SOC Security Engineer

BlockchainHQ

United States

Remote

USD 120.000 - 180.000

Vollzeit

14 Tage+
Bewerbungsgenerator

Hebe dich für diese Rolle von der Masse ab — erstelle in etwa einer Minute einen maßgeschneiderten Lebenslauf und ein Anschreiben.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Work-from-home arrangement
Competitive compensation
Career growth opportunities

Zusammenfassung

Binance is seeking a security-focused engineer to design, build, and maintain SOC platforms and tooling, emphasizing SIEM, SOAR, and automation. You will develop Python services and security integrations with AWS and internal security tools, while supporting SOC operations.

Proficiency in Python and AWS, plus SIEM experience, are required. The role involves on-call incident response and collaboration with SOC teams to enhance detection coverage and platform capabilities.

Qualifikationen

  • Hands-on Python development experience is required.
  • Experience with AWS, particularly EC2, S3, Lambda, IAM, and CloudWatch.
  • Experience developing production-quality services, automation, APIs, or internal security tools.
  • Practical experience using SIEM platforms for security monitoring, log analysis, and alert investigation.
  • Good understanding of SOC operations and Incident Response (IR), including alert triage and security incident investigation.
  • Understanding of common security threats and experience developing security detections / threat models / SIEM use cases.
  • Familiarity with EDR, security telemetry, REST APIs, Git, Docker, and Linux.
  • Strong problem-solving, troubleshooting, and communication skills.

Aufgaben

  • Design, develop, and maintain SOC security platforms and tooling, with a primary focus on SIEM, SOAR, and security automation.
  • Develop Python-based services, scripts, automation workflows, and security integrations with SIEM, EDR, AWS, and internal security platforms.
  • Build and maintain AWS-based security services and integrations, including EC2, S3, Lambda, IAM, and CloudWatch.
  • Support SIEM operations and detection engineering, including log ingestion, parsing, normalization, correlation, and detection rule development.
  • Develop detection use cases and common security threat models, based on attack scenarios and real-world security incidents.
  • Participate in SOC on-call rotation and incident response, including alert triage, investigation, containment, and post-incident analysis.
  • Work with SOC analysts and security teams to improve security automation, detection coverage, and platform capabilities.

Kenntnisse

Python development
Golang
Java
AWS
SIEM
Incident Response
EDR
REST APIs
Docker
Git
Linux
Communication skills
Troubleshooting
Security automation

Tools

Docker
Git
CloudWatch
EC2
S3

Jobbeschreibung

Binance is a leading global blockchain ecosystem behind the world’s largest cryptocurrency exchange by trading volume and registered users. We are trusted by 300+ million people in 100+ countries for our industry-leading security, user fund transparency, trading engine speed, deep liquidity, and an unmatched portfolio of digital-asset products. Binance offerings range from trading and finance to education, research, payments, institutional services, Web3 features, and more. We leverage the power of digital assets and blockchain to build an inclusive financial ecosystem to advance the freedom of money and improve financial access for people around the world.

Responsibilities
  • Design, develop, and maintain SOC security platforms and tooling, with a primary focus on SIEM, SOAR, and security automation.
  • Develop Python-based services, scripts, automation workflows, and security integrations with SIEM, EDR, AWS, and internal security platforms.
  • Build and maintain AWS-based security services and integrations, including EC2, S3, Lambda, IAM, and CloudWatch.
  • Support SIEM operations and detection engineering, including log ingestion, parsing, normalization, correlation, and detection rule development.
  • Develop detection use cases and common security threat models, based on attack scenarios and real-world security incidents.
  • Participate in SOC on-call rotation and incident response, including alert triage, investigation, containment, and post-incident analysis.
  • Work with SOC analysts and security teams to improve security automation, detection coverage, and platform capabilities.
Requirements
  • Hands-on Python development experience is required. Experience with Golang or Java is a plus.
  • Hands-on experience with AWS, particularly EC2, S3, Lambda, IAM, and CloudWatch.
  • Experience developing production-quality services, automation, APIs, or internal security tools.
  • Practical experience using SIEM platforms for security monitoring, log analysis, and alert investigation.
  • Good understanding of SOC operations and Incident Response (IR), including alert triage and security incident investigation.
  • Understanding of common security threats and experience developing security detections / threat models / SIEM use cases.
  • Familiarity with EDR, security telemetry, REST APIs, Git, Docker, and Linux.
  • Strong problem-solving, troubleshooting, and communication skills.
Why Binance
  • Shape the future with the world’s leading blockchain ecosystem
  • Collaborate with world-class talent in a user-centric global organization with a flat structure
  • Tackle unique, fast-paced projects with autonomy in an innovative environment
  • Thrive in a results-driven workplace with opportunities for career growth and continuous learning
  • Competitive salary and company benefits
  • Work-from-home arrangement (the arrangement may vary depending on the work nature of the business team)

Binance is committed to being an equal opportunity employer. We believe that having a diverse workforce is fundamental to our success.

By submitting a job application, you confirm that you have read and agree to our "Candidate Privacy Notice".

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Remote SOC Security Engineer — SIEM/SOAR & AWS Automation
Remote SOC Security Engineer — SIEM/SOAR & AWS Automation

BlockchainHQ • USA

Remote
USD 120.000 - 180.000
Work-from-home arrangement
Competitive compensation
Career growth opportunities
Web3 Security Senior Operations Specialist
Web3 Security Senior Operations Specialist

Binance • USA

Remote
USD 120.000 - 180.000
Work-from-home arrangement
Competitive salary and benefits
Flat organizational structure
Web3 Security Senior Operations Specialist
Web3 Security Senior Operations Specialist

BlockchainHQ • USA

Remote
USD 120.000 - 180.000
Competitive salary
Work-from-home arrangement
Web3 Security Data Analyst
Web3 Security Data Analyst

BlockchainHQ • USA

Remote
USD 140.000 - 210.000
Competitive salary
Work-from-home arrangement
Career growth opportunities
Web3 Security Senior Software Engineer (Java)
Web3 Security Senior Software Engineer (Java)

BlockchainHQ • USA

Remote
USD 120.000 - 190.000
Competitive salary
Work-from-home flexibility
Web3 Security Specialist (copy)
Web3 Security Specialist (copy)

Binance • USA

Remote
USD 140.000 - 220.000
Competitive salary and benefits
Work-from-home arrangement
Security Engineer Manager (Fully Remote)
Security Engineer Manager (Fully Remote)

Binance • USA

Remote
USD 180.000 - 240.000
Remote work
Competitive benefits
Business Intelligence/ Data Analyst
Business Intelligence/ Data Analyst

BlockchainHQ • USA

Remote
USD 90.000 - 130.000
Work-from-home arrangement
Competitive salary
Company benefits
Communications Manager – Global
Communications Manager – Global

Jobicy • USA

Remote
USD 170.000 - 260.000
Backend Engineer (Java) - KYC Tech
Backend Engineer (Java) - KYC Tech

Binance • USA

Remote
USD 120.000 - 180.000