About The Position

This role mitigates security threats by continuously identifying IT interfaces and digital footprints exposed to attackers. As attackers' infiltration methods evolve rapidly with advancements in AI technology, proactive attack surface management is no longer an option, but a necessity. We are looking for an expert to join us in achieving our proactive cybersecurity mission to minimize attack surface exposure, staying one step ahead of the attackers.

Requirements

  • Bachelors Degree in Computer Science or a related field
  • 2 years of experience in Security Engineering or Cybersecurity
  • 5+ years of hands-on experience in cybersecurity threat identification, response, assessment, and management (with at least 2 years of experience in Attack Surface Management preferred).
  • Experience in implementing and operating commercial ASM solutions.
  • Experience developing vulnerability scanners or detection scripts from an attacker's perspective (Offensive perspective).
  • Ability to efficiently write automation scripts utilizing AWS resources and Python for API integration and building attack surface identification tools.
  • Structural understanding of Cloud (AWS, Azure, GCP), On-premises, IoT, User Endpoints, DNS, Admin Consoles, etc.
  • In-depth knowledge of major network protocols (TCP/IP, DNS, HTTP/S, RDP, etc.) and web/cloud architecture security.
  • Understanding of real-world attack mechanisms including attack path discovery, vulnerability exploitation, malware distribution/execution, lateral movement, DDoS, and supply chain attacks.
  • Intermediate or higher proficiency in English (Reading, Writing, Speaking) to communicate smoothly in a global environment.
  • Understanding of infrastructure operations and security assessment experience in large-scale public cloud environments (AWS, Azure, GCP, etc.).
  • Hands-on experience in Bug Bounty programs, discovering and reporting major vulnerabilities (CVEs), penetration testing, incident response, threat hunting, security architecture review, or Cyber Threat Intelligence (CTI).
  • Security operations experience within a complex, massive global IT infrastructure.
  • Fluent in both Korean and English, capable of seamless communication and collaboration in a global work environment.

Nice To Haves

  • Usage of AI IDEs is highly welcomed.

Responsibilities

  • Continuous Monitoring of Digital Footprint: Constantly identify and map our officially/unofficially exposed IT assets (domains, IPs, open ports, cloud environments, etc.).
  • Discovery of Shadow IT & Blind Spots: Proactively detect abandoned servers, test pages, and unnecessary exposed interfaces that are out of the management organization's visibility.
  • Vulnerability Identification & Mitigation Strategy: Identify vulnerable application versions and paths exposing internal information, evaluate them based on business impact, and prioritize remediation efforts.
  • Cross-functional Collaboration & Proactive Defense: Work closely with infrastructure and development teams to swiftly eliminate vulnerable paths or apply protective measures before an attack surface leads to a real breach.
  • ASM Solution Implementation & Operation: Implement and operate commercial ASM solutions while simultaneously building and utilizing our own in-house Attack Surface Discovery tools.
  • ASM Automation Pipeline: Automate processes to streamline attack surface identification and establish integration architectures with existing security solutions.

Benefits

  • Annual bonus is 0-20% of the base salary
  • Medical/Dental/Vision/Life, AD&D insurance
  • Flexible Spending Accounts (FSA) & Health Savings Account (HAS)
  • Long-term/Short-term Disability
  • Employee Assistance Program (EAP) program
  • 401K Plan with Company Match
  • 18-21 days of Paid Time Off (PTO) a year based on the tenure
  • 12 Paid Holidays
  • Paid Parental leave
  • Pre-tax commuter benefits
  • MTV- [Free] Electric Car Charging Station
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service