SecOps Engineer integrating security into development processes for Lido Protocol. Collaborating on security practices, incident management, and developer training.
Responsibilities
Develop secure systems to protect Lido Protocol, DAO, applications, contributors, partners, and stakers.
Define processes, systems, and applications to make attacks difficult to execute and easy to detect.
Embed security practices and tools within the development pipeline.
Develop and maintain incident response plans and playbooks.
Perform regular vulnerability assessments and penetration testing.
Lead or participate in incident response activities, including investigation, containment, eradication, and recovery.
Monitor security alerts and incidents to identify and respond to threats promptly.
Collaborate with development and operations teams to ensure security is incorporated from design to deployment and maintenance.
Provide training and support on security tools and techniques, emphasizing soft skills like communication, negotiation, and influence.
Requirements
Experience with technical security assessments, code audits, design reviews, and vulnerability research.
Proficiency in programming languages (Python, Golang, JavaScript, Bash).
Experience with security tools and technologies (SIEM, IDS/IPS, vulnerability scanners, automated security testing).
Excellent communication skills to articulate security concepts to technical and non-technical stakeholders.
Strong problem-solving abilities for security investigations and risk assessments.
English level: B2+.
Good to have: Experience with blockchain technologies, Ethereum-based networks, web3 bug hunting, and contract analysis.
Familiarity with DevOps practices and tools (Docker, Kubernetes, GitHub Actions, Git, Ansible, Terraform).
Experience with supply chain attacks analysis and prevention.
Focus on improving real-world security, not compliance.
Benefits
Competitive compensation level.
Flexible schedule.
Compensation for education, including language & professional growth courses.
SOC analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Investigating escalated alerts and improving 24×7 security operations.
SOC cybersecurity analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Improving 24×7 detection, investigation, and incident response capabilities.
Senior Security Operations Engineer monitoring incidents and leading forensics for Samsara’s IoT - connected operations platform. Building security automation and supporting insider - threat investigations.
Senior SOC analyst leading threat detection, investigations, and incident response for Financeit, a Canadian point - of - sale financing provider. Building its new SOC’s automation, AI - threat coverage, and operational standards.
Security Operations Engineer securing Tailscale’s software for safe device and network connections. Managing endpoints, identity access, platforms, automation, and data loss prevention.