Senior SOC Engineer
Liminal is the operating brand of First Answer Pte Ltd, providing institutional digital-asset custody, staking, and MPC/multisig wallet infrastructure.
Funding history
Projects
About Liminal
First Answer Pte Ltd is a Singapore-based crypto infrastructure company operating as Liminal. Its platform provides institutions with API-driven wallet infrastructure, self-custody and managed-custody options, institutional staking, white-label custody applications, HSM-backed vaults, transaction controls, and compliance integrations.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
Liminal Custody is seeking a Senior Security Operations Engineer to protect critical cloud, application, and blockchain infrastructure through incident response, detection engineering, threat intelligence, threat hunting, and security automation.
Requirements
- 5–7 years of experience in Security Operations, Detection Engineering, Incident Response, Threat Hunting, or Security Engineering.
- Strong hands-on experience with SIEM, security monitoring, and log analysis.
- Experience with Elastic, Elasticsearch, Kibana, and Datadog.
- Strong understanding of Incident Response and MITRE ATT&CK.
- Experience building and tuning security detections.
- Good understanding of AWS, Linux, networking, and cloud security.
- Strong scripting and automation skills in Python, Bash, or similar.
- Strong analytical and investigative mindset with the ability to independently handle security incidents.
- Experience with Web3, blockchain, cryptocurrency, or digital asset security is an advantage.
- Experience with AWS security services is an advantage.
- Experience with threat hunting, SOAR, EDR/XDR, Sigma, YARA, or Suricata is an advantage.
- Security certifications such as GCIH, GCIA, GCFA, Security+, CySA+, or equivalent are an advantage.
Responsibilities
- Investigate and respond to security incidents across cloud, applications, infrastructure, and blockchain environments.
- Design, develop, and continuously improve security detections and monitoring use cases.
- Build and tune detections using Elastic and Datadog.
- Conduct proactive threat hunting based on threat intelligence and attacker TTPs.
- Translate threat intelligence into actionable detections, IOCs, and response capabilities.
- Improve security visibility and telemetry across AWS and blockchain infrastructure.
- Develop automation for alert enrichment, investigation, and incident response.
- Perform root-cause analysis and drive remediation following security incidents.
- Work closely with Engineering, DevOps, Platform, and Security teams to strengthen security posture.
