Binance
Financial Services
SOCEngineer(IncidentResponse)
Neural analysis suggests this role is
optimal for Senior candidates.
“SOC Engineer (Incident Response) at Binance. Skills: Incident Response, Data Loss Prevention, Threat Hunting. Design DLP solutions. Deploy DLP solutions”
Industry & Context.
Anomaly detection; Minimize false positives; Root cause analysis
What They're Looking For.
Must Have
4+ years SOC/security operations, Incident response focus, Proven DLP experience, Programming skills, Hands-on threat hunting, Forensic analysis experience, APT detection experience, Familiarity with SIEM, Familiarity with EDR, Familiarity with cloud security, Knowledge of encryption, Knowledge of tokenization, Knowledge of data classification
Nice to Have
4+ years SOC/security operations, Incident response focus, Proven DLP experience, Programming skills, Hands-on threat hunting, Forensic analysis experience, APT detection experience, Familiarity with SIEM, Familiarity with EDR, Familiarity with cloud security, Knowledge of encryption, Knowledge of tokenization, Knowledge of data classification
What You'll Do.
Optimize DLP solutions
Build data classification schemes
Refine data classification schemes
Configure DLP policies
Lead DLP investigations
Lead insider threat investigations
Conduct threat hunting
Conduct forensic analysis
Integrate DLP monitoring
Build custom DLP tools
Build custom DLP integrations
Develop automation scripts
Explore AI/LLM methods
Ensure controls align
Support regulatory reviews
Assess data loss risks
Mitigate data loss risks
Full Job Description
## Description Binance is a leading global blockchain ecosystem behind the world’s largest cryptocurrency exchange by trading volume and registered users. We are trusted by 300+ million people in 100+ countries for our industry-leading security, user fund transparency, trading engine speed, deep liquidity, and an unmatched portfolio of digital-asset products. Binance offerings range from trading and finance to education, research, payments, institutional services, Web3 features, and more. We leverage the power of digital assets and blockchain to build an inclusive financial ecosystem to advance the freedom of money and improve financial access for people around the world. We’re looking for a security engineer with hands-on experience in Data Loss Prevention (DLP) and incident response, ideally within fintech, crypto, or high-security environments. The role goes beyond using commercial tools you’ll also design and build custom solutions, leverage automation, and adapt to emerging threats, including those driven by recent LLM/AI advancements. ## Responsibilities Design, deploy, and optimize DLP solutions across network, endpoint, and cloud. Build and refine data classification schemes for sensitive assets (wallets, trading algorithms, customer PII). Configure DLP policies to prevent data exfiltration while minimizing false positives. Monitor, analyze, and tune alerts and incidents for continuous improvement. Lead investigations of DLP incidents and insider threats, Conduct threat hunting and forensic analysis of data exfiltration attempts. Integrate DLP monitoring into broader SOC workflows and incident response playbooks. Build custom DLP tools and integrations (e.g., macOS Swift endpoint protection, Unix socket monitoring). Develop automation scripts, APIs, regexes and integrations to enhance detection and response. Explore AI/LLM-driven methods for anomaly detection and response efficiency. Ensure controls align with crypto and financial regulations (AML, KYC, GDPR
Applying for this SOC Engineer (Incident Response) role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Lever
- Lever uses a streamlined one-page form — apply in under 5 minutes.
- LinkedIn import works well; review parsed data before submitting.
- The cover letter field is optional but visible to reviewers — use it to differentiate.
- Referral codes from employees can significantly boost visibility of your application.
ANONYMOUS · UNFILTERED
What do employees actually say about Binance?
Real rants from real employees. Read before you apply.