Liminal Custody
Senior Security Engineer
NEWJob Description
[AI-summarized by JobStash]
You will develop, update, and maintain organizational cybersecurity policies, standards, and procedures to meet regulatory and industry requirements. You will lead internal and third-party security audits, coordinate remediation activities, and manage compliance documentation. You will collaborate with Engineering and Product to embed security into the SDLC, conduct security architecture reviews, perform threat modeling and risk assessments, and provide technical guidance on secure configuration, vulnerability management, and access control. You will establish and enhance incident response playbooks, act as a lead responder during incidents, perform forensic and root cause analysis, and manage security monitoring alerts from SIEM and EDR platforms to prevent recurrence.
Requirements
- ā3ā5 years of experience in information security or cybersecurity
- āExperience in financial services, fintech, or digital asset/blockchain environments preferred
- āStrong understanding of security regulations and compliance requirements
- āFamiliarity with ISO 27001, NIST, and CIS Controls
- āUnderstanding of Taiwan information security regulatory landscape
- āExperience with SIEM and EDR platforms
- āExperience in incident response and digital forensics
- āFluent in English and Mandarin
Responsibilities
- āDevelop and maintain cybersecurity policies, standards, and procedures
- āEnsure compliance with regulatory requirements and industry frameworks
- āLead internal security audits and regulatory assessments
- āManage third-party and supplier security audits and due diligence
- āEmbed security requirements throughout the SDLC
- āConduct security architecture reviews and threat modeling
- āPerform risk assessments for products, features, and infrastructure changes
- āProvide technical guidance on secure configuration and access control
- āManage vulnerability identification and remediation processes
- āEstablish and maintain incident response frameworks and playbooks
- āAct as lead responder for security incidents and coordinate investigations
- āMonitor and respond to security alerts (SIEM, EDR) and perform root cause analysis