Cybersecurity Engineer
Conio is an Italian fintech providing regulated digital-asset custody, wallet, trading, OTC, and tokenization services. It serves retail customers through its mobile app and supports banks, financial institutions, and businesses with white-label and tailored digital-asset solutions.
Funding history
About Conio
Conio develops proprietary blockchain technology for the custody and management of digital assets, emphasizing multi-signature security, regulatory compliance, and usability. Its offerings include a Bitcoin and digital-asset wallet, cryptocurrency purchase and conversion, Conio Prime OTC trading, and business solutions for custody, trading, and tokenization of real-world assets. The company serves retail users as well as banks, fintechs, financial institutions, and corporate clients seeking integrated or customized digital-asset services.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will support the CISO by designing and improving Conio’s digital security defenses. You will monitor security events, manage incidents, automate threat response, maintain threat intelligence, secure CI/CD pipelines, perform application and cloud security testing, assess smart contracts, document security policies, and validate project architectures.
Requirements
- More than 3 years of cybersecurity experience
- Python
- API-based system automation and integration
- Linux
- Cloud security
- Containerized environments
- SIEM
- EDR/XDR
- SOAR
- Threat intelligence
- Application security testing
- Web and mobile application penetration testing
- Vulnerability management
- Italian and English communication
- Blockchain and digital asset custody knowledge
- Docker Swarm
- Kubernetes
- PCI-DSS
- ISO 27001
- SOC 2
- DORA
- NIS2
- NIST
- Technical scientific documentation
Responsibilities
- Monitor security events using SIEM, HIDS, and EDR platforms
- Manage incidents, cases, and indicators of compromise
- Develop and manage SOAR integration tools
- Orchestrate response across identity protection, endpoint, and incident response systems
- Maintain threat intelligence databases and integrate external feeds
- Automate threat analysis and response
- Implement and monitor SAST, DAST, and SCA security tools in CI/CD pipelines
- Perform manual penetration tests
- Conduct security assessments of web and mobile applications
- Supervise cloud infrastructure and smart contract security
- Document security policies and procedures
- Validate project architectural specifications from a security perspective
Benefits
- Individual welfare plan
- Hybrid or fully remote work options
- More than 60 work-from-anywhere days per year
- Team-building activities
