Senior Security Engineer
Hong Kong
Applications have closed
Bullish
Bullish is a regulated and audited global cryptocurrency exchange where you can securely buy, sell and trade digital assets including Bitcoin and Ethereum. Trade derivatives.Focused on developing products and services for the digital assets sector, Bullish has rewired the traditional exchange to benefit asset holders, enable traders and increase market integrity. Supported by the group’s treasury, Bullish’s new breed of exchange combines deep liquidity, automated market making and industry-leading security and compliance to increase the accessibility of digital assets for investors. Bullish exchange is operated by Bullish (GI) Limited and is fully regulated in Gibraltar.
Mission: To make trading with digital assets more rewarding and secure.
Vision: To be the most innovative, respected, and trusted leader in crypto.
Reports to:
Head of Security EngineeringBullish seeks an experienced Security Engineer to design and deliver security solutions and services. This proactive team player will be a subject matter expert on key security challenges and will position themselves at the forefront of understanding existing and forthcoming products.
Responsibilities
Meet enterprise IT requirements through design and delivery of security solutions and services.
Analyze requirements to design and engineer new security initiatives with in-house and third party products.
Ensure security solutions are built to the agreed security standards.
Provide support for other teams on deployed security systems and tools.
Develop SOPs for security system operations.
Provide performance metrics on existing security systems.
Analyze problems and shortcomings, and plan for optimization.
Conduct research on latest cyber attacks, security threats, and defense technology.
Provide recommendations for security control improvement.
Qualifications
5+ years of verifiable experience in technical IT Security roles.
BS/BA degree in Cybersecurity/Computer Science or related field.
CISSP/CISA/CISM or similar certifications.
Cloud Security Certification is a plus.
Knowledge of DevSecOps and CI/CD principles and related tools.
Hands-on experience on DevSecOps automation using tools such as Terraform, Ansible, and GitHub Actions.
In-depth understanding of API, kubernetes and container security.
Familiar with security appliances/tools including IDS/IPS, WAF, Web Proxy, EDR, PAM, DLP, and anti-malware.
Strong understanding of networking protocols, operating systems (especially Linux, but also Windows and Mac), and cybersecurity concepts and technologies.
Good scripting skills (Bash, Python, Java, etc.)
Solid experience in securing Cloud environments such as AWS and GCP.
Ability to work across different regions.
Excellent verbal and written presentation skills with a proficiency in English.
Bullish is proud to be an equal opportunity employer. We are fast evolving and striving towards being a globally-diverse community. With integrity at our core, our success is driven by a talented team of individuals and the different perspectives they are encouraged to bring to work every day.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Ansible APIs Automation AWS Bash CI/CD CISA CISM CISSP Cloud Compliance Computer Science Crypto DevSecOps EDR GCP GitHub IDS IPS Java Kubernetes Linux Malware Python Scripting Terraform Windows
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.