About Uphold
  
 Uphold is a financial technology company that believes on-chain services are the future of finance. It provides modern infrastructure for on-chain payments, banking and investments. Offering Consumer Services, Business Services and Institutional Trading, Uphold makes pioneering financial services easy and trusted for millions of customers in more than 140 countries.
 
 Uphold strips away the complexity and lack of transparency to open up Web3 finance for everyone.
 
 To learn more about Uphold, please visit https://uphold.com.
 
  The Opportunity
  
 Uphold is seeking a Senior Security Operations Center (SOC) Engineer to join our Cyber Security team. This is a key individual contributor role responsible for driving the operation and continuous improvement of our internal SOC. You will be at the center of our threat detection and incident response efforts, owning the configuration, tuning, and optimization of our SIEM platform. This is a hands-on technical role ideal for someone with deep security operations expertise who thrives on hunting threats, engineering detections, and streamlining response processes.
 
 While this role does not have direct reports, you will work closely with other teams including Cyber Security, Infrastructure, Engineering and Product Security to ensure visibility and detection coverage across our environment.
 
  What You’ll Be Doing Primarily
  
- 
   Assist with operations with our internal SOC and its core technologies, with a primary focus on our SIEM (Security Information and Event Management) system.
  
- 
   Design, implement, and tune detection rules, correlation logic, and alerts to reduce noise and improve signal fidelity.
  
- 
   Perform proactive threat hunting based on emerging threats, IOCs, and behavioral analysis.
  
- 
   Investigate escalated alerts and security incidents from detection to containment and remediation.
  
- 
   Build and maintain SOC runbooks, incident response workflows, and playbooks for consistent and rapid handling of events.
  
- 
   Work with internal teams to onboard new log sources and enrich security telemetry.
  
- 
   Provide recommendations and insights on security controls and detection coverage across systems and services.
  
- 
   Stay informed of the latest threat trends, adversary tactics, and detection techniques, applying them to our environment.
  
- 
   Support audit and compliance efforts related to monitoring and incident response.
   
 
 
 
Required Qualifications
- 
   3+ years of hands-on experience in a Security Operations Center or similar role, with deep familiarity in SIEM configuration, rule creation, and tuning.
  
- 
   Solid knowledge of cybersecurity operations, including threat detection, response, and threat intelligence.
  
- 
   Experience working with security log sources such as firewall, endpoint, cloud infrastructure, and application logs.
  
- 
   Strong scripting or query language proficiency (e.g., Python, PowerShell, KQL, Sigma, Regex).
  
- 
   Understanding of MITRE ATT&CK and threat modeling concepts.
  
- 
   Ability to work independently and interface cross-functionally with technical and non-technical stakeholders.
  
- 
   Excellent problem-solving skills with attention to detail and a strong security mindset.
  
- 
   Fluent written and oral English skills.
   
 
 
 
Bonus If You Have
- 
   Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Security, or a related technical field.
  
- 
   Experience managing or deploying SIEM platforms such as Sumo Logic or Sentinel.
  
- 
   Optimise log pipelines and data flows for efficient detection and cost control.
  
- 
   Familiarity with SOAR tools and automation playbooks.
  
- 
   Experience with EDR, IDS/IPS, and threat intelligence platforms.
  
- 
   Certifications such as GCIA, GCIH, GCFA, OSCP, or similar.
  
- 
   Prior exposure to securing cloud environments (AWS, GCP, Azure).
  
- 
   Experience contributing to open-source projects or publishing threat research.
  
- 
   Knowledge of cryptocurrency platforms or blockchain security fundamentals.
  
- 
   Own and operate the SOC, taking full responsibility for its maturity.
   
 
 
 
What We Have To Offer You
- 
   An amazing work environment in a company that continues to grow, driven by extraordinary and passionate people that keep up innovating and challenging more each day.
  
- 
   An international team, in a cutting edge field, working on the most fascinating projects.
  
- 
   Growth and career opportunities, and the chance to be proactive and creative.
  
- 
   A flexible and enthusiastic work environment that offers you snacks, a lot of coffee and other great benefits.
  
- 
   Open and transparent culture - we get together on a weekly basis to share updates, strategic plans, and engage with each other informally over food and drinks.
  
- 
   Interesting events that keep you connected with the team and celebrate our success.
   
 
 
 
 Be part of a great company that is revolutionizing the financial services. Apply now!
 
 If this job isn’t exactly what you are looking for, visit our careers page to check out all our exciting opportunities.
 
 EEOC Employer
 
 We're proud to be an Equal Opportunity Employer and we celebrate our employees' differences, including race, color, religion, gender identity, national origin, age, military service eligibility, veteran status, sexual orientation, marital status, disability, and any other protected classes. Difference makes us stronger and better - together.