nPloy лого

Senior SOC Engineer

Лого на Nexo

Nexo

Hybrid

Hybrid

Постоянен трудов договор

4 - 15 years of experience

Full Time

Sofia, Bulgaria

Описание

Stand out and drive the next generation of wealth. ​​Define the digital assets industry. Raise the bar for trust, transparency, and client success. Make your mark.

Nexo is a premier digital assets wealth platform designed to empower clients to grow, manage, and preserve their crypto holdings. Our mission is to lead the next generation of wealth creation by focusing on customer success and delivering tailored solutions that build enduring value, supported by 24/7 client care.

Since 2018, Nexo has provided unmatched opportunities to forward-thinking clients in over 200 jurisdictions. With over $7 billion in AUM and $320 billion processed, we bring lasting value to millions worldwide. Our all-in-one platform combines advanced technology with a client-first approach, offering high-yield flexible and fixed-term savings, crypto-backed loans, sophisticated trading tools, and liquidity solutions, including the first crypto debit/credit card. Built on deep industry expertise, a sustainable business model, robust infrastructure, stringent security, and global licensing, Nexo champions innovation and long-lasting prosperity.

Official website: nexo.com

Your role:

  • Monitor and analyze security events in real time using SIEM, EDR, DLP, UEBA,and IDS/IPS tools.
  • Lead investigations into complex security incidents and coordinate effective response actions.
  • Develop and fine-tune detection rules based on the MITRE ATT&CK framework.
  • Automate response workflows using SOAR platforms and scripting languages like Python or PowerShell.
  • Collaborate with cross-functional teams to strengthen infrastructure and application security.
  • Integrate threat intelligence into detection systems to proactively mitigate risk.
  • Mentor junior analysts and contribute to developing SOC documentation and playbooks.
  • Support audits, reporting, and compliance activities with evidence-based practices.

What makes you stand out:

  • Proven Experience: 4+ years working in a Security Operations Center or hands-on cybersecurity role with demonstrated incident response leadership.
  • Technical Expertise: Deep knowledge of SIEM platforms (e.g., Splunk, Sentinel), EDR tools (e.g., CrowdStrike, SentinelOne), log analysis, and scripting.
  • Security Acumen: Strong understanding of network protocols, cloud security (AWS, Azure, GCP), endpoint forensics, and attacker TTPs.
  • Certifications (Preferred but not required): GIAC (e.g., GCIA, GCIH, GCFA), OSCP, CISSP, or equivalent.
  • Threat Framework Familiarity: Confident working with MITRE ATT&CK, NIST, Cyber Kill Chain, etc.
  • Automation Enthusiast: Comfortable building custom SOAR playbooks and using scripting to improve SOC workflows.
  • Mentorship Mindset: Experience guiding junior team members, sharing knowledge, and fostering a high-performance culture.
  • Clear Communicator: Strong written and verbal skills to clearly explain complex security issues to both technical and non-technical audiences.

Nexo benefits:

  • Competitive and rewarding remuneration package.
  • Annual performance-based bonuses.
  • Comprehensive Learning Hub for continuous growth.
  • Hybrid work model: primarily office-based with scheduled home office flexibility.
  • A dynamic and inspiring environment with cutting-edge projects.
  • Career development opportunities in a global leader driving the next generation of wealth.
  • Customizable personal benefits package.
  • Wellness benefits include additional health insurance, all-access sports cards, team-wide sports activities, standing desks, and blue light glasses.
  • Free parking with a designated space, free electric bikes, and public transportation cards.
  • Fresh fruits, snacks, and a well-stocked office kitchen.
  • Regular department team buildings and company-wide team buildings.

Необходими умения

AWS
Python
Networking protocols
Azure
GCP
Splunk
PowerShell
SIEM
Cloud Security
English
Обявата е публикувана преди 1 ден

или

за да кандидатстваш.