience ranging from 1 to 20 years, most of whom have backgrounds in information security firms and corporate information security roles. This year, we are focusing on enhancing our information security management system through global security standard certifications and prioritizing risk management based on data flow and business processes. We will also conduct research activities to advance regulatory frameworks. Responsibilities You'll Have Lead the establishment and operation of information security policies, as well as the acquisition and maintenance of domestic and international security certifications (ISMS-P, ISO/IEC 27001, 27701, 27017, 27018, PCI-DSS, etc.). Formulate and amend security policies in response to changes in legislation and regulations, and develop operational processes. Oversee internal audits, inspections, and external institution assessments, driving improvement initiatives. Establish and lead the security risk assessment and management processes. Plan and implement security awareness programs (training, campaigns) to foster a security-centric culture within the organization. Mentor junior colleagues and contribute to the growth of team capabilities. Ideal Candidate Profile Over 5 years of experience in information security policy and management system operations within the finance and electronic finance sectors. Proven experience leading the acquisition and maintenance of domestic and international security certifications. Strong background in responding to external organizations and validated risk management skills. Experience in designing and executing organizational policies and processes. Ability to identify and lead new security challenges in rapidly changing IT/service environments. Journey to Joining Toss Securities Application submission > Role interview > Cultural fit interview > Reference check > Compensation negotiation > Final acceptance and onboarding. Please Note Any discrepancies found in the resume or supporting documents, or any disciplinary issues in the work history may lead to cancellation of employment. Candidates identified as prohibited or disqualified under Toss Securities internal regulations may also have their applications canceled. Individuals with disabilities and those eligible for national veteran benefits are given preferential treatment in accordance with relevant laws. A Message for Future Colleagues You can create an information security management system with comprehensive organizational support. At Toss Securities, all colleagues share an understanding of the importance of information security, and the Security Division builds the management system based on this shared awareness. To establish a high-level information security management system, we not only comply with mandatory requirements but also embrace various challenges to present new cultures and trends. This means you will gain diverse experiences not confined to routine tasks. We are looking for passionate colleagues who want to contribute to the security of Toss Securities while experiencing explosive growth in their careers.

Mar 9, 2026
Apply
companydaangn logo
Full-time|On-site|SEOUL

Join the Daangn Team!At Daangn, we are committed to fostering an environment where individuals can grow alongside our company's success.We are here to assist you in reaching that moment where you can engage in meaningful discussions with amazing colleagues. About the Security TeamThe Security Team at Daangn is dedicated to ensuring the safe provision of our services. We defend against external attacks and prevent the leakage of valuable internal information. All our activities comply with various information security laws and regulations. We strive to understand Daangn's business model and provide clear criteria that are technically applied where appropriate. Through these efforts, we aim to create a trustworthy service for our users.Key ResponsibilitiesAnalyze and respond to security events in both customer service and internal office environments.Design, operate, and enhance detection systems and related activities for effective detection of security incidents and issues.Conduct investigations when security events occur to analyze breach paths and causes, and establish and implement measures to prevent recurrence.Continuously improve detection rules, automation, and operational processes based on insights gained during incident response.Who We Are Looking ForIndividuals with over 3 years of practical experience in responding to security incidents or events.Experience in analyzing security events and responding to incidents in complex service environments, including multi-cloud and SaaS.Proactive individuals who can lead incident response and operational improvements beyond the immediate scope of duties.Team players who can collaborate with various stakeholders to drive incident response and improvements.Preferred QualificationsContinuous interest in external security incidents and issues, with experience integrating CVEs and security trend reports into workflows.Experience utilizing OSINT, CTI, and Attack Surface information.Experience in improving analysis and response tasks through automation and AI for enhanced efficiency.Background in incident response within IT companies or large-scale service environments.Experience in building and operating SIEM or orchestration platforms.

Feb 10, 2026
Apply
companyToss Securities logo
Full-time|On-site|Seoul

About the Team You'll Join The Network Security Engineer at Toss Securities is part of the Network Engineering Team, collaborating closely with Network Engineers and IDC Managers. You will work alongside top talents from diverse sectors including finance, commerce, portals, and gaming, focusing on building and supporting secure networks for both external and internal clients. Our goal is to provide robust support for product development, enabling rapid deployment by enhancing our infrastructure to handle large-scale traffic and pushing for automation. Your Responsibilities Upon Joining As a Network Security Engineer, you will be responsible for security devices in the network area, including firewalls, DDoS protection, and VPNs to safeguard Toss Securities' clients and teams. You will perform regular preventive maintenance to ensure the stable operation of security equipment. Management and improvement of Toss Securities' security device monitoring solutions will be part of your role. You will build and operate network security devices, providing security-based technology within the data center. Ideal Candidate Profile A degree in Information Security, Computer Engineering, Information Communication, or a related field is required. A solid understanding of networks and security devices is essential. High proficiency in TCP/IP protocols and experience in packet analysis for troubleshooting are preferred. Experience with security system API integration or work automation is a plus. Prior experience in security training or practical security work is advantageous. Resume Recommendations Please describe a memorable technical issue you resolved (optimization, bug fixes, etc.). Detail projects you contributed to, focusing on your role, technology stack used, and improvements made. The Journey to Joining Toss Securities Application submission > Job interview > Cultural fit interview > Reference check > Salary negotiation > Final acceptance and onboarding. Important Notes False information in your resume or disciplinary issues in your work history may result in cancellation of your application. Applicants who fall under hiring restrictions per Toss Securities policies may also have their applications canceled. Individuals with disabilities or veterans are prioritized according to relevant laws. A Message for Future Colleagues The Network Security Engineer at Toss Securities creates and manages a secure and robust network structure both on-premises and in the cloud. This role goes beyond equipment management; it involves understanding service flows and traffic to continuously innovate better structures. The position requires proactive identification of potential threats and developing solutions. Our team takes initiative to investigate issues, identify root causes, and suggest efficient solutions swiftly, respecting each other's opinions while collaboratively ensuring the stability of financial services. We strive to continuously create improved methods rather than sticking to established practices.

Mar 10, 2026

Sign in to browse more jobs

Create account — see all 404 results

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.