We're not hiring a security engineer to keep up with threats. We're hiring someone to make threats irrelevant before they become incidents. Most security teams react. They tune SIEM rules after the alert fires. They writ…
We're not hiring a security engineer to keep up with threats. We're hiring someone to make threats irrelevant before they become incidents. Most security teams react. They tune SIEM rules after the alert fires. They writ…
We're not hiring a security engineer to keep up with threats. We're hiring someone to make threats irrelevant before they become incidents. We're looking for a Red Team Lead/Operator who thinks like an adversary, not an …
We're not hiring a security engineer to keep up with threats. We're hiring someone to make threats irrelevant before they become incidents. We're looking for a Red Team Lead/Operator who thinks like an adversary, not an …
Skills: Red Teaming, Adversary Simulation, Cloud Security, Kubernetes, CI/CD Security
Senior DevOps Engineer (AI & Production Infrastructure)
Malaysia · On-site
Senior
We're hiring someone who wants production infrastructure that has to hold at 3am, every time, for millions of traders who never stop trading. Real uptime targets. Real incidents. Real consequences when something breaks. …
Skills: DevOps, Site Reliability Engineering, Terraform, Kubernetes, Docker
Systems fail at 2am. Traders don't stop trading because it's 2am. We're not hiring someone to update a ticket when that happens — we're hiring the person who owns the room until it's fixed, and owns the fix until it can'…
Skills: Incident Management, ITSM, Production Operations, Triage, Post-Incident Review
At Deriv, data isn't just numbers—it's the foundation of every strategic decision we make. As a Senior Data Analyst, you'll transform complex datasets into actionable insights that shape our products, optimize customer e…
You'll sit at the centre of real money moving across banks, PSPs, and crypto wallets—every day, every currency, every entity. Get the numbers wrong and operations stall. Get them right and the whole platform runs on time…
You'll sit at the centre of real money moving across banks, PSPs, and crypto wallets—every day, every currency, every entity. Get the numbers wrong and operations stall. Get them right and the whole platform runs on time…
At Deriv, data isn't just numbers—it's the foundation of every strategic decision we make. As a Senior Data Analyst, you'll transform complex datasets into actionable insights that shape our products, optimize customer e…
Keep the business moving - and make IT smarter with AI If you like the idea that your work directly powers the company, you'll fit right in. Our 1,100+ endpoints (90% Mac / 10% Linux), on-prem servers, and state-of-the-a…
Skills: IT Operations, Network Troubleshooting, MDM, Automation, macOS
Keep the business moving - and make IT smarter with AI If you like the idea that your work directly powers the company, you'll fit right in. Our 1,100+ endpoints (95% Mac), on-prem servers, and state-of-the-art network a…
Skills: IT Operations, Network Troubleshooting, MDM, Automation, AI Workflows
Numbers that don’t add up won’t wait for you to finish reading about CFD revenue recognition. They’ll sit in a reconciliation, compound overnight, and surface as an auditor question at the worst possible moment. You’ll l…
We're not hiring a team lead to manage Jira tickets and run standups. We're hiring someone to build the environment where data engineers ship reliable pipelines fast — and keep getting faster. Why This Matters Deriv's mi…
Every data team says they care about quality. Most of them are still firefighting the same pipeline failures every Monday morning. We’re looking for a Tech Lead who ends that cycle. Someone who defines how data is built,…
Skills: Data Engineering, Technical Leadership, Data Modelling, GCP, BigQuery
Data pipelines don’t fail in staging. They fail at 3 a.m. on month-end, when compliance needs the numbers and the dashboard is showing yesterday’s data. You’ll build the pipelines that don’t break—and when they do, you’l…
Skills: Data Engineering, ETL/ELT Pipelines, GCP, BigQuery, Airflow
Data pipelines don’t fail in staging. They fail at 3 a.m. on month-end, when compliance needs the numbers and the dashboard is showing yesterday’s data. You’ll build the pipelines that don’t break—and when they do, you’l…
Skills: Data Engineering, ETL/ELT Pipeline Design, GCP, BigQuery, Airflow
Most tax professionals manage filings. We need someone who rewires how a global fintech handles tax across jurisdictions—while the rules keep changing, the business keeps expanding, and manual processes keep getting repl…
Skills: Corporate Income Tax, Indirect Tax, Tax Accounting, Transfer Pricing, Multi-jurisdiction Compliance
We’re not hiring someone to process purchase orders and chase renewals. We’re hiring someone to figure out why we’re spending millions on technology—and whether any of it is actually delivering what it promised. Most pro…
Most tax professionals manage filings. We need someone who rewires how a global fintech handles tax across jurisdictions—while the rules keep changing, the business keeps expanding, and manual processes keep getting repl…
Skills: Corporate Income Tax, Indirect Tax, Tax Accounting, Transfer Pricing, Multi-jurisdiction Compliance
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Full-time
professional certificate
Posted 28d ago
~40 hrs/week
Responsibilities
Proactively hunt for threats across infrastructure and cloud environments while building and tuning detections mapped to attacker TTPs. Own the end-to-end incident response process and extend monitoring coverage into the company's AI agent stack.
Requirements
Requires over 6 years of experience in SOC, threat hunting, or DFIR roles with strong proficiency in Python and detection logic. Preferred certifications include GCFA, GCIH, or GCIA, along with deep expertise in EDR, cloud security, or malware analysis.
Full job description
We're not hiring a security engineer to keep up with threats. We're hiring someone to make threats irrelevant before they become incidents.
Most security teams react. They tune SIEM rules after the alert fires. They write playbooks after the incident closes. They patch after the scan flags. At Deriv, we're building an autonomous security operations platform that hunts proactively, responds automatically, and learns continuously. Real money, real regulations, real consequences - and a security function built to match.
Why This Matters
Deriv's mission is Trading for Anyone, Anywhere, Anytime. Millions of traders across the globe, around the clock, across regulatory environments. At this scale, a misconfigured WAF rule or undetected lateral movement isn't a technical inconvenience - it's a trader's funds at risk and a regulator on the phone.
Our Security Operations team isn't defending a perimeter. We're protecting a living, distributed system that processes transactions 24/7. When the threat surface never sleeps, your detection and response capabilities can't either - which is exactly why we're embedding AI and automation at every layer of the security stack.
The Challenge
Most of the job is quiet. Alerts fire, most of them are noise, you clear them and move on. Then one day something doesn't smell right - a login from a place it shouldn't be, a process spawning something it never has before - and the whole shift changes shape in five minutes. That's the job. Long stretches of discipline, then a sprint where the root cause has to be found before the damage does.
$600B moves through this platform every month. That draws real attention: state-sponsored crews, financially motivated groups, insiders. We don't wait for a vendor's threat intel feed to tell us something's wrong. We hunt for it.
If your idea of SOC work is clearing a queue against a runbook, this isn't for you. If you want to build the detections that catch what the runbook doesn't, and you're willing to be the one who says "this exclusion is a blind spot" before it becomes an incident, keep reading.
Why Deriv
We're in production, not planning.
Autonomous security operations platform triaging real alerts in real time, not a roadmap slide
Automated security review running on every pull request across engineering
Detection coverage actively extending into our AI agent stack: prompt injection, tool misuse, credential exposure in agent workflows, ground most SOCs haven't even started mapping
A Security & AI Engineering org where detection and response is treated as its own discipline, not a compliance checkbox tucked under IT
We share what we learn. Deriv<ed> is where we write about what we're building, what breaks, and what we figure out the hard way.
What You’ll Do
Hunt proactively across infrastructure, cloud, identity, and endpoint, working from hypotheses, not just waiting on alerts
Build, tune, and maintain detections mapped to real attacker TTPs (MITRE ATT&CK), not whatever ships default from the vendor
Own incidents end to end: triage, containment, root cause, and a report that leads to an actual fix
Push back on any tuning decision, exclusion, or "known good" assumption that trades visibility for noise reduction, and catch it before it ships
Partner with Red Team on purple-team exercises, turning every finding into a detection
Extend detection and monitoring coverage into our AI agent stack: prompt injection, tool misuse, credential exposure in agent workflows
Do enough malware analysis and reverse engineering to actually understand what you're looking at, not just what a sandbox report says
Mentor junior analysts and raise the bar on what "triaged" actually means
Who You Are
6+ years in a SOC, threat hunting, or DFIR role, with real incident ownership, not just alert queue work
GCFA, GCIH, GCIA, or equivalent DFIR/detection engineering credential strongly preferred
Real depth in at least three of: EDR internals and endpoint telemetry, cloud security monitoring (AWS/GCP), network forensics, malware analysis, SIEM and detection-as-code, identity threat hunting
Comfortable writing your own detection logic and tooling in Python or a proper query language, not copy-pasting from a vendor blog
You think like an attacker when you write a detection, because that's the only way to catch one
You know the difference between reducing noise and creating a blind spot, and you've caught that mistake before it cost someone
You can write a report that gets fixed, not filed
The Honest Reality
You'll sit inside a Security & AI Engineering org that treats detection and response as a real discipline, not a compliance checkbox.
You'll work across Dubai and Malaysia with a team that runs actual incident response, not tabletop exercises with fake scenarios.
You'll have a direct line from catching something to it getting closed for good, and room to build the hunts and detections that shape how we defend the AI agents everyone else is still figuring out how to even think about.
Trust, innovation and service since 1999. #HereToStay
Industry
Financial Services
Company size
1,001-5,000 employees
Founded
1999
Headquarters
Triq Dun Karm, Birkirkara, Malta
LinkedIn followers
132,958
The Deriv Group of companies connects 3 million customers across 150+ countries to the world's financial markets, processing millions of transactions every day. We move at the speed of the market, and with an AI-first mindset, we are transforming how it works.
The Group is all in on AI. Our worldwide 24/7 platforms process hundreds of transactions per second across forex, stocks, and crypto. This level of precision at scale is driven by our global team of 1,000+ innovators across 20 offices. We empower our people with access to bleeding-edge LLMs, advanced frameworks, and the freedom to reimagine workflows across all teams, from engineering to customer support.
Our culture encourages exploration, creativity, and calculated risk-taking, the necessary ingredients for breakthroughs. This focus on our people has been recognised globally: 90% of employees say we are a great place to work, contributing to our Great Place to Work certification in 8 countries, Best Workplace for Women in 2 countries, and Investors in People Platinum.
Guided by our core values of integrity, customer focus, teamwork, and competence, the group turns ideas into action. Join us to innovate, lead, and create global reach in an environment where human judgment fuses with AI at scale.
Offices: W Business Centre, Level 3, Triq Dun Karm, Birkirkara, Malta BKR9033, MT · 3500 Jalan Teknokrat 3, Deriv, Cyberjaya, Selangor 63000, MY · F16, 1st Floor, Paragon, Jalan Tun Mustapha, Labuan, Federal Territory of Labuan 87000, MY · Oficina 1, Edificio Australia, Calle Herib Campos Cervera y Tregnaghi, Distrito de Stma, Trinidad, Asuncion, Asuncion 1771, PY · Office 1902, Jumeirah Business Center 1, JLT Cluster G, Dubai, AE
Trust, innovation and service since 1999. #HereToStay
Industry
Financial Services
Company size
1,001-5,000 employees
Founded
1999
Headquarters
Triq Dun Karm, Birkirkara, Malta
LinkedIn followers
132,958
The Deriv Group of companies connects 3 million customers across 150+ countries to the world's financial markets, processing millions of transactions every day. We move at the speed of the market, and with an AI-first mindset, we are transforming how it works.
The Group is all in on AI. Our worldwide 24/7 platforms process hundreds of transactions per second across forex, stocks, and crypto. This level of precision at scale is driven by our global team of 1,000+ innovators across 20 offices. We empower our people with access to bleeding-edge LLMs, advanced frameworks, and the freedom to reimagine workflows across all teams, from engineering to customer support.
Our culture encourages exploration, creativity, and calculated risk-taking, the necessary ingredients for breakthroughs. This focus on our people has been recognised globally: 90% of employees say we are a great place to work, contributing to our Great Place to Work certification in 8 countries, Best Workplace for Women in 2 countries, and Investors in People Platinum.
Guided by our core values of integrity, customer focus, teamwork, and competence, the group turns ideas into action. Join us to innovate, lead, and create global reach in an environment where human judgment fuses with AI at scale.
Offices: W Business Centre, Level 3, Triq Dun Karm, Birkirkara, Malta BKR9033, MT · 3500 Jalan Teknokrat 3, Deriv, Cyberjaya, Selangor 63000, MY · F16, 1st Floor, Paragon, Jalan Tun Mustapha, Labuan, Federal Territory of Labuan 87000, MY · Oficina 1, Edificio Australia, Calle Herib Campos Cervera y Tregnaghi, Distrito de Stma, Trinidad, Asuncion, Asuncion 1771, PY · Office 1902, Jumeirah Business Center 1, JLT Cluster G, Dubai, AE