GoMining
SecOps Engineer
NEWWorldwideFull-timeGlobal
š Remote
ActivePosted within the last 30 days
Job Description
[AI-summarized by JobStash]
You will own and evolve the security posture across infrastructure endpoints and internal systems. You will manage and tune security tooling including DLP, MDM, SIEM, and endpoint protection and ensure policies and coverage remain effective. You will act as the first responder for security incidents: triage alerts, investigate root causes, coordinate containment and remediation, and produce postmortems and runbooks. You will embed security into cloud infrastructure, Kubernetes workloads and CI/CD pipelines, review IAM and secrets management, conduct vulnerability assessments, coordinate audits and manage penetration test remediation.
Requirements
- āHands-on administration of DLP platforms including policy authoring tuning and alert management
- āMDM administration experience including device enrollment compliance policies remote wipe and certificate management
- āFamiliarity with PAM solutions and secrets lifecycle management
- āEmail security configuration and anti-phishing platforms including DMARC DKIM and SPF
- āNetwork security fundamentals including firewall rule management IDS IPS zero-trust access models VPN and ZTNA
- āInfrastructure as Code security scanning using tools such as Checkov tfsec and KICS for Terraform Helm and Kubernetes manifests
- āStructured incident response methodology knowledge such as NIST SP 800-61 or PICERL
- āDigital forensics basics including memory and disk image acquisition log preservation chain of custody and timeline reconstruction
- āThreat intelligence and IOC enrichment using platforms and feeds such as MISP OpenCTI VirusTotal and Shodan
- āPractical knowledge of the MITRE ATT&CK framework for detection mapping and adversary emulation
- āVulnerability scanning and management experience with tools like Nessus Qualys Wiz or Orca Security including prioritization SLA tracking and remediation coordination
- āPenetration test coordination including scoping NDA/RoE validating findings and tracking remediation
- āWeb application security fundamentals including OWASP Top 10 and common API vulnerabilities and ability to validate external researcher findings
Responsibilities
- āOwn and maintain security tooling such as DLP MDM SIEM and endpoint protection
- āTriage security alerts investigate root causes coordinate containment and remediation and produce postmortems and runbooks
- āEmbed security across cloud infrastructure Kubernetes workloads CI/CD pipelines and network layers and review IAM secrets and access controls
- āCoordinate internal and external security audits manage pentest vendor relationships and track remediation to closure
- āConduct vulnerability assessments and support compliance activities by maintaining evidence and responding to auditor requests
Benefits & Perks
- āLearning support including courses English classes and conferences with up to 100% reimbursement
- āUnique loyalty program receive corporate digital miners and earn passive income with no investment
- āRetreats in international locations including company apartments in Cyprus
- āMemorable events with wow prizes
- āEmployee of the Month award
- āPaid leave up to 28 vacation days plus 8 company holidays and 5 personal days per year
- āFlexible hours and remote work
Tech Stack
IaCQualysCheckovMDMIAMvulnerability managementSecrets managementTerraformSPFDKIM