logo

Cybersecurity Engineer

We are Conio, the cutting-edge Italian fintech backed by major players like Poste Italiane and Banca Generali. Pioneering the first multi-signature Bitcoin wallet in Italy, we are now leaders in digital asset custody and tokenization solutions. Our patented technology ensures maximum security and reliability, serving both leading financial institutions and retail customers through our proprietary App. We collaborate with global powerhouses like Ferrari and Enel, developing pioneering tokenization projects that are redefining the future of finance and Real World Assets (RWA). Join us to lead the digital asset revolution.

At Conio, security isn’t just a department—it’s in our DNA. That’s why we’re looking for a Cybersecurity Engineer who thinks outside the box, capable of combining the operational skills of a defender (Blue Team & SOC) with the expertise of an attacker (penetration testing & Red Team) and the mind of an architect (DevSecOps).

What you will do

As a Cybersecurity Engineer, you will serve as the CISO’s technical right-hand person and will be responsible for managing and improving the design of Conio’s “digital shield,” automating and managing threat response, and ensuring that every software release is secure from the very first line of code. Specifically, you will be responsible for:

  • Security Operations & Response: You will manage event monitoring using advanced SIEM/HIDS systems and enterprise-class EDR platforms, handling incidents, cases, and indicators of compromise (IoC);

  • SOAR & Automation: You will develop and manage integration tools to orchestrate responses across identity protection systems, endpoints, and incident response platforms;

  • Threat Intelligence: You will maintain Threat Intelligence databases, integrating external feeds and automating analysis through response and analysis modules (Responder/Analyzer);

  • DevSecOps Pipeline: You will implement and monitor code security using SAST, DAST, and SCA tools for static/dynamic analysis, vulnerability scanning, and container security within our CI/CD pipelines;

  • App, Cloud, and Smart Contract Security: You will perform manual penetration tests and conduct security analyses on web and mobile applications (iOS/Android), while overseeing the security posture of our cloud infrastructure and smart contracts;

  • Document Management: You will manage technical documentation related to the company’s security policies and procedures in accordance with standards (NIST, ISO 27001, DORA, SOC 2);

Security Design: You will validate project architectural specifications with a security-oriented mindset.

Who we are looking for

We have the perfect job for you, if you have these skills:

  • Experience: Over 3 years in cybersecurity, including roles in Security Engineering, DevSecOps, SOC, Blue Team, Red Team, Purple Team, or <any_color_you_like> Team ;)

  • Engineering Mindset: Proficiency in Python for automation and system integration via APIs;

  • Systems, Cloud & Containers: Excellent knowledge of Linux, the native security mechanisms of major cloud providers, and containerized environments;

  • Security Tooling: Hands-on experience with log monitoring platforms, SIEM, EDR/XDR, and incident management systems (SOAR/Threat Intelligence);

  • AppSec: proficiency in using tools for penetration testing and (web) application security analysis (e.g. BurpSuite);

  • Posture & Hygiene: management of vulnerabilities and the security posture of corporate assets;

  • Languages: excellent written and spoken Italian and English communication skills.

The Edge

Furthermore, you are the ideal candidate if:

  • Knowledge of security considerations related to blockchain and the custody of digital assets;

  • Experience with orchestration tools (Docker Swarm, Kubernetes) from a security perspective;

  • Familiarity with compliance frameworks (PCI-DSS) and international security standards such as ISO 27001, SOC 2, DORA, NIS 2, and NIST;

  • Curiosity: technologies are constantly changing, but mindsets are not. If you are curious, eager to learn new technologies, and think outside the box, you’re in the right place;

  • Ability to write technical and scientific documentation.

Why join us

In working at Conio, you will benefit from:

  • Strategic visibility: reporting directly to the CISO and immediate impact on technology decisions;

  • A highly competitive compensation package, including an individual welfare plan.

  • Flexible work policies embracing hybrid or full-remote work options.

  • Over 60 days per year of "Work From Anywhere" to fully enjoy your Summer and Winter holidays without restrictions.

  • Continuous learning opportunities through tailored training programs, professional courses, and industry events.

  • Periodic in-office and off-site meetings, and team-building activities to celebrate our successes together.

Being part of Conio means being a leader of change and innovation. Join us for an exciting challenge!

Spontaneous application

Didn't you find the position you were looking for? Submit your application, we might have just the right role for you!