Senior Infrastructure Security Engineer (Web3)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Infrastructure Security Engineer (Web3): Securing infrastructure and development lifecycles for a global crypto derivatives exchange with an accent on CI/CD pipeline security and container posture. Focus on designing secure automation, implementing Infrastructure-as-Code security, and integrating vulnerability testing across all environments.
Location: Remote (Global) or Hong Kong
Company
is a leading global cryptocurrency derivatives exchange known for its professional-grade trading platform and strong security record.
What you will do
- Design and implement secure automation solutions across development, testing, and production environments using IaC.
- Manage and optimize security tooling for infrastructure and CI/CD pipelines, ensuring strict configuration management.
- Collaborate with Product and Platform teams to shape the strategic roadmaps for the Cloud Platform.
- Conduct industry research on cybersecurity trends and threats to keep the organization's security posture resilient.
- Lead the deployment of IaC security measures and integrate automated and manual vulnerability testing.
Requirements
- 8+ years of professional experience in the cybersecurity industry.
- Deep expertise in security principles across infrastructure, applications, data layers, and integration points.
- Proven experience with public cloud primitives, containerization, and orchestration tools like Kubernetes.
- Proficiency with Infrastructure-as-Code (IaC) tools such as Terraform and Ansible.
- Experience securing CI/CD pipelines using tools like GitHub Actions and Helm.
- Ability to architect and integrate enterprise security solutions within the Secure Software Development Lifecycle (SSDLC).
Nice to have
- Industry-recognized certifications such as CISSP, CCSP, CCSK, or GSEC.
- Deep understanding of Public Key Infrastructure (PKI) and cryptographic principles.
- Technical expertise in Identity and Access Management (IAM), SAML, OAuth, and MFA.
- Hands-on experience with observability stacks like OpenTelemetry and Prometheus.
Culture & Benefits
- Flexible work arrangements including Work from Home and a "Beyond Border" remote working policy.
- Comprehensive medical, dental, and vision insurance for employees and dependents.
- 25 days of annual leave plus public holidays, including maternity and paternity leave.
- Professional development allowance and annual wellness benefits.
- Life insurance coverage and regular team-building offsite events.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →