Security Operations Tech Lead (Web3)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Operations Tech Lead (Cybersecurity/Web3): Leading security operations and incident response for a digital assets platform with an accent on DFIR, threat hunting, and security automation. Focus on building agentic workflows for automated SecOps, managing the full incident lifecycle in a global production environment, and mentoring a team of experts.
Location: Global team
Company
provides a secure platform and network for companies and financial institutions to work with digital assets and blockchain technology.
What you will do
- Act as the primary escalation point for critical security alerts, performing deep-dive DFIR investigations and threat hunting.
- Lead SecOps projects from inception to execution, ensuring effective implementation and ongoing maintenance.
- Mentor a team of SecOps experts, providing technical guidance in a high-growth, fast-paced environment.
- Develop and refine agentic workflows to drive automated security operations and improve triage.
- Perform hands-on forensic investigations, log reviews, and root-cause analysis within cloud and SaaS environments.
- Coordinate incident containment and response activities with various business stakeholders and groups.
Requirements
- 5+ years of experience in Incident Response or a Cybersecurity Operations Center (CSOC).
- Extensive experience managing the lifecycle of security incidents in a global, 24/7 production environment.
- Strong development fundamentals with the ability to deliver production-grade code using Python and Bash.
- Proven expertise in attack and mitigation methods specifically within Cloud and SaaS environments.
- Solid understanding of security controls and host-based forensics for at least two OSs (Windows, Linux/Unix, or MacOS).
- Excellent communication skills and a proven ability to work collaboratively across organizations.
Nice to have
- Bachelor’s degree in Computer Science, Information Technology, or a related field.
- Solid understanding of LLM concepts and architectures with hands-on experience applying them in practice.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →