Senior SOC Engineer
All-in-one Philippine e-wallet and cryptocurrency exchange combining crypto trading with payments, bills, QR checkout, mobile load, and remittances.
Funding history
About Coins.ph
Coins.ph is a regulated digital-asset and payments platform operating under the Coins.ph brand. Its services include buying, selling, and holding cryptocurrency; peso wallets; bill payments; mobile load; QR payments; money transfers; and remittances. The current user agreement identifies Betur, Inc. and DCPay Philippines, Inc. as the entities doing business as coins.ph.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
Coins seeks a highly skilled Senior SOC Engineer to lead security monitoring, incident response, threat analysis, digital forensics, and insider threat detection for cryptocurrency exchange operations. The role protects digital assets and customer funds while coordinating with law enforcement, regulators, and external security firms.
Requirements
- Minimum 5+ years in SOC operations, preferably in financial services or cryptocurrency exchanges
- CISSP, GCIH, GCFA, GNFA, GCTI, CEH, or equivalent security certification required
- Advanced proficiency with SIEM platforms such as Sumo Logic, Splunk, QRadar, or Sentinel
- Experience with MISP, ThreatConnect, Anomali, MITRE ATT&CK, and Diamond Model
- Proficiency in Python, PowerShell, or similar scripting languages
- Experience securing AWS, Azure, or GCP cloud infrastructure and container environments
- Experience with insider threat analysis tools and methodologies is preferred
- Background in behavioral analytics, user activity monitoring, and privileged access management is preferred
Responsibilities
- Lead security monitoring operations for cryptocurrency exchange infrastructure, trading platforms, and digital wallet systems
- Oversee real-time analysis of security events, alerts, and anomalies across blockchain networks, trading engines, and customer-facing applications
- Coordinate incident response for security breaches, suspicious trading activity, and potential fraud attempts
- Manage SIEM platforms, security orchestration tools, and automated response systems
- Develop security playbooks and incident response procedures for cryptocurrency exchange operations
- Monitor dark web marketplaces, criminal forums, and threat actor communications
- Develop threat intelligence feeds and indicators of compromise
- Design insider threat detection programs and investigate suspicious employee activity
- Conduct digital forensics investigations and lead responses to fund theft attempts and system compromises
- Coordinate with law enforcement, regulators, and external security firms
- Create post-incident reports and security improvement recommendations
Benefits
- Meaningful cross-functional collaboration to improve customer experience
- Career advancement opportunities in a fast-growing organization expanding beyond APAC
- A culture that welcomes data-backed ideas and meaningful impact
