Hashtag Web3 Logo
Coinhako logo

Security Engineering Intern, GRC

Coinhako
VietnamPosted 33 days ago
Apply

Coinhako is hiring a Security Engineering Intern, GRC in Security — Vietnam. The overview below is synthesized from the employer posting on jobs.ashbyhq.com: factual requirements and scope are preserved, but prose is rewritten with editorial context. Verify details and apply via the employer link.

The listing frames the Security Engineering Intern, GRC at Coinhako as a hands-on product role. You'll get hands-on experience assisting with SOC 2 and ISO 27001 audits, monitoring compliance and supporting daily security tasks.

What you'll be doing

  • Audit Support: Assist in preparing for external compliance audits including:Understand auditor’s requests and inquiriesPrepare evidences and documentation that satisfy auditor’s inquiryIn-scope compliance standards include: SOC 2, ISO 27001, MAS TRMG.
  • Compliance Monitoring:Stay aware of compliance obligations and recurring tasks throughout the year / audit period and coordinate with internal teams to ensure timely completion (E.g. Penetration test, incident response test, disaster recovery test schedule)Collect sufficient artifacts of the above activities to be used to demonstrate compliance.
  • BAU GRC Tasks:Assist in maintaining GRC documentation and reporting (e.g. security policies and procedures, risk registers, risk report, etc.)Assist in conducting periodic user access review, security awareness training and phishing campaign, etc.

What we're looking for

  • Currently pursuing a bachelor's or master's degree in Cybersecurity, Computer Science, IT, or related field
  • Basic understanding of cybersecurity concepts and network fundamentals
  • Familiarity with common operating systems (Windows, Linux, MacOS)
  • Strong analytical and problem-solving skills
  • Effectively communicate technical issues to diverse audiences, both in writing and verbally (Vietnamese and English)
  • Curiosity and eagerness to learn about IT audits, risk, compliance and to use AI tools in daily workflows
  • Understanding and/or experience working in a Cryptocurrency/Blockchain/Fintech/Finance Trading domain preferred.

Preferred Qualifications

Experience and skills the team lists as required:

  • Knowledge of SIEM tools and security monitoring concepts
  • Familiarity with cloud platforms (AWS, Azure, or GCP) and their native security services
  • Exposure to IaC (Infrastructure as Code) solutions or systems automation platforms
  • Experience with security tools (EDR, WAF, DNS security, etc.)
  • Interest in pursuing cybersecurity certifications (e.g., CompTIA Security+, AWS SAA, CEH)
  • Interest in AI Security topics.

What’s in it for you

  • Hands-on experience across multiple cybersecurity domains
  • Mentorship from experienced security professionals
  • Exposure to enterprise-grade security tools and technologies
  • Opportunity to participate in real security operations and projects
  • Potential pathway to full-time employment based on performance
  • Flexible schedule to accommodate academic commitments

Duration 3-6 months, with possibility of extension based on performance and mutual agreement.

Find out more about Coinhako here https://www.coinhako.com/ and don't forget to visit our Careers Page https://www.coinhako.com/join-us

By submitting your application to us, you consent to the collection, use, disclosure and processing of your personal data in accordance with our privacy policy, which is accessible at https://www.coinhako.com/legal/sg-1/privacy_policy.

Build a standout application

For the Security Engineering Intern, GRC at Coinhako, reviewers look for concise evidence over buzzwords. Mirror the language of the posting sparingly, quantify support or delivery outcomes, and show how you handled ambiguity, time-zone collaboration and user empathy. Keep your resume to impact, keep your cover note to one page, and link to artifacts — tickets resolved, docs shipped, dashboards owned — that prove you can operate in a fast-moving Web3 team. Prepare to discuss a time you turned a confusing user report into a clear fix and how you measure quality in support and operations.

Web3 hiring values reliability: on-time follow-through, clear writing, and a track record of improving runbooks and tooling. Treat the application as a work sample. For interviews, be ready to walk through how you prioritize across time zones, handle a difficult user, and decide when to escalate versus resolve directly. Show how you document decisions so the next teammate benefits.

In a distributed Web3 org, trust builds through written clarity. Use the cover note to demonstrate it. Add links to public work, keep formatting scannable, and close with a clear ask. Hiring managers skim — make impact obvious in the first half-page.

Career growth in Web3 rewards continuous learning. Follow protocol changelogs, practice with testnets, and contribute to open issues. Small, consistent contributions compound into credibility more than one-off credentials.