Senior Security Engineer
Bitdeer is a NASDAQ-listed (BTDR) high-performance computing and Bitcoin mining company headquartered in Singapore. It provides end-to-end Bitcoin mining solutions (mining hardware like SEALMINER, Minerbase containers, cloud mining, hosting, and mining farm/data center operations) as well as AI Cloud services offering GPU compute (NVIDIA GB200 NVL72, B200, H200, H100) for AI training and deployment. Its customers range from individual and institutional Bitcoin miners to enterprises and developers needing scalable AI/ML compute infrastructure.
Funding history
Investors
About Bitdeer
Bitdeer Technologies Group is a NASDAQ-listed (ticker: BTDR) technology company headquartered in Singapore that describes itself as a "world-leading" high-performance computing platform and Bitcoin mining services provider. The company is vertically integrated across the value chain, spanning IC design and hardware manufacturing (its own SEALMINER ASIC miners and Minerbase mobile cooling containers), infrastructure construction and cloud mining, and artificial intelligence/high-performance computing. Bitdeer handles the full range of mining-related processes for its customers, including equipment procurement, transport logistics, datacenter design and construction, equipment management, and daily operations, and offers institutional services, a hash rate market, and a miner rights trading marketplace via its mobile apps (Bitdeer App and Minerplus App). Since 2013 Bitdeer has built more than 30 data centers globally and currently operates 9 large-scale data centers (including one of North America's largest) with roughly 3GW of diversified energy capacity and tens of exahashes of managed hash rate, with major operations in the United States, Bhutan, Norway, Canada, Malaysia, and Ethiopia. Since 2023 it has also been expanding a global AI infrastructure business (Bitdeer AI Cloud), powered by thousands of NVIDIA GPUs (including GB200 NVL72 and B200, with GB300 NVL72 and B300 planned), offering turnkey AI datacenter solutions and GPU cloud compute for AI training and deployment starting at around $2/hour. Bitdeer serves both individual/retail Bitcoin miners and institutional clients, as well as AI developers and enterprises seeking scalable, energy-efficient compute.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will manage security clause reviews, customer security engagements, secure development lifecycle processes, compliance control execution, self-audits, and technical input for insurance underwriting. You will build security clause libraries, assess customer redlines and questionnaires, explain AI Cloud architecture, implement threat modeling and security testing checkpoints, train engineering teams, and close audit findings.
Requirements
- 6+ years in security, including at least 3 years in AppSec, Product Security, DevSecOps, or security consulting
- Experience with B2B contract security clauses
- Experience with threat modeling using STRIDE or PASTA, secure code review, SAST, DAST, SCA, and vulnerability management
- Working knowledge of SOC 2, ISO 27001, and NIST CSF
- Architecture-level knowledge of AWS, GCP, or Azure
- Working proficiency in English and Chinese
- Experience executing compliance controls inside a business line preferred
- Customer-facing B2B security experience preferred
- Knowledge of DPA, SLA, right-to-audit, and breach notification terms preferred
- Knowledge of AI and LLM security preferred
- Knowledge of Kubernetes security, GPU or HPC, multi-tenant SaaS, or AIDC fabric preferred
- CISSP, CCSP, AWS Security Specialty, ISO 27001 LI, or similar preferred
Responsibilities
- Build and maintain a tiered AI Cloud security clause library
- Review customer security redlines and negotiate technical commitments with Legal and Sales
- Handle customer security questionnaires and participate in security reviews, audits, and assurance calls
- Explain AI data center architecture to customer security teams
- Establish SDLC security processes across AI Cloud product lines
- Conduct threat modeling, design reviews, security testing, and pre-release sign-offs
- Audit product team adherence to security processes and drive remediation
- Design and deliver engineering security training
- Execute SOC 2, ISO 27001, and ISO 42001 controls
- Collect compliance evidence and conduct internal self-audits
- Close findings before external audits
- Respond to cyber, technology errors and omissions, and property insurance underwriter questionnaires
- Update technical risk inputs during insurance renewals
Benefits
- Attractive welfare benefits
