Назад
Company hidden
1 день назад

Senior Infrastructure Security Engineer (Web3)

Формат работы
remote (Global)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Singapore/China
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Infrastructure Security Engineer (Web3): Securing infrastructure and development lifecycles for a global crypto derivatives exchange with an accent on CI/CD pipeline security and container posture. Focus on designing secure automation, implementing Infrastructure-as-Code security, and integrating vulnerability testing across all environments.

Location: Remote (Global) or Hong Kong

Company

hirify.global is a leading global cryptocurrency derivatives exchange known for its professional-grade trading platform and strong security record.

What you will do

  • Design and implement secure automation solutions across development, testing, and production environments using IaC.
  • Manage and optimize security tooling for infrastructure and CI/CD pipelines, ensuring strict configuration management.
  • Collaborate with Product and Platform teams to shape the strategic roadmaps for the Cloud Platform.
  • Conduct industry research on cybersecurity trends and threats to keep the organization's security posture resilient.
  • Lead the deployment of IaC security measures and integrate automated and manual vulnerability testing.

Requirements

  • 8+ years of professional experience in the cybersecurity industry.
  • Deep expertise in security principles across infrastructure, applications, data layers, and integration points.
  • Proven experience with public cloud primitives, containerization, and orchestration tools like Kubernetes.
  • Proficiency with Infrastructure-as-Code (IaC) tools such as Terraform and Ansible.
  • Experience securing CI/CD pipelines using tools like GitHub Actions and Helm.
  • Ability to architect and integrate enterprise security solutions within the Secure Software Development Lifecycle (SSDLC).

Nice to have

  • Industry-recognized certifications such as CISSP, CCSP, CCSK, or GSEC.
  • Deep understanding of Public Key Infrastructure (PKI) and cryptographic principles.
  • Technical expertise in Identity and Access Management (IAM), SAML, OAuth, and MFA.
  • Hands-on experience with observability stacks like OpenTelemetry and Prometheus.

Culture & Benefits

  • Flexible work arrangements including Work from Home and a "Beyond Border" remote working policy.
  • Comprehensive medical, dental, and vision insurance for employees and dependents.
  • 25 days of annual leave plus public holidays, including maternity and paternity leave.
  • Professional development allowance and annual wellness benefits.
  • Life insurance coverage and regular team-building offsite events.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →