DLP & Incident Response Engineer

hace 4 días


WorkFromHome, México Binance A tiempo completo

Binance is a leading global blockchain ecosystem behind the world’s largest cryptocurrency exchange by trading volume and registered users. We are trusted by over 280 million people in 100+ countries for our industry‑leading security, user fund transparency, trading engine speed, deep liquidity, and an unmatched portfolio of digital‑asset products. Binance offerings range from trading and finance to education, research, payments, institutional services, Web3 features, and more. We leverage the power of digital assets and blockchain to build an inclusive financial ecosystem to advance the freedom of money and improve financial access for people around the world. We’re looking for a security engineer with hands‑on experience in Data Loss Prevention (DLP) and incident response, ideally within fintech, crypto, or high‑security environments. The role goes beyond using commercial tools you’ll also design and build custom solutions, leverage automation, and adapt to emerging threats, including those driven by recent LLM/AI advancements. Responsibilities Design, deploy, and optimize DLP solutions across network, endpoint, and cloud. Build and refine data classification schemes for sensitive assets (wallets, trading algorithms, customer PII). Configure DLP policies to prevent data exfiltration while minimizing false positives. Monitor, analyze, and tune alerts and incidents for continuous improvement. Lead investigations of DLP incidents and insider threats. Conduct threat hunting and forensic analysis of data exfiltration attempts. Integrate DLP monitoring into broader SOC workflows and incident response playbooks. Build custom DLP tools and integrations (e.g., macOS Swift endpoint protection, Unix socket monitoring). Develop automation scripts, APIs, regexes and integrations to enhance detection and response. Explore AI/LLM‑driven methods for anomaly detection and response efficiency. Ensure controls align with crypto and financial regulations (AML, KYC, GDPR, CCPA). Support audits and regulatory reviews related to data protection. Assess and mitigate data loss risks across trading platforms, onboarding systems, and blockchain infrastructure. Requirements 4+ years in a SOC or security operations role with incident response focus. Proven experience with DLP design, deployment, and monitoring. Strong programming skills (macOS Swift, Unix socket programming, scripting). Hands‑on threat hunting, forensic analysis, and APT detection experience. Familiarity with SIEM, EDR, and cloud security architectures. Knowledge of encryption, tokenization, and data classification methods. Nice‑to‑have 4+ years in a SOC or security operations role with incident response focus. Proven experience with DLP design, deployment, and monitoring. Strong programming skills (macOS Swift, Unix socket programming, scripting). Hands‑on threat hunting, forensic analysis, and APT detection experience. Familiarity with SIEM, EDR, and cloud security architectures. Knowledge of encryption, tokenization, and data classification methods. Why Binance Shape the future with the world’s leading blockchain ecosystem Collaborate with world‑class talent in a user‑centric global organization with a flat structure Tackle unique, fast‑paced projects with autonomy in an innovative environment Thrive in a results‑driven workplace with opportunities for career growth and continuous learning Competitive salary and company benefits Work‑from‑home arrangement (the arrangement may vary depending on the work nature of the business team) Binance is committed to being an equal opportunity employer. We believe that having a diverse workforce is fundamental to our success. By submitting a job application, you confirm that you have read and agree to our Candidate Privacy Notice. #J-18808-Ljbffr



  • WorkFromHome, México Autoliv Mexico A tiempo completo

    A leading automotive safety supplier in Querétaro is seeking an Information and Cybersecurity Engineer responsible for monitoring security incidents, providing incident response, and conducting forensic analysis. Candidates should have a Bachelor's degree in IT or related field and experience in Incident Response. The position offers attractive...


  • WorkFromHome, México Blue Yonder A tiempo completo

    Location : Monterrey, Mexico Role : Sr. Cybersecurity Incident Response Analyst (Threat Hunting) Blue Yonder Job Profile : Sr Security Engineer, Security Architect Overview Blue Yonder, a leading supply chain software company, is seeking a Sr Cybersecurity Incident Response Analyst (Threat Hunting) to join its Security Operations (SOC) team. The successful...


  • WorkFromHome, México Ellation, Inc. A tiempo completo

    A global tech company in Veracruz, Mexico is seeking a versatile engineer for their new Partner Reliability Engineering team. This role requires hands-on experience in SRE and automating operational processes. You will lead incident responses, develop monitoring tools, and analyze data to improve user experience. The ideal candidate has strong SQL skills and...


  • WorkFromHome, México Blue Yonder A tiempo completo

    Sr. Cybersecurity and Incident Response Analyst Join to apply for the Sr. Cybersecurity and Incident Response Analyst role at Blue Yonder . Location: Monterrey, Mexico or Mexico City, MX preferred - Fully Remote Overview Blue Yonder, a leading supply chain software company, is seeking a Senior Security & Incident Response Analyst to join its Security...


  • WorkFromHome, México Cloudbeds A tiempo completo

    A leading hospitality tech firm is seeking a Cloud Operations Engineer to ensure operational stability in its AWS environment. The role is remote and requires expertise in monitoring tools like DataDog and AWS CloudWatch, as well as experience with incident response. Strong communication skills and a solid background in IT operations are essential. Join the...


  • WorkFromHome, México Autoliv A tiempo completo

    A leading automotive safety supplier in Querétaro is looking for an Information and Cybersecurity Engineer to ensure the security of its systems and respond to incidents. Key responsibilities include monitoring security incidents, conducting analyses, and maintaining documentation. The ideal candidate will have a Bachelor's Degree in IT, experience in...


  • WorkFromHome, México BairesDev A tiempo completo

    A leading IT services firm is seeking a Security Engineer to join its remote team in Mexico. This role involves tackling technical challenges, developing security solutions, and leading incident responses. Ideal candidates have over 5 years of experience in network security and are proficient in various security tools. The position offers competitive...


  • WorkFromHome, México Cloudbeds A tiempo completo

    A leading hospitality tech firm is looking for a Cloud Operations Engineer to ensure operational stability across its AWS environment. This remote role requires expertise in monitoring tools like DataDog and AWS CloudWatch, as well as experience in incident response procedures. The candidate should possess strong communication skills and a background in IT...

  • Senior Cybersecurity

    hace 3 semanas


    WorkFromHome, México Blue Yonder A tiempo completo

    A leading supply chain software company is seeking a Sr. Cybersecurity and Incident Response Analyst to monitor security alerts, lead incident response efforts, and collaborate with cross-functional teams. The ideal candidate will have over 5 years of experience in cybersecurity, possess strong technical and communication skills, and be familiar with...


  • WorkFromHome, México KTSA - KPMG Technology Services Americas A tiempo completo

    A leading technology firm in Mexico is seeking a Manager for Cybersecurity Threat Intelligence. This role requires a strong background in cyber threat intel, knowledge of incident response, and the ability to automate workflows. Key responsibilities include conducting IOC sweeps, preparing daily reports for leadership, and assisting in the automation of...