← Bosch Global Software Technologies Company Limited
Penetration Tester AI Safety Security
Bosch Global Software Technologies Company Limited · Hồ Chí Minh
Apply on official site ↗
Type
Full-time
Work mode
On-site
Level
Staff
Industry
Other
Salary
Thương lượng
Location
Quận Tân Bình, Hồ Chí Minh, Hồ Chí Minh
Overview
- Execute penetration tests and safety evaluations against LLM-based features and AI agents, following test plans and specifications defined by the team lead.
- Run red-teaming and jailbreak testing to surface harmful, biased, or unsafe model outputs, and document reproducible findings.
- Test for prompt injection (direct and indirect), excessive agency, and tool/plugin abuse in agentic and MCP-style tool-calling systems.
- Verify human-in-the-loop and guardrail controls hold up under adversarial conditions, not just in normal use.
- Write clear, reproducible findings reports — evidence, severity, and a specific recommended fix — that both engineers and governance stakeholders can act on.
- Help build and maintain test tooling: adversarial-prompt scripts, jailbreak test cases, and MCP/tool-schema fuzzing scripts.
- Track published AI security research (OWASP LLM and Agentic Top 10s, MITRE ATLAS) and bring new attack techniques into the team's test suite.
- Work directly with AI/ML engineering teams to reproduce, triage, and confirm fixes for reported findings.
- Support the team lead in scoping and coordinating external red-teaming/pentest vendor engagements when work is outsourced.
- Your Skills and Experience
Requirements
- Bachelor's degree in Computer Science, Machine Learning, or a related field.
- 2–5 years in penetration testing, security testing, or applied AI/ML security work.
- Hands-on experience testing LLM or agentic AI systems — prompt injection, jailbreaks, or tool/plugin abuse; coursework, CTFs, or independent projects count given how new this field is.
- Working familiarity with the OWASP Top 10 for LLM Applications and/or OWASP Top 10 for Agentic Applications.
- Comfortable scripting in Python and/or JavaScript/Node to automate test cases.
- Clear, precise technical writing for findings reports.
- Exposure to the Model Context Protocol (MCP) or comparable agent tool-calling frameworks.
- Traditional penetration testing experience across web, API, or network targets.
- Familiarity with AI governance concepts (NIST AI RMF, ISO/IEC 42001, EU AI Act).
- Open-source security tooling contributions, CTF results, or a public research/write-up portfolio.
- Relevant Certifications (any of the following a plus)
- Offensive security / penetration testing — OSCP, GPEN, GWAPT, or CEH.
- AI-specific security — ISC2 AI Security Certificate or Certified AI Security Professional (CAISP).
- Why You'll Love Working Here
- Why BOSCH?
- Because we do not just follow trends, we create them. Together we turn ideas into reality, working every day to make the world of tomorrow a better place. Do you have high standards when it comes to your job? So do we. At Bosch, you will discover more than just work.
Benefits
- Working in one of the Best Places to Work in Vietnam and Top 30 of the Most Innovative Companies all over the world
- English-speaking environment, with opportunity to be part of innovation team and work in global projects
- Onsite opportunities
- Engage in our diverse training programs which surely help strengthen both your personal and professionalism
- Flexible working time
- 13th-month salary bonus + attractive performance bonus (you'll love it!) + annual performance appraisal
- 100% offered salary and mandatory social insurances in 2-month probation
- 15++ days of annual leave + 1-day of birthday leave
- Premium health insurance for employee and 02 family members
- Lunch and parking allowance
- Good benefits of company activities such as: football, badminton, yoga, Aerobic, team building…
BonusHealthcareCompany tripsTrainingParking
Summary of facts from the official posting. View original ↗
Interested in this role?
You'll be taken to the employer's official application page.
Apply on official site ↗
Is this your business?
Claim this page, request edits or removal
→