Dlp & Incident Response Engineer
hace 7 días
Binance is a leading global blockchain ecosystem behind the world’s largest cryptocurrency exchange by trading volume and registered users. We are trusted by over 280 million people in 100+ countries for our industry-leading security, user fund transparency, trading engine speed, deep liquidity, and an unmatched portfolio of digital-asset products. Binance offerings range from trading and finance to education, research, payments, institutional services, Web3 features, and more. We leverage the power of digital assets and blockchain to build an inclusive financial ecosystem to advance the freedom of money and improve financial access for people around the world.We’re looking for a security engineer with hands-on experience in Data Loss Prevention (DLP) and incident response, ideally within fintech, crypto, or high-security environments. The role goes beyond using commercial tools you’ll also design and build custom solutions, leverage automation, and adapt to emerging threats, including those driven by recent LLM/AI advancements.**Responsibilities**:- Design, deploy, and optimize DLP solutions across network, endpoint, and cloud.- Build and refine data classification schemes for sensitive assets (wallets, trading algorithms, customer PII).- Configure DLP policies to prevent data exfiltration while minimizing false positives.- Monitor, analyze, and tune alerts and incidents for continuous improvement.- Lead investigations of DLP incidents and insider threats,- Conduct threat hunting and forensic analysis of data exfiltration attempts.- Integrate DLP monitoring into broader SOC workflows and incident response playbooks.- Build custom DLP tools and integrations (e.g., macOS Swift endpoint protection, Unix socket monitoring).- Develop automation scripts, APIs, regexes and integrations to enhance detection and response.- Explore AI/LLM-driven methods for anomaly detection and response efficiency.- Ensure controls align with crypto and financial regulations (AML, KYC, GDPR, CCPA).- Support audits and regulatory reviews related to data protection.- Assess and mitigate data loss risks across trading platforms, onboarding systems, and blockchain infrastructure.**Requirements**:- 4+ years in a SOC or security operations role with incident response focus.- Proven experience with DLP design, deployment, and monitoring.- Strong programming skills (macOS Swift, Unix socket programming, scripting).- Hands-on threat hunting, forensic analysis, and APT detection experience.- Familiarity with SIEM, EDR, and cloud security architectures.- Knowledge of encryption, tokenization, and data classification methods.**Nice-to-have**:- 4+ years in a SOC or security operations role with incident response focus.- Proven experience with DLP design, deployment, and monitoring.- Strong programming skills (macOS Swift, Unix socket programming, scripting).- Hands-on threat hunting, forensic analysis, and APT detection experience.- Familiarity with SIEM, EDR, and cloud security architectures.- Knowledge of encryption, tokenization, and data classification methods.** Why Binance**- Shape the future with the world’s leading blockchain ecosystem- Collaborate with world-class talent in a user-centric global organization with a flat structure- Tackle unique, fast-paced projects with autonomy in an innovative environment- Thrive in a results-driven workplace with opportunities for career growth and continuous learning- Competitive salary and company benefits- Work-from-home arrangement (the arrangement may vary depending on the work nature of the business team)Binance is committed to being an equal opportunity employer. We believe that having a diverse workforce is fundamental to our success.
-
Incident Respond
hace 2 semanas
Ciudad de México Connectingology A tiempo completoDescripción Será responsable de garantizar la ejecución del proceso de respuesta a incidentes de ciberseguridad, comunicar oportunamente riesgos identificados durante las fases del ciclo de respuesta para promover la oportuna toma de decisiones por las partes involucradas. Además como parte del proceso de respuesta a incidentes de ciberseguridad...
-
Cybersecurity Incident Response Engineer
hace 24 horas
santiago de querétaro, México Autoliv Mexico A tiempo completoA leading automotive safety supplier in Querétaro is seeking an Information and Cybersecurity Engineer responsible for monitoring security incidents, providing incident response, and conducting forensic analysis. Candidates should have a Bachelor's degree in IT or related field and experience in Incident Response. The position offers attractive...
-
Cybersecurity Incident Response Engineer
hace 14 horas
Santiago de Querétaro, México Autoliv Mexico A tiempo completoA leading automotive safety supplier in Querétaro is seeking an Information and Cybersecurity Engineer responsible for monitoring security incidents, providing incident response, and conducting forensic analysis. Candidates should have a Bachelor's degree in IT or related field and experience in Incident Response. The position offers attractive...
-
Incident Response Engineer
hace 6 días
Ciudad de México albo A tiempo completoalbo albo is a leading fintech company offering financial products to individuals and SMB’s with the mission to bring financial freedom to everyone everywhere. We are looking for an Incident Response Engineer who has experience in the implementation, maintenance and compliance of various security standards and/or frameworks, as well as experience in the...
-
Incident Response
hace 2 semanas
Ciudad de México, Ciudad de México DaCodes A tiempo completoWork at DaCodesWe are a firm of experts in high-impact software and digital transformation.For over 10 years, we've been building technology- and innovation-driven solutions thanks to our team of 300+ talented #DaCoders, including developers, architects, UX/UI designers, PMs, QA testers, and more. Our team collaborates on projects with clients across LATAM...
-
Sr. Cybersecurity Incident Response Analyst
hace 1 día
Ciudad de México, Ciudad de México Blue Yonder A tiempo completoLocation: Remote - Monterrey, Mexico preferred (but also will consider Mexico City area)Role: Sr. Cybersecurity Incident Response Analyst (Threat Hunting)Blue Yonder Job Profile: Sr. Security Engineer, Security Architect Overview:Blue Yonder, a leading supply chain software company, is seeking a Sr Cybersecurity Incident Response Analyst (Threat Hunting)...
-
Engineering Manager, Incident Response
hace 4 semanas
Ciudad de México Lyft A tiempo completoAt Lyft, our mission is to improve people's lives with the world's best transportation. To do this, we start with our own community by creating an open, inclusive, and diverse organization.Security Incident Response quickly responds to and investigates security alerts and threats affecting Lyft services and infrastructure.You will lead a team that is...
-
Engineering Manager, Incident Response
hace 23 horas
Ciudad de México, CDMX Lyft A tiempo completoAt Lyft, our mission is to improve people's lives with the world's best transportation. To do this, we start with our own community by creating an open, inclusive, and diverse organization. Security Incident Response quickly responds to and investigates security alerts and threats affecting Lyft services and infrastructure. You will lead a team that is...
-
Sr. Cybersecurity Incident Response Analyst
hace 1 día
Centro de San Pedro Garza García, Nuevo León, México Blue Yonder A tiempo completoLocation: Remote - Monterrey, Mexico preferred (but also will consider Mexico City area)Role:Sr. Cybersecurity Incident Response Analyst (Threat Hunting)Blue Yonder Job Profile:Sr. Security Engineer, Security ArchitectOverviewBlue Yonder, a leading supply chain software company, is seeking aSr Cybersecurity Incident Response Analyst (Threat Hunting)to join...
-
Centro de San Pedro Garza García, Nuevo León, México Blue Yonder A tiempo completoLocation:Monterrey, Mexico or Mexico City, MX preferred- Fully RemoteBlue Yonder Job Profile:Sr. Security EngineerOverviewBlue Yonder, a leading supply chain software company, is seeking a Sr Security & Incident Response to join its Security Operations team. The successful candidate will be responsible for assisting with the organization's incident response...