InfoSec Engineer – CoinDCX | Jobs 2023


CoinDCX aims to spearhead the transition towards a decentralized realm, placing utmost importance on their workforce as the driving force behind this endeavor.

They have embarked on a thrilling expedition in the last half-decade, achieving remarkable milestones that have propelled them forward. They have attained the esteemed status of a unicorn, established themselves as a compliant exchange, and successfully brought onboard a staggering 15 million users. Moreover, they have introduced a groundbreaking self-custodial DeFi application named Okto. Their journey has been supported by prominent investors, including Pantera, B Capital Group, Bain Capital Ventures, and Coinbase Ventures, among various others.

Leveraging this momentum, their current emphasis lies in crafting innovative products, tackling the obstacles of accessibility & security, and closing the divide between individuals and Web3 technologies.

Become a part of their captivating expedition as they shape the future of the Web3 landscape. By joining their team, you’ll experience a dynamic and inclusive workplace, abundant prospects for professional development, and the opportunity to create a significant influence within the crypto and Web3 ecosystem.

The Web 3 realm is in its early stages, and the journey has only just begun!

CoinDCX Security Team

The Security team at CoinDCX is an exceptional collective of individuals who thrive on tackling unique challenges, armed with a remarkable degree of autonomy, creativity, and enjoyment.

They play a crucial role in defining how CoinDCX handles cyber risks throughout the organization, with a primary focus on safeguarding data and establishing and implementing security protocols while ensuring their adherence.

At CoinDCX, you will not only cultivate the skills of tomorrow but also have the invaluable opportunity to collaborate and learn from industry experts while actively shaping the future of Web3.

CoinDCX is currently in search of a seasoned and proficient Information Security Engineer to become a part of their dynamic team. As an InfoSec Engineer, your role will be pivotal in upholding the security and reliability of the digital asset trading platform. This position presents a distinctive chance to make a meaningful contribution within the rapidly evolving and captivating realm of cryptocurrencies and Web3.

Identity Traits

  • You possess an unwavering enthusiasm for all things related to VDA (Virtual Distributed Applications) and Web3.0.
  • You assume responsibility for your work and strive for excellence, driven by the desire to make a meaningful impact.
  • As you continue to grow, you actively contribute to the growth of others around you.
  • Embracing change, you exhibit a keen eye for detail and an unwavering commitment to quality.
  • Your passion lies in exploring novel ideas to construct practical solutions, and you possess an insatiable curiosity for continuous learning.

Operational Scope

  • Thoroughly review code to detect security vulnerabilities and provide actionable recommendations for remediation.
  • Perform comprehensive security assessments and penetration testing on web applications, APIs, Android and iOS platforms to identify potential threats and vulnerabilities.
  • Possess technical expertise across various product security domains, including web applications, mobile platforms, infrastructure, cryptography, and third-party risk assessment.
  • Collaborate with cross-functional teams to enforce secure coding practices and ensure adherence to best practices throughout the software development lifecycle.
  • Create, enhance, and maintain secure coding standards, guidelines, and processes.
  • Stay updated with the latest security vulnerabilities, threats, and industry best practices within the cryptocurrency field.
  • Conduct regular vulnerability assessments and penetration tests on web and mobile applications.
  • Investigate and respond to reported security incidents, conducting root cause analysis.
  • Deploy and maintain application security tools and solutions, with a particular focus on Snyk.
  • Work closely with cross-functional teams to guarantee the security of the Exchange and DeFi platforms.
  • Develop and update security testing methodologies, tools, and frameworks to ensure comprehensive coverage.
  • The work location will be based in either Bengaluru or Mumbai.

Required Skills

  • A bachelor’s degree in Computer Science, Information Security, or a related field. Holding relevant certifications such as CISSP, CEH, OSCP would be advantageous.
  • 2-5 years of practical experience in application security, with a particular emphasis on secure code review and implementing shift-left practices.
  • Extensive hands-on familiarity with code review tools and methodologies, preferably Snyk.
  • Thorough understanding of common web vulnerabilities (e.g., OWASP Top 10) and their corresponding remediation techniques.
  • Proficiency in programming languages such as Flutter, Dart, Swift, Bash, Python, NodeJS, and Ruby on Rails is desirable.
  • Strong expertise in web application security, API security, and mobile application security (Android and iOS).
  • Exceptional written and verbal communication skills, with the ability to effectively convey complex security concepts to both technical and non-technical stakeholders.
  • Outstanding problem-solving and critical-thinking skills, coupled with a proactive and detail-oriented approach to security.

Preferred Skills

  • Having a grasp of Surface and Deep/Dark web is beneficial.
  • Understanding cryptographic principles, secure coding practices, and secure development methodologies is advantageous.
  • Being familiar with threat hunting and adhering to best practices is a plus.
  • Having knowledge of cryptocurrency technologies, blockchain concepts, Defi, and Web3 protocols is highly advantageous.

Perks and Incentives

  • Endless Wellness Leaves
  • Customized Mental Wellness & Caregiving Sessions Led by Experts
  • Team Outings for Revitalization and Rejuvenation
  • DYOB (Design Your Own Benefit) Option
  • Access to LinkedIn Learning for Continuous Skill Development

Becoming an InfoSec Engineer at CoinDCX offers a distinctive chance to be part of the forefront of cryptocurrencies and Web3, where you can contribute to the platform’s security while continuously growing your expertise in this rapidly advancing industry. If you have a passion for application security, possess a robust skill set, and are enthusiastic about the future of digital assets, CoinDCX warmly welcomes you to apply and join their committed team.


Check out other jobs:


Leave a comment