Cybersecurity Engineer

Conio is an Italian fintech company providing cryptocurrency custody, trading, wallet, and tokenization solutions. It serves retail customers as well as banks, fintechs, financial institutions, and companies.

Maintainer signals as of 8/23/2026

San Francisco, USA
About Conio Inc.

Conio develops proprietary blockchain technology for secure custody and management of digital assets. Its offerings include a multi-signature mobile wallet for buying, selling, transferring, and storing Bitcoin and other cryptocurrencies; white-label custody and trading solutions for banks and fintechs; OTC Bitcoin trading through Conio Prime; and tokenization infrastructure for real-world assets, stablecoins, security tokens, loyalty tokens, and NFT solutions. The company serves more than 450,000 retail customers and works with banks, financial institutions, corporations, and institutional partners. Conio Inc. is headquartered in San Francisco, with Conio S.r.l. operating from Milan.

View jobs by Conio Inc.

Skills

About the Role

You will support the CISO by designing and improving Conio’s digital security defenses. You will monitor security events, manage incidents, automate threat response, maintain threat intelligence, secure CI/CD pipelines, perform application and cloud security testing, assess smart contracts, document security policies, and validate project architectures.

Requirements

  • More than 3 years of cybersecurity experience
  • Python
  • API-based system automation and integration
  • Linux
  • Cloud security
  • Containerized environments
  • SIEM
  • EDR/XDR
  • SOAR
  • Threat intelligence
  • Application security testing
  • Web and mobile application penetration testing
  • Vulnerability management
  • Italian and English communication
  • Blockchain and digital asset custody knowledge
  • Docker Swarm
  • Kubernetes
  • PCI-DSS
  • ISO 27001
  • SOC 2
  • DORA
  • NIS2
  • NIST
  • Technical scientific documentation

Responsibilities

  • Monitor security events using SIEM, HIDS, and EDR platforms
  • Manage incidents, cases, and indicators of compromise
  • Develop and manage SOAR integration tools
  • Orchestrate response across identity protection, endpoint, and incident response systems
  • Maintain threat intelligence databases and integrate external feeds
  • Automate threat analysis and response
  • Implement and monitor SAST, DAST, and SCA security tools in CI/CD pipelines
  • Perform manual penetration tests
  • Conduct security assessments of web and mobile applications
  • Supervise cloud infrastructure and smart contract security
  • Document security policies and procedures
  • Validate project architectural specifications from a security perspective

Benefits

  • Individual welfare plan
  • Hybrid or fully remote work options
  • More than 60 work-from-anywhere days per year
  • Team-building activities