SOC Security Development Engineer developing security automation and SOC tooling for Binance. Join the Security Operations team focusing on engineering integration and incident response.
Responsibilities
Design, develop, and maintain security automation and SOC tooling, including integrations with SIEM, EDR, cloud services, and internal security platforms
Develop services, scripts, and pipelines to automate alert enrichment, correlation, response, and investigation workflows
Build and maintain API-based integrations with security tools, AWS services, and internal systems
Support and enhance SIEM platforms for ingestion, alerting, and investigation
Participate in security detection engineering, including log parsing, data normalization, and detection logic implementation
Assist in security incident response, including triage, investigation, containment, eradication, and post-incident analysis
Take part in SOC on-call rotation / shift duty, responding to security alerts and incidents as required
Work closely with SOC analysts to translate operational needs into scalable engineering solutions, debug, troubleshoot, and optimize existing security automation, CI/CD pipelines, and platform components etc.
Requirements
Programming & Engineering Skills: Strong hands-on programming experience in one or more languages, such as: Python (preferred), Golang, Java.
Experience writing production-quality code, not just ad-hoc scripts, solid experience with RESTful APIs, including authentication, pagination, rate limiting, and error handling, familiarity with modern IDEs (VS Code, IntelliJ, PyCharm) and debugging techniques
Experience with Git-based version control and collaborative development workflows, Cloud, CI/CD & Containerization, practical experience working with AWS environments, including common services such as IAM, EC2, S3, Lambda, and CloudWatch, experience building, deploying, and maintaining Docker-based applications
Security & SOC Knowledge: Hands-on experience working in or closely with a Security Operations Center (SOC), like experience using SIEM platforms and familiarity with EDR solutions, understanding of common security telemetry sources
Platform & System Skills, experience developing or extending security platforms or internal security tools, solid Linux fundamentals
Benefits
Competitive salary and company benefits
Work-from-home arrangement (the arrangement may vary depending on the work nature of the business team)
Support in quality and information security management, optimizing processes in collaboration with departments. Create reports and help maintain documentation ensuring up - to - date records.
Workday Security Consultant serving as bridge between HR functional area and IT for technology solutions. Involves analysis, development, and maintenance of HRIS solutions.
IT Security Architect responsible for building security concepts and enhancing company - wide safety measures. Contributes to reliable global software solutions in an international team context.
Cyber Security Service Performance Manager managing the delivery of cyber security services within TfL. Focusing on service transition, contract management, and stakeholder engagement.
Junior Implementation & Support Engineer in cybersecurity working with global customers and hands - on implementation projects. Join Secomea's US team in a hybrid role for increased exposure.
Cybersecurity Engineer developing and maintaining cybersecurity capabilities for safeguarding information systems. Collaborating on technology projects from requirements to deployment for Truist.
Cybersecurity Engineer responsible for managing Container vulnerabilities and cybersecurity capabilities. Involves design, testing, and implementation of security technologies.
Senior Product Security Engineer at Vercel focusing on product security initiatives across various platforms. Driving security - first culture while ensuring core infrastructure is secure and robust.