The opportunity
Binance is a leading global blockchain ecosystem behind the world’s largest cryptocurrency exchange by trading volume and registered users. We are trusted by 300+ million people in 100+ countries for our industry-leading security, user fund transparency, trading engine speed,…
What you'll do
Design, develop, and maintain security automation and SOC tooling, including: integrations with SIEM, EDR, cloud services, and internal security platforms
Develop services, scripts, and pipelines to automate alert enrichment,: correlation, response, and investigation workflows
Build and maintain API-based integrations with security tools, AWS services, and internal systems
Support and enhance SIEM platforms for ingestion, alerting, and investigation
Participate in security detection engineering, including log parsing, data: normalization, and detection logic implementation
Assist in security incident response, including triage, investigation,: containment, eradication, and post-incident analysis
What they're looking for
- + years in a SOC or security operations role with incident response focus.
- Proven experience with DLP design, deployment, and monitoring.
- Strong programming skills (macOS Swift, Unix socket programming, scripting).
- Hands-on threat hunting, forensic analysis, and APT detection experience.
- Familiarity with SIEM, EDR, and cloud security architectures.
- Knowledge of encryption, tokenization, and data classification methods.