Cybersecurity Engineer
Mindvalley
Location
Malaysia
Employment Type
Full time
Location Type
Remote
Department
Technology
About the Role:
Mindvalley is seeking a Cybersecurity Engineer to strengthen the overall security posture of our platforms, endpoints, cloud services, and applications. This role goes beyond traditional AppSec — you will work across engineering, product, and IT teams to remediate vulnerabilities, improve security tool configurations, and design automated workflows that reduce manual security effort.
If you're someone who loves getting hands-on, enjoys teaming up across functions, and gets excited about using AI and automation to turn complex security challenges into streamlined, scalable solutions — we want to hear from you.
Responsibilities:
Triage and investigate security alerts from multiple sources (e.g., CrowdStrike, GuardRails, ASM, GCP, GWS).
Work with Tech, Product, and IT teams to remediate vulnerabilities, misconfigurations, and incidents.
Improve detection and prevention by tuning/configuring GCP, GWS, and other security tools.
Automate repetitive security processes (e.g., alert filtering, access reviews, vulnerability reporting) using scripting, APIs, or workflow automation platforms.
Conduct periodic application and infrastructure security assessments.
Participate in secure SDLC by providing feedback to engineering teams.
Document processes and contribute to Mindvalley’s PSPG framework (policies, standards, procedures, guidelines).
Requirements
3–5 years in cybersecurity operations, cloud security, or vulnerability management.
Solid understanding of web/app/API vulnerabilities (OWASP Top 10) and cloud security basics (preferably GCP/GWS).
Experience with at least one scripting/automation language (Python, JS, or automation platforms like Make.com).
Familiarity with vulnerability management and SIEM/log analysis tools.
Strong problem-solving skills; able to balance firefighting with long-term improvements.
Preferred: certifications (e.g., OSCP, GCP Security Engineer), prior experience automating security workflows, or participation in bug bounty/security communities.
Mindvalley is an equal opportunity employer and does not discriminate on the basis of race, colour, religion, gender identity or expression, national origin, age, disability, marital status, sexual orientation, or any other legally protected status. We are committed to creating a diverse and inclusive workplace and encourage applications from all qualified individuals.