Specialist, Security Engineering & Threat Management

Status
Kuala Lumpur, Malaysia
Full time
Hybrid
Compensation is not specified
Role
Security Engineer
Description

We are in search of an intermediate level security specialist to join our Global Cybersecurity Services Team. The role will focus on strengthening our security technology stack, developing AI-powered security automation workflows, and contributing to security operations and threat management within our innovative cybersecurity operating model.

We are in the process of creating a modern, intelligence-driven security operations capability that will heavily leverage AI and automation, necessitating engineering and operational expertise across all levels.

Responsibilities

  • Conduct in-depth reviews and investigations of threat alerts received by security operations, involving log examination and root cause analysis utilizing various tools such as EPP/EDR/XDR software, Digital Forensics tools, and SIEM platforms.
  • Engage in security engineering activities by constructing, sustaining, and improving our security operations technology stack which includes advanced SIEM and SOAR solutions. Develop and enhance security logging and detection engineering practices while managing the lifecycle of detection use cases. Strive for automation and the integration of AI into workflows.
  • Collect and analyze threat intelligence data from a variety of sources like OSINT, dark web forums, commercial feeds, and internal telemetry.
  • Analyze threat actors' capabilities, motivations, TTPs, perform targeted attack and attribution analysis, and provide recommendations for enhancing the global security program and specific security control areas.
  • Convert intelligence (operational/tactical/strategic) into actionable outcomes.
  • Collaborate with other security stakeholders to provide context on threats, share CTI insights during incidents, and help in prioritizing defensive measures.
  • Take charge of projects and initiatives such as Endpoint Security improvements, Threat Hunting, Compromise Assessments, and Network/Endpoint security evaluations.
  • Demonstrate proficiency in cross-functional leadership, stakeholder management, and show readiness to mentor and contribute to the team's growth and capability.

Requirements

  • 5-7 years of experience in Information Security with technical hands-on practice in various areas like Security Engineering, Security Operations, Cyber Threat Intelligence, Digital Forensics, Incident Response, Endpoint Security, or Cloud Security.
  • Practical experience with SIEM, EPP/EDR/XDR, SOAR, Threat Intelligence Platforms (TIPs), and Open Source Threat Intelligence solutions.
  • Hands-on exposure to Cloud environments like AWS, Azure, and GCP.
  • Direct experience in Cyber Threat Intelligence roles (Analyst, Engineer, Consultant).
  • Proficiency in operational, tactical, and strategic threat intelligence implementations.
  • Ability to utilize AI/ML in cybersecurity scenarios effectively.
  • Skilled in using scripting languages for task automation and data manipulation.
  • Self-driven, detail-oriented, and committed to achieving desired outcomes.
  • Fluent in both verbal and written English.
Skills Required
Avatar
Сrypto.com
Company size
Not specified
Location
United States
Description
Not specified
Status

More Full-time Jobs

Show more

Game Studio Hiring: Full-Stack, Mobile & 3D Web Developers

Part time
Remote
About Us
We are an established game studio developing HeroWarrior, a Unity-based web battle game that has been in active development for three years. Our project is supported by GameWorld (Netherlands) and we're currently preparing for version 2.0 with an expanded development team.
Following strategic restructuring in 2022, we're now building a distributed team across Europe and seeking talented developers to join our long-term project.
Open Positions
We are actively recruiting for the following roles:
UI/UX Designer
Specialization in gaming interface design
Experience with Unity UI systems preferred
 
Full-Stack Developers
 
Backend and frontend development for web platform
Experience with game-related web services preferred
 
Mobile Developers
 
Native mobile app development
Cross-platform experience valued
 
Unity Developers
 
Gameplay mechanics implementation
3+ years Unity experience required
 
3D Web Developers
 
WebGL and Three.js expertise
Browser-based 3D rendering experience
 
hat We Offer
Project Commitment: We're seeking long-term partnerships, not short-term contractors. This is an opportunity to grow with an established project backed by industry partners.
Compensation Structure:
Flexible payment options: hourly rates, monthly retainers, or milestone-based compensation
Rates negotiable based on experience and role
Initial evaluation period followed by standard employment terms
 
Work Environment:
Remote-friendly distributed team
Collaborative development process
Opportunity to work on a commercially-backed game project
Application Requirements
 
Please submit the following:
Portfolio/Resume - Detailed work history and relevant projects
Rate Expectations - Your preferred compensation structure and rates
Code Samples - GitHub repository, portfolio links, or previous work examples
Availability - Expected start date and commitment level
Evaluation Process Acknowledgment - Confirmation of willingness to complete a brief technical assessment
 
Ideal Candidates
Demonstrated passion for game development
Strong technical skills in relevant technologies
Experience working on long-term projects
Collaborative mindset and professional communication
Interest in building innovative gaming experiences
 
Next Steps
We are moving quickly to fill these positions. Qualified candidates will be contacted within one week for initial discussions and technical evaluation.
To apply, please send your complete application materials to vlad@gameworldcompany.com
 
Payment in Crypto
14,400-17,000
Monthly
See details

Assistant in Financial Technology and Trading Strategies (with Training)

Berlin, Germany
Berlin, Germany
Part time
Remote
Description
We are offering an opportunity to join our team and learn about cross-market trading strategies, focusing on identifying price differences of assets across multiple platforms. This role provides hands-on experience in financial technology, data analysis, and trading support.
As part of this position, you will:
Gain practical knowledge of market analysis and trading workflows
Learn how to recognize and evaluate opportunities across different platforms
Develop your skills in risk management and decision-making
Work with a mentor who will guide you step by step through the learning process
What we provide:
Comprehensive training program designed for beginners
Ongoing mentorship and professional support
Flexible schedule (approx. 1 hour a day required for study and practice)
Remote work setup with the possibility to grow into a larger role over time
This is a part-time, entry-level opportunity suitable for candidates with little or no prior experience. What matters most is your willingness to learn and apply new knowledge in practice.
Compensation: Competitive monthly pay structure with opportunities for progression as skills develop
5,000-20,000
Monthly
See details

Head of Custody Security

Dallas, USA
Dallas, USA
Full time
Hybrid
Responsibilities

Conduct, devise, and execute testing of security controls pertaining to identity management, key management, and infrastructure in network and cloud setups.

Aid client assurance tasks, including addressing Requests for Proposals (RFPs), Requests for Information (RFIs), and Due Diligence Questionnaires (DDQs).

Recognize and assess trends in client inquiries and offer feedback to internal teams for enhancing documentation and control preparedness.

Perform security due diligence and continuous monitoring for Web3/blockchain vendors, involving evaluating their control maturity, scrutinizing SOC reports and security documents, and identifying residual risks.

Coordinate external audit activities by managing walkthroughs, collating evidence, and tracking responses.

Pinpoint and analyze gaps in existing and new processes, devise and chart remediation suggestions until completion (e.g., onboarding procedure).

Develop and sustain comprehension of pertinent financial regulatory security requirements and ensure control alignment.

Research and distribute information security best practices, emerging threats, and mitigation techniques with internal teams.

Evaluate and suggest modern security tools, automation, and technologies to elevate overall security stance.

Assess blockchain network or protocol upgrades for their potential security implications on the platform.

Requirements

A minimum of 8 years' relevant experience in security assurance, audit, compliance, or cloud security engineering.

Demonstrated proficiency in testing and validating security controls across IAM, key management, and network/cloud environments.

Firm understanding of Identity and Access Management (IAM) principles.

Knowledge of cryptographic key management, HSMs, and KMS systems.

Comprehensive understanding of cloud and network security architecture and configuration.

Proven track record in supporting SOC 1, SOC 2, ISO 27001, PCI DSS, or equivalent external audits and assessments.

Exposure to major cloud platforms like AWS, GCP, Azure, and infrastructure-as-code.

Experience in creating client assurance materials, RFP/RFI/DDQ responses, and evidence documentation.

Familiarity with blockchain platforms or digital asset custody systems is beneficial.

Capable of independent work and performing under pressure.

Excellent oral and written communication skills.

Pragmatic and solution-driven mindset with the ability to balance security requirements with operational feasibility and business needs.

$190,000 - $230,000 a year

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Senior Python Data Engineer (Finance Technology)

Shenzhen, China
Shenzhen, China
Full time
Hybrid
We are seeking a talented individual to join our software team that focuses on designing, developing, maintaining, and enhancing software for various projects that are closely related to our core businesses. As part of the team, you will play a key role in designing scalable applications, involving frontend UI and backend infrastructure development.

Join us in building and managing a robust data transformation pipeline for our Finance teams. Your responsibilities will include designing and implementing data pipelines to ensure data quality, reliable data delivery, and timely financial reporting. You will also be tasked with creating tailored data products to enable users with self-service capabilities and accurate answers to their data inquiries.

Requirements:

Proficiency in Python for scripting purposes

Strong SQL skills for querying, transforming data, and optimizing performance

Experience with Apache Airflow or similar tools for working with Directed Acyclic Graphs (DAGs)

Ability to utilize GitHub for version control, collaboration, and branching

Collaborative mindset to effectively translate business requirements into technical solutions

Proficient in spoken English for communication purposes

Familiarity with Docker, Kubernetes, AWS/cloud platforms, and unit testing

Additional experience in Elixir, Cloudera Data Warehouse, AWS Athena/Tableau would be a bonus

Responsibilities:

Design and enhance Directed Acyclic Graphs (DAGs) with Python and Apache Airflow to meet financial reporting needs

Maintain internal tools for managing sensitive company data securely

Collaborate with various teams including Data Science, Data Warehouse, Exchange, Backend, and Finance to align on data requirements and deliverables

Document processes extensively to ensure smooth team collaboration and hand-offs

Life @ Crypto.com

Join a talented, ambitious, and supportive team that empowers you to think big and explore new opportunities. Benefit from a proactive and transformational working environment that encourages innovative solutions. Develop new skills and grow professionally within the organization while enjoying a supportive work culture where colleagues help one another achieve common goals. Embrace flexible work hours, remote work options, and take advantage of internal career mobility opportunities.

Benefits:

Competitive salary package

Generous annual leave entitlement, including birthday and work anniversary leave

Flexible work arrangements, including hybrid and remote setups

Opportunities for professional growth through internal mobility program

Enjoy work perks such as the Crypto.com visa card upon joining

Founded in 2016, Crypto.com is a global cryptocurrency platform serving millions of customers worldwide. Our mission is to make cryptocurrency accessible to everyone. With a focus on security, privacy, and compliance, we are driving cryptocurrency adoption through innovation to create a fairer digital ecosystem for the future generation.

Learn more about us at Crypto.com.

Crypto.com is committed to fostering an inclusive and diverse work environment where equal opportunities are provided to all individuals. We value and promote diversity and seek candidates from various backgrounds to strengthen and enrich our team.

Applicants' personal data will only be used for recruitment purposes. Please be advised that only shortlisted candidates will receive further communication. Artificial intelligence (AI) tools may be utilized in the recruitment process to support initial screenings or reviews; however, the final hiring decisions are made by human evaluators. For more information on data processing, feel free to contact us.

Head of Custody Security

Los Angeles, USA
Los Angeles, USA
Full time
Hybrid
Responsibilities

Conducting, designing, and executing security control testing for identity management, key management, and infrastructure (network and cloud) configurations.

Supporting client assurance activities, including addressing Requests for Proposals (RFPs), Requests for Information (RFIs), and Due Diligence Questionnaires (DDQs).

Identifying and analyzing trends in client inquiries, providing feedback to internal teams to enhance documentation and control readiness.

Performing security due diligence and continuous monitoring for Web3/blockchain vendors, evaluating their control maturity, reviewing SOC reports and security documentation, and identifying residual risks.

Facilitating external audit activities by coordinating walkthroughs, collecting evidence, and tracking responses.

Identifying and analyzing gaps in current and new processes, developing and tracking remediation recommendations to completion (e.g., onboarding flow).

Developing and maintaining understanding of applicable financial regulatory security requirements, ensuring alignment of controls.

Researching and sharing information on security best practices, emerging threats, and mitigation strategies with internal teams.

Evaluating and recommending next-generation security tools, automation, and technologies to strengthen overall security posture.

Reviewing blockchain network or protocol upgrades for potential security impacts on the platform.

Requirements

Minimum 8 years of relevant experience in security assurance, audit, compliance, or cloud security engineering.

Demonstrated experience in testing and validating security controls across IAM, key management, and network/cloud environments.

Solid understanding of Identity and Access Management (IAM) principles.

Knowledge of cryptographic key management, HSMs, and KMS systems.

Strong grasp of cloud and network security architecture and configuration.

Proven experience in supporting SOC 1, SOC 2, ISO 27001, PCI DSS, or similar external audits and assessments.

Exposure to major cloud platforms (AWS, GCP, Azure) and infrastructure-as-code.

Experience in preparing client assurance materials, RFP/RFI/DDQ responses, and evidence documentation.

Familiarity with blockchain platforms or digital asset custody systems is a plus.

Capability to work independently and under pressure.

Excellent verbal and written communication skills.

Pragmatic and solution-oriented approach, ability to balance security requirements with operational feasibility and business needs.

Salary: $190,000 - $230,000 a year

We may utilize artificial intelligence (AI) tools for parts of the hiring process, like reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you need more information about how your data is handled, please contact us.