资深安全工程师,威胁检测与响应
Staff Security Engineer, Threat Detection & Response
关于公司
Gemini 是由 Cameron 和 Tyler Winklevoss 于 2014 年创立的全球加密货币和 Web3 平台,为超过 70 个国家的个人和机构提供一系列简单、可靠且安全的加密货币产品和服务。我们的使命是通过提供对去中心化未来的可信访问,开启金融、创造和个人自由的新时代。我们设想一个世界,其中加密货币重新塑造全球金融体系、互联网和货币,为所有人创造更多选择、独立性和机会——以更加开放、公平和安全的方式将传统金融与新兴的加密经济连接起来。作为一家上市公司,Gemini 将凭借更大的规模、影响力和覆盖面加速实现这一愿景。
部门:威胁检测与响应
在数字资产这一新兴行业,信任至关重要(这也是为什么 Gemini 最初的招聘就是安全专家)。Gemini 安全团队是我们一切工作的核心,其多样性与我们在加密领域所面临的挑战数量一样丰富。从安全架构和工程到冷存储系统和数据中心的维护,再到网络安全和诉讼支持,我们的团队确保客户、客户和员工的安全、保障和支持。
职位:高级安全工程师
我们正在寻找一位经验丰富的高级安全工程师加入我们的团队。该职位在塑造我们的安全战略、领导安全解决方案的设计与实施以及确保我们的基础设施和应用具备抵御威胁的能力方面至关重要。理想的候选人应具备深厚的安全工程专业知识、强大的领导能力以及积极的问题解决态度。
职责:
- 安全战略与领导:
- 领导安全策略、政策和流程的开发与实施。
- 为安全工程团队和其他利益相关者提供技术领导和指导。
- 跟踪行业趋势、新兴威胁和新技术,确保我们的安全实践保持有效。
- 设计与实施:
- 架构和设计安全系统、应用程序和基础设施,以防范威胁和漏洞。
- 开发和实施安全控制、监控系统和响应机制。
- 与工程团队合作,在整个软件开发生命周期中集成安全实践。
查看英文原文
About the Company
Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and institutions in over 70 countries. Our mission is to unlock the next era of financial, creative, and personal freedom by providing trusted access to the decentralized future. We envision a world where crypto reshapes the global financial system, internet, and money to create greater choice, independence, and opportunity for all — bridging traditional finance with the emerging cryptoeconomy in a way that is more open, fair, and secure. As a publicly traded company, Gemini is poised to accelerate this vision with greater scale, reach, and impact.
The Department: Threat Detection & Response
In the emerging industry of digital assets, there is nothing more important than trust (which is why Gemini’s very first hires were Security experts). The Gemini Security team forms the backbone of all that we do and is as diverse as the number of challenges we tackle in the crypto space. From security architecture and engineering to maintenance of cold storage systems and data centers to cybersecurity and litigation support, our team ensures that our customers, clients, and employees are safe, secure, and supported.
The Role: Staff Security Engineer
We are seeking an experienced and highly skilled Security Staff Engineer to join our team. This role is crucial in shaping our security strategy, leading the design and implementation of security solutions, and ensuring our infrastructure and applications are robust against threats. The ideal candidate will possess deep expertise in security engineering, strong leadership skills, and a proactive approach to problem-solving.
Responsibilities:
- Security Strategy and Leadership:
- Lead the development and implementation of security strategies, policies, and procedures.
- Provide technical leadership and guidance to security engineering teams and other stakeholders.
- Stay current with industry trends, emerging threats, and new technologies to ensure our security practices remain effective.
- Design and Implementation:
- Architect and design secure systems, applications, and infrastructure to protect against threats and vulnerabilities.
- Develop and implement security controls, monitoring systems, and response mechanisms.
- Collaborate with engineering teams to integrate security practices throughout the software development lifecycle.
- Risk Management and Mitigation:
- Identify and assess security risks, vulnerabilities, and threats to our systems and data.
- Develop and implement risk mitigation strategies and incident response plans.
- Conduct regular security assessments, penetration tests, and vulnerability scans.
- Compliance and Governance:
- Ensure compliance with industry standards, regulations, and best practices (e.g., GDPR, CCPA, NIST, ISO 27001).
- Develop and maintain documentation related to security policies, procedures, and compliance requirements.
- Incident Response:
- Lead incident response efforts for security breaches, including investigation, containment, and remediation.
- Conduct post-incident analysis to identify lessons learned and improve security posture.
- Mentorship and Training:
- Mentor and train junior security engineers and other team members on security best practices and technologies.
- Promote a culture of security awareness and continuous improvement within the organization.
- Collaboration and Communication:
- Work closely with cross-functional teams, including IT, development, and operations, to address security concerns and integrate security solutions.
- Communicate security risks, strategies, and updates to senior management and other stakeholders.
Qualifications:
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or an equivalent experience.
- 8-10+ years of experience in security engineering, with a strong background in designing and implementing security solutions.
- Deep expertise in security technologies, including firewalls, intrusion detection/prevention systems, encryption, and vulnerability management.
- Proven experience with cloud security, network security, application security, and identity and access management.
- Strong understanding of security frameworks, standards, and regulations (e.g., NIST, ISO 27001, PCI-DSS).
- Excellent problem-solving skills and the ability to handle complex security challenges.
- Strong communication skills, with the ability to convey technical information to non-technical stakeholders.
It Pays to Work Here
The compensation & benefits package for this role includes:
- Competitive starting pay
- A discretionary annual bonus
- Long-term incentive in the form of a new hire equity grant
- Comprehensive health plans
- 401K with company matching
- Paid Parental Leave
- Flexible time off
Salary Range: The base salary range for this role is between $168,000 - $240,000 in the State of New York. This range is not inclusive of our discretionary bonus or equity package. When determining a candidate’s compensation, we consider a number of factors including skillset, experience, job scope, and current market data.
In the United States, we offer a hybrid work approach at our hub offices, balancing the benefits of in-person collaboration with the flexibility of remote work. Expectations may vary by location and role, so candidates are encouraged to connect with their recruiter to learn more about the specific policy for the role. Employees who do not live near one of our hubs are part of our remote workforce. All employees, however, are required to onboard in-person at one of our office locations.
At Gemini, we strive to build diverse teams that reflect the people we want to empower through our products, and we are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, or Veteran status. Equal Opportunity is the Law, and Gemini is proud to be an equal opportunity workplace. If you have a specific need that requires accommodation, please let a member of the People Team know.
#LI-AA1