SOC Engineer (Incident Response)Active

The opportunity

Binance is a leading global blockchain ecosystem behind the world’s largest cryptocurrency exchange by trading volume and registered users. We are trusted by 300+ million people in 100+ countries for our industry-leading security, user fund transparency, trading engine speed,…

What you'll do

  • Design, develop, and maintain security automation and SOC tooling, including: integrations with SIEM, EDR, cloud services, and internal security platforms

  • Develop services, scripts, and pipelines to automate alert enrichment,: correlation, response, and investigation workflows

  • Build and maintain API-based integrations with security tools, AWS services, and internal systems

  • Support and enhance SIEM platforms for ingestion, alerting, and investigation

  • Participate in security detection engineering, including log parsing, data: normalization, and detection logic implementation

  • Assist in security incident response, including triage, investigation,: containment, eradication, and post-incident analysis

What they're looking for

  • + years in a SOC or security operations role with incident response focus.
  • Proven experience with DLP design, deployment, and monitoring.
  • Strong programming skills (macOS Swift, Unix socket programming, scripting).
  • Hands-on threat hunting, forensic analysis, and APT detection experience.
  • Familiarity with SIEM, EDR, and cloud security architectures.
  • Knowledge of encryption, tokenization, and data classification methods.