云基础设施工程师
DEFCON AI 是一家利用人工智能、数学优化、数据分析和软件工程,专注于复杂系统韧性优化的洞察型公司。现招聘一名资深云基础设施工程师,负责设计、部署和运维云环境,重点聚焦虚拟化、自动化与安全。
加载中...
1. Security Architecture Planning & Implementation
- Lead the planning, design, and evolution of the company’s overall security architecture (e.g., Zero Trust networking, cloud, business systems, data security, and identity/access systems).
- Build reusable security capabilities into reference architectures, standards, and security baselines, and drive adoption and implementation across teams.
2. Defense-in-Depth Program Development
- Design detection and prevention capabilities against common attack chains (e.g., phishing, lateral movement, supply chain attacks, and cloud attack/defense techniques) to improve alert quality and response efficiency.
- Conduct security reviews and threat assessments for new businesses, new systems, and major changes; identify risks and define mitigation plans.
- Promote “shift-left” security by embedding controls into CI/CD, release processes, Infrastructure as Code (IaC), and code/dependency governance.
- Lead analysis and coordination for major security incidents (root cause analysis, impact assessment, remediation, and long-term governance improvements).
Matrixport
Matrixport is one of Asia's fastest-growing digital asset financial services platforms. It provides one-stop crypto financial services, with an average monthly trading volume of over $5 billion. Its offerings include Cactus Custody, spot OTC, fixed income, structured products, lending, and asset management.
注册并登录后即可查看
DEFCON AI 是一家利用人工智能、数学优化、数据分析和软件工程,专注于复杂系统韧性优化的洞察型公司。现招聘一名资深云基础设施工程师,负责设计、部署和运维云环境,重点聚焦虚拟化、自动化与安全。
为知名客户招聘两名信息系统安全工程师(ISSE),负责网络安全体系架构、需求、设计与实施,支持防篡改、网络韧性、威胁感知以及企业级网络安全能力的集成。工作地点在马萨诸塞州 Marlborough(或 Andover、Woburn、Tewksbury),全职正式编制,需持有有效安全许可。
我们正在寻找一位资深的基础设施 / 云自动化工程师,使用企业级工具集在 AWS 上设计、构建并维护安全、可扩展、自动化的基础设施。该角色专注于操作系统配置管理、黄金镜像工程以及基础设施即代码(IaC),并与安全、平台及 DevOps 团队紧密协作,在企业级规模上交付可靠、合规的云环境。
负责对公司业务系统、网络设备、云平台及移动应用进行渗透测试与安全评估,发现潜在安全漏洞并输出报告。 模拟真实攻击场景,对目标系统进行渗透、提权、横向移动等测试,验证安全防护有效性。 对扫描和测试发现的漏洞进行验证、分析与复现,并提供修复建议。 参与应急响应,协助分析和溯源安全事件。 跟踪最新安全漏洞、攻击技术与安全工具,并进行内部技术分享。 协助开发团队与运维团队