Security Engineer, Security Operation & Vulnerability Monitoring

6 hours, 44 minutes ago
Full-time
Mid Level
Cybersecurity
Crypto.com

Crypto.com

Crypto.com is a top cryptocurrency platform with 80M+ users, offering secure trading of Bitcoin, Ethereum, NFTs, and 250+ altcoins. Services include easy purchases, price alerts, portfolio growth, and on-chain staking.

Capital Markets
1K-5K
Founded 2016

Description

  • Investigate Tier 1 and Tier 2 security escalations through incident triage and root cause analysis.
  • Perform security investigations using EPP/EDR/XDR, digital forensics, SIEM, and other open-source or proprietary tools.
  • Build and support AI-driven security automation workflows for autonomous threat reasoning, triage, detection, and containment.
  • Develop and orchestrate custom scripts and SOAR playbooks to accelerate security response times.
  • Lead rapid response efforts for zero-day vulnerabilities by assessing technical impact and validating compensating controls.
  • Engineer layered detections across the security stack to identify exploitation attempts and close visibility gaps during patching.
  • Lead end-to-end incident response activities, including investigation direction, containment, mitigation, and escalation guidance.
  • Work with cloud-native detection and CNAPP platforms to improve security operations.
  • Lead security projects involving CSPM, container security, native cloud security enhancements, runtime vulnerability management, endpoint security, threat hunting, compromise assessments, and network/endpoint/cloud security reviews.

Requirements

  • 2-5 years of experience in Information Security.
  • Hands-on experience in Security Operations, Security Engineering, Digital Forensics, Incident Response, Endpoint Security, or Cloud Security.
  • Experience with AI-augmented software development tools such as Claude Code, Codex, and Gemini.
  • Deep understanding of LLM methodologies and integration workflows.
  • Working experience with SIEM, EPP/EDR/XDR, SOAR, cloud security, and digital forensics tools.
  • Working experience with AWS, Azure, and GCP.
  • Experience using scripting languages to automate tasks and manipulate data, or equivalent programming experience.
  • Strong self-motivation, attention to detail, and an outcome-driven mindset.
  • Proficiency in spoken and written English.
  • On-call availability is required.

Benefits

  • Remote full-time role based in Sofia, Bulgaria.
  • Opportunity to work on a modern, multi-cloud, intelligence-driven security operations program.
  • Chance to build AI-driven security automation and agentic SOC capabilities.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Lead Security Engineer, Enterprise Security

Klaviyo 1K-5K IT Services

Klaviyo is hiring a Lead Security Engineer to secure its corporate systems and platforms across SaaS, identity, endpoints, Zero Trust networking, and perimeter defenses in a hands-on technical leadership role.

AWS Azure Cloudflare CrowdStrike GCP OAuth OpenID Connect Secrets Management Terraform Vercel
1 hour, 42 minutes ago

Principal Security Engineer, Privy

Stripe 5K-10K Diversified Financial Services

Privy is hiring a Principal Security Engineer to define and operate security programs for its fintech and crypto infrastructure products, with a focus on protecting sensitive systems and reducing risk across the company.

AWS Blockchain CI/CD Encryption Go Java JavaScript Microservices Network Security OAuth OpenID Connect Penetration Testing Python Ruby Rust Secrets Management TypeScript
1 hour, 47 minutes ago

Staff Security Engineer

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring a Security Engineer to secure its OT and ICS environments and help design foundational defenses for advanced defense technology and factory systems.

Go Linux Python Rust
5 hours, 25 minutes ago

Senior Purple Operations Engineer

Sporty Group 51-250 Media

Sporty is hiring a Purple Operations Engineer to improve the quality and reliability of security detections across its security monitoring environment and turn threat findings into actionable defensive controls.

Azure Bash Cloudflare Confluence GitHub GitLab JIRA Kubernetes Lucene PowerShell Python SIEM SOC
5 hours, 59 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers