Principal Security Engineer
About the Role
You will lead security design and development across the platform, set strategy to protect systems, and remediate vulnerabilities. You will perform architecture reviews, threat modeling, penetration testing, and incident response. You will integrate security into CI/CD and observability, design new security features, build automated security testing frameworks, manage bug bounty and security releases, mentor engineers on secure coding, and present security findings at audits and conferences.
Requirements
- 10+ years of experience in security engineering with leadership in fintech or blockchain
- Expertise in application security, smart contract security, and cryptography
- Deep understanding of penetration testing, static and dynamic testing, and vulnerability management
- Hands on experience with network security, cloud security (AWS), and software supply chains
- Familiarity with industry standards and frameworks such as ISO 27001, NIST, CIS, and SOC 2
- Strong knowledge of network and web protocols, applied cryptography, and PKI
- Experience integrating security into CI/CD pipelines and observability systems
- Proficiency in TypeScript and Rust or similar languages with secure coding expertise
- Clear communication skills to explain complex security concepts to technical and business stakeholders
Responsibilities
- Lead security architecture and set priorities to ensure secure, reliable delivery
- Drive threat modeling, vulnerability management, and penetration testing (internal and external)
- Conduct and oversee security reviews of code, design, architecture, and dynamic testing
- Design and implement defense in depth security controls
- Build frameworks for automated security testing and SSDLC enforcement
- Mentor engineers on secure coding, incident response, and security best practices
- Manage bug bounty programs, security releases, and coordinate with external researchers
- Monitor and respond to emerging threats, including supply chain risks
- Represent the company in client discussions, audits, and at security conferences
Benefits
- Healthcare
- Travel expenses
- Stock options 150–300 vested over 4 years
- Flexible working hours
- Full remote / Work from anywhere
- Food service or stocked kitchen
- Free food and snacks
- Pet friendly office
- Equipment: MacBook Pro and essentials
