<p><strong>Working location</strong>: Hong Kong University of Science and Technology (at least 3-4 days per week)</p><p><strong>Internship duration</strong>: June 1, 2025</p><p><strong>Duties:</strong></p><ol><li><p><strong>Secure cloud platform deployment</strong></p><ol><li><p>Participate in the deployment of a container cloud environment based on Kubernetes (using Huawei Cloud CCE architecture)</p></li><li><p>Implement the Notary v2 mirror signature verification system to ensure compliance with the requirements of Chapter 553 of the Electronic Transactions Act</p></li></ol></li><li><p><strong>Core security module development</strong></p><ol><li><p>Develop TEE trusted execution environment module (integrate Intel SGX and domestic encryption algorithm dual solution)</p></li><li><p>Build a sensitive data audit system for the National Security Law, supporting data classification labels and evidence chain functions</p></li></ol></li><li><p><strong>Compliance implementation</strong></p><ol><li><p>Implement the encryption standard of Chapter 486 of the Personal Data (Privacy) Ordinance (adopting AES-256 and SM4 dual encryption)</p></li><li><p>Develop a three-level access control module for the Legal Department, realizing a basic, enhanced, and confidential permission management system</p></li></ol></li><li><p><strong>Test and validation</strong></p><ol><li><p>Execute 1,000 concurrent stress tests (refer to GLD-2023 technical specifications)</p></li><li><p>Assist in passing the CC EAL5+ security certification and ISO/IEC 27001 audit</p></li></ol></li></ol><p><strong>Technical stack requirements</strong></p><ul><li><p>Container technology: Docker security policy configuration, Kubernetes network policy design</p></li><li><p>Trusted Computing: Intel SGX Enclave development, ARM TrustZone application experience</p></li><li><p>Cryptography: Implementation of China's National SM2/SM4/SM9 Algorithms, Homomorphic Encryption Technology</p></li></ul><p><strong>Job Requirements</strong></p><ul><li><p><strong>Hard and fast conditions</strong>:</p><ul><li><p>Computer Science/Cybersecurity Professional Master's Degree in Progress</p></li><li><p>Familiar with Hong Kong's Cybersecurity Law technical standards, and able to interpret data localization clauses</p></li><li><p>At least master two core technologies: container security, trusted execution environment development or cryptography application</p></li></ul></li><li><p><strong>Priority conditions</strong>:</p><ul><li><p>Have legal technology project experience (such as electronic evidence preservation, judicial blockchain development)</p></li><li><p>Holding CISSP/CISP or cloud security certification (such as CCSP)</p></li><li><p>Bilingual ability (need to process legal texts in Chinese and English)</p></li></ul></li></ul>