JobHabor

[EJV] Penetration Tester — AI Safety & Security

Bosch Group
Location
Ho Chi Minh, Vietnam
Workplace
Employment
Full Time
Salary
Apply on the employer’s site

Posted today

About the Role

We are looking for a Penetration Tester to join our AI Safety & Security team, working hands-on across Bosch's growing portfolio of AI-enabled products and internal tooling — LLM deployments, agentic AI systems, and Model Context Protocol – style tool-calling integrations. Under the direction of the team's Lead AI Safety & Security Engineer, you will execute structured test plans against real systems, covering both whether an AI system behaves safely (does it refuse harmful requests, stay within its intended scope) and whether it is secure (can it be manipulated via prompt injection or tricked into misusing its tools). This is an individual-contributor role on a newly forming team — you'll be running real engagements from day one, not just shadowing them.

Key Responsibilities

  • Execute penetration tests and safety evaluations against LLM-based features and AI agents, following test plans and specifications defined by the team lead.
  • Run red-teaming and jailbreak testing to surface harmful, biased, or unsafe model outputs, and document reproducible findings.
  • Test for prompt injection (direct and indirect), excessive agency, and tool/plugin abuse in agentic and MCP-style tool-calling systems.
  • Verify human-in-the-loop and guardrail controls hold up under adversarial conditions, not just in normal use.
  • Write clear, reproducible findings reports — evidence, severity, and a specific recommended fix — that both engineers and governance stakeholders can act on.
  • Help build and maintain test tooling: adversarial-prompt scripts, jailbreak test cases, and MCP/tool-schema fuzzing scripts.
  • Track published AI security research (OWASP LLM and Agentic Top 10s, MITRE ATLAS) and bring new attack techniques into the team's test suite.
  • Work directly with AI/ML engineering teams to reproduce, triage, and confirm fixes for reported findings.
  • Support the team lead in scoping and coordinating external red-teaming/pentest vendor engagements when work is outsourced.

Required Qualifications

  • Bachelor's degree in Computer Science, Machine Learning, or a related field.
  • 2–5 years in penetration testing, security testing, or applied AI/ML security work.
  • Hands-on experience testing LLM or agentic AI systems — prompt injection, jailbreaks, or tool/plugin abuse; coursework, CTFs, or independent projects count given how new this field is.
  • Working familiarity with the OWASP Top 10 for LLM Applications and/or OWASP Top 10 for Agentic Applications.
  • Comfortable scripting in Python and/or JavaScript/Node to automate test cases.
  • Clear, precise technical writing for findings reports.

Preferred Qualifications

  • Exposure to the Model Context Protocol (MCP) or comparable agent tool-calling frameworks.
  • Traditional penetration testing experience across web, API, or network targets.
  • Familiarity with AI governance concepts (NIST AI RMF, ISO/IEC 42001, EU AI Act).
  • Open-source security tooling contributions, CTF results, or a public research/write-up portfolio.

Relevant Certifications (any of the following a plus)

  • Offensive security / penetration testing — OSCP, GPEN, GWAPT, or CEH.
  • AI-specific security — ISC2 AI Security Certificate or Certified AI Security Professional (CAISP).

Why BOSCH?

Because we do not just follow trends, we create them. Together we turn ideas into reality, working every day to make the world of tomorrow a better place. Do you have high standards when it comes to your job? So do we. At Bosch, you will discover more than just work.

Benefits and Career Opportunities

  • Working in one of the Best Places to Work in Vietnam and Top 30 of the Most Innovative Companies all over the world
  • Join in a dynamic and fast-growing global company (English-speaking environment), with opportunity to work in global projects and being a part of innovation team contributing initiative ideas to the hi-tech world
  • Onsite opportunities: short-term and long-term assignments in worldwide offices
  • Engage in our diverse training programs which surely help strengthen both your personal and professionalism
  • 13th-month salary bonus + attractive performance bonus (you'll love it!) + annual performance appraisal
  • 100% offered salary and mandatory social insurances in 2-month probation
  • 15++ days of annual leave + 1-day of birthday leave
  • Premium health insurance for employee and 02 family members
  • Flexible working time and working model
  • Lunch and parking allowance
  • Good benefits of company activities such as: football, badminton, yoga, Aerobic, team building…

Skills

  • LLM
  • Model Context Protocol
  • OWASP
  • Machine Learning
  • OWASP Top 10
  • Python
  • JavaScript
  • Node.js
  • NIST

More jobs at Bosch Group

All 377

Similar roles