×
Register Here to Apply for Jobs or Post Jobs. X

Senior Security Engineer, Threat Detection & Response

Job in San Francisco, San Francisco County, California, 94199, USA
Listing for: Gemini Trust Company
Full Time position
Listed on 2026-01-20
Job specializations:
  • IT/Tech
    Cybersecurity, Data Security, Security Manager
Job Description & How to Apply Below
About the Company

Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and institutions in over 70 countries. Our mission is to unlock the next era of financial, creative, and personal freedom by providing trusted access to the decentralized future. We envision a world where crypto reshapes the global financial system, internet, and money to create greater choice, independence, and opportunity for all — bridging traditional finance with the emerging cryptoeconomy in a way that is more open, fair, and secure.

As a publicly traded company, Gemini is poised to accelerate this vision with greater scale, reach, and impact.

The Department:
Security (Threat Detection & Response)

In the emerging industry of digital assets, there is nothing more important than trust (which iswhy Gemini’s very first hires were Security experts). The Gemini Security team forms the backbone of all that we do and is as diverse as the number of challenges we tackle in the cryptospace.

From security architecture and engineering to maintenance of cold storage systems and data centers to cybersecurity and litigation support, our team ensures that our customers, clients, and employees are safe, secure, and supported.

The Role:

Senior Security Engineer

In this role, you will be part of the team responsible for designing, building, and automating detection, response and intelligence gathering solutions, developing unique and creative detection mechanisms, monitoring security events, and leading responses to any security incidents.

This role is required to be in person twice a week at either our San Francisco, CA or New York City, NY office.

Responsibilities

• Own individual security solutions throughout their lifecycle, including design, development, and deployment, in order to continuously improve Gemini’s ability to detect and respond to advanced, targeted threats

• Develop and improve processes and tools that supports the team rapidly iterating and responding to threats Gemini faces

• Engage in incident response and investigation efforts

• Analyze technical threat data to extract TTPs, malware techniques, and adversary methods

• Create and enhance countermeasures and detections for malware, attacker techniques, threat actor methodology, and suspicious events associated with intelligence obtained by the Gemini Team

• Produce well documented, resilient and manageable code that supports the streamlining and automation of the above

• Provide mentorship and guidance to junior engineers on the team in their growth and implementation of the above

Minimum Qualifications

• Significant DFIR/Threat Detection and Response experience

• Scripting proficiency in a common programming language (e.g. Python, Go)

• Hands-on familiarity with CI/CD, infrastructure as code, and microservices

• Aptitude in the use of containerization technologies (eg. Docker)

• Experience in the design and implementation of detection signatures spanning multiple security log sources (Splunk, EDR, etc.)

• Able to troubleshoot and debug issues, and demonstrate a methodical approach to root cause analysis

• Excellent oral and written communication skills, including the ability to interact effectively with leadership, engineers, vendors and peers

Preferred Qualifications

• Familiarity in the use of container orchestration systems (e.g. Kubernetes)

• Experience applying CI/CD concepts to the development and deployment of security detection mechanisms and tools

• Experience in host and memory forensics (including live response) for Windows, OSX, and / or Linux

• Experience with the analysis of new log and data sources and methodically incorporating them into a detection pipeline

• Practical experience applying analysis frameworks (e.g Kill Chain, ATT&CK, etc)

• Experience in automating any of the above using existing APIs and tools

It Pays to Work Here

The compensation & benefits package for this role includes:

• Competitive starting pay

• A discretionary annual bonus

• Long-term incentive in the form of a new hire equity grant

• Comprehensive health plans

• 401K with…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary