Senior/Staff Engineer, Security Platform Development
OKX
Make my CV for this job, freeView job and applyYour CV, rewritten for this role using only your real experience. Sign in with Google and upload your CV. Nothing to install.
Skills named in this job
Read from the description itself, not inferred.
This role on the market
5,716 open development roles across 567 companies are on ApplySarthi right now, most of them in Bengaluru (389), Hyderabad (140), Delhi NCR (64).
- Software Development Engineer, AWS SecurityAmazon Development Centre (London) Limited
- Principal Business Development Manager (f/m/x)exmox
- Account Development Representative I - North AmericaCamunda
- Werkstudent Strategie & Business Development (m/w/d)CKM Group
- Business Development ExecutiveGartner
What development roles keep asking for: AWS (15%), Java (14%), C++ (13%) — counted across their open postings here.
CI/CD jobs · Java jobs · LLMs jobs · Penetration testing jobs
OKX has 342 open roles listed here.
- Deputy Money Laundering Reporting Officer, Eurasia
- Senior/Lead Product Manager - Professional Trading Tools & Experience
- Senior/Staff Engineer - Web3 - Onchain Data
- Software Engineer, Mobile(iOS)
- Deputy General Counsel, Head of Americas Legal
Counted across 14 company job boards, updated as roles open and close.
Preparing for this interview
Interviews for development roles keep coming back to AWS, Java, C++. Practise those questions before you sit with OKX.
Questions you are likely to be asked
- Why do you want to join OKX?
- What is your experience with Java? Tell me one thing you learned the hard way.
- Walk me through how code gets from a commit to production where you work.
- Tell me about an outage you handled. What did you learn from it?
- How do you decide what to monitor, and what should wake someone up at night?
Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.
Practise the Senior/Staff Engineer, Security Platform Development at OKX interview free →Who We Are
About The Opportunity
What You’ll Be Doing
- Lead the architecture and core development of the company’s end-to-end DevSecOps platform, security products, and SDKs/Agents, covering code, build, artifacts, images, deployment, and runtime security.
- Own the design and development of RASP / Java Agent runtime protection, leveraging ASM, ByteBuddy, and Java Instrumentation for bytecode enhancement, runtime hooks, detection and blocking engines, while continuously improving performance, stability, and compatibility.
- Build and integrate SAST, DAST, IAST, SCA, code security scanning, and image security scanning into CI/CD workflows, and drive deep integration of tools such as SonarQube and Coverity to form a closed loop of scanning, gating, remediation, and re-validation.
- Drive core application security protection and offensive/defensive capabilities across scenarios such as XSS, SQL injection, SSRF, deserialization, command execution, authentication/authorization flaws, privilege escalation, and API security.
- Advance AI-Native Security Engineering by applying LLMs and AI Agents to vulnerability analysis, rule generation, false-positive reduction, remediation suggestions, security knowledge management, and workflow automation, while building deep understanding of their architecture, principles, and security implications.
- Partner closely with business engineering teams to drive security standards, integration rules, quality gates, risk classification, remediation workflows, and overall security governance adoption.
- Collaborate with engineering, architecture, operations, QA, and business stakeholders to solve complex security problems and turn them into scalable product capabilities, engineering solutions, and governance mechanisms.
What We Look For In You
- Strong fundamentals in computer science and security, with deep understanding of operating systems, networking, compilers/JVM internals, distributed systems, application security, cloud-native security, and software supply chain security, with both breadth and depth in security technologies.
- Expert-level Java proficiency, especially in JVM internals, ClassLoader, Java Agent, ASM, ByteBuddy, bytecode instrumentation, profiling, and performance tuning; proficient in Python or Golang as well.
- Proven hands-on experience with RASP, SAST, DAST, IAST, SCA, image security, and code security scanning, with the ability to independently design, integrate, and productionize security capabilities.
- Strong offensive and defensive security experience, with deep understanding of vulnerability root causes, exploitation techniques, detection logic, bypass methods, and remediation strategies in web, API, and microservice environments.
- Strong practical experience with LLMs and AI Agents, plus deep understanding of model architecture, agent design, tool invocation, context engineering, evaluation methods, and the impact of AI on both security engineering and attacker capabilities.
- Strong engineering and product mindset, capable of leading the design and implementation of security products, platform modules, and SDKs/Agents while balancing security effectiveness, performance overhead, integration cost, and operability.
- Strong ownership, communication skills, and cross-functional influence, with a proven ability to drive business teams on security governance, policy adoption, and remediation outcomes.
Preferred Qualifications
- Background from top-tier Internet companies, cloud providers, or leading cybersecurity vendors;
- Experience leading DevSecOps platforms, application security platforms, RASP systems, code scanning platforms, or cloud-native security platforms;
- Strong experience in security product development, SDK/Agent development, vulnerability research, penetration testing, red/blue team exercises, or incident response;
- Hands-on experience in AI + Security initiatives such as security copilots, intelligent rule generation, automated vulnerability analysis, or remediation recommendation systems.
Perks & Benefits
- Competitive total compensation package
- L&D programs and education subsidy for employees' growth and development
- Various team building programs and company events
- Wellness and meal allowances
- Comprehensive healthcare schemes for employees and dependants
- More that we love to tell you along the process!
Match this job to your CV
ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.
Check my match →Similar open roles
- Affiliate BD Manager (Taiwan)OKX
- Affiliate ManagerOKX
- Affiliate Business Development Manager, CISOKX
- Affiliate Business Development Manager - MENAOKX
- Affiliate Business Development Manager, Northeast AsiaOKX
- Affiliate Business Development Manager, PolandOKX
- Compliance Head & MLRO, IndonesiaOKX
- Compliance Head & MLRO, PakistanOKX
Need answers during your interview? Try Live Sarthi.
Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.
- Hidden from supported screen sharingThe overlay stays out of supported Windows screen captures.
- Answers start in about 1.5 secondsResponse time varies with your connection and model.
- From your own CVYour projects and your experience, not a generic script.
- 30 minutes freeThen ₹99 for a 2-day pass with unlimited calls — you pay for the days you are interviewing, not a subscription.
A Windows app, from the same team as ApplySarthi.
Listed on greenhouse · posted 2026-07-06. ApplySarthi collects openings and links to application pages; the role is advertised by OKX, not by us.