iKonnect Vietnam Ltd. Co |
Job Overview and Responsibilities
About us
We are an innovative hybrid exchange that merges the best of CeFi and DeFi, emphasizing safety, simplicity, and scalability in crypto trading. Our unique approach to decentralization, combined with its commitment to regulatory compliance and customer protection, has made it a trusted destination for both institutional and retail investors.
What We Are Looking For
At company , security is a cornerstone of our product. This role is a blend of engineering/building with security. You would be part of a dynamic team, identifying risks throughout the organisational landscape.
Working with each respective team on risk identification, alerting, mitigation and prevention. You will have the opportunity to help to shape, build, and innovative security solutions within a rapidly evolving industry.
What you’ll be doing:
- Facilitate in assurance activities, such as penetration testing and purple teaming with ongoing or new projects to ensure their security security posture is at a high level.
- Architecting, implementing and managing comprehensive security solutions.
- Collaborating with development and operations teams to integrate security throughout the product lifecycle and assist in remediation efforts.
- Establish and enforce security policies, standards, and guidelines that comply with industry regulations and best practices.
- Build automation and leverage security frameworks with engineers that are able to improve security and reduce friction.
- Provide guidance and education to developers that help prevent the authoring of vulnerabilities.
- Monitor and respond to security incidents, ensuring quick resolution.
- Take part in critical discussion topics, with the ability to challenge decisions and the status-quo; we take collaboration and feedback seriously, believing it is one of the foundational principles of a great team.
Key Requirements
What we’re looking for:
- Strong Information Security (InfoSec) skills, with proven experience in application security or a relevant field.
- Experience with performing threat modelling exercises or a very good understanding of the methodology and ability to assess a project's risk.
- Self-disciplined, highly-motivated, with a strong sense of ownership, urgency, and drive.
- Experience with engineering, using infrastructure-as-code (such as Terraform and Ansible).
- Understanding of container and DevSecOps concepts (we use DefectDojo) with CI/CD experience.
- Hands on experience of developing, engineering or architecting within a public cloud environment.
- Familiarity with blockchain technology and cryptocurrency trading platforms.
- Excellent problem-solving skills, with the ability to think critically and strategically while addressing complex security challenges.
Bonus Points:
- Professional certifications such as OSCP, CISSP, CDP & CMTP.
- A track record of implementing innovative security solutions or continuous learning, demonstrating your passion and drive.
- Experience with IT security frameworks such as SOC 2 and ISO 27001.
Team Fit & Utilisation
At company, we are building high-performing teams. Due to the small team size, where possible. A candidate must be stronger than their team members in one security vertical, such as:
- DevSecOps
- Cloud
- AppSec
- Monitoring & Incident Response
- Governance, Risk and Compliance
- Blockchain Security
Candidates must also be proficient in at least one (preferably two) other vertical areas. This will provide overlapping skills with existing team members, while providing a foundational knowledge base which can be used to cross-pollinate skills and further increase their capabilities. The candidate should be ready to take ownership of their vertical(s) and represent the security team for these within the organisation.
Why You Should Apply This Position
We offers a flexible work environment with a highly competitive compensation package, including a base salary, performance-related bonus, equity, and token awards. We are committed to hiring and retaining the best talent in the industry and providing opportunities for growth and development.
Join us in our mission to build the future of crypto trading with innovative technology and a customer-centric approach.