Cybersecurity Engineer (Web3)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Cybersecurity Engineer (Web3): Building and operating security capabilities across cloud infrastructure, enterprise applications, AI-enabled systems, and modern engineering platforms with an accent on secure-by-design controls, automation, and regulatory alignment. Focus on threat modeling, cloud and application security, CI/CD integration, detection engineering, and protecting complex technology environments.
Location: Stamford, Connecticut, United States
Company
Digital asset investment platform providing institutional-grade investment products and solutions across the cryptocurrency market.
What you will do
- Implement secure design patterns and security controls across cloud infrastructure, enterprise applications, developer platforms, and AI-enabled systems.
- Protect sensitive data through identity and access management, data protection, network security, logging, monitoring, and auditability controls.
- Conduct threat modeling, architecture reviews, and security assessments for applications, cloud platforms, APIs, and emerging technologies.
- Build detection, alerting, monitoring, and incident response capabilities with engineering and security operations teams.
- Integrate security tooling and automation into CI/CD pipelines using Infrastructure-as-Code and policy-as-code practices.
- Partner with engineering, product, compliance, audit, and business stakeholders to support secure software development and regulatory requirements.
Requirements
- 5+ years of experience in cybersecurity, security engineering, cloud security, application security, DevSecOps, or a related engineering discipline.
- Experience implementing security controls in cloud-native environments, preferably AWS.
- Strong knowledge of identity and access management, data protection, network security, vulnerability management, monitoring, and incident response.
- Strong programming and scripting skills, including Python, Terraform, and Infrastructure-as-Code automation.
- Experience with cloud infrastructure, Kubernetes, APIs, CI/CD, SSDLC practices, and modern application architectures.
- Experience with SIEM/SOAR, vulnerability management, endpoint security, application security, or detection engineering platforms.
Nice to have
- Familiarity with AI/ML systems, LLMs, and AI-enabled application architectures.
- Experience in regulated financial services environments with strong audit, control, and compliance requirements.
Culture & Benefits
- Work across engineering, infrastructure, product, security, compliance, and audit functions.
- Contribute to long-term security standards, engineering patterns, automation, and operational best practices.
- Focus on secure, resilient, scalable technology aligned with regulatory expectations.
- Equal opportunity environment committed to diversity and non-discrimination.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →