
Principal Security Engineer
Posted Jul 31

Posted Jul 31
This is a fully remote position, open to applicants in United States, +4 more states.
• Lead the architecture of product security, ensuring that security principles are integrated into the core design and development cycles of the platform.
• Assess and secure key management systems, transaction pipelines, and signing workflows within contemporary distributed networks.
• Conduct system-level threat modeling for new product features, protocols, and multi-chain integrations.
• Design and assess components that are sensitive to security, including authentication protocols, authorization frameworks, and applied cryptographic workflows.
• Define, execute, and maintain multi-layered security controls throughout the application, infrastructure, and protocol layers.
• Oversee and enhance end-to-end software supply-chain security, covering dependency scanning in CI pipelines to local developer environments.
• Apply security configurations to version-controlled repositories to avert configuration drift and improve auditability.
• Examine emerging security threats related to blockchain protocols, institutional custody models, and innovative cryptographic techniques.
• Assist in sustaining compliance frameworks such as SOC 2, ISO 27001, and ISO 22301 while expanding control surfaces.
• Offer daily guidance to engineering teams to make secure patterns readily accessible, while also supporting incident response and root-cause analysis as required.
• Engage in security architecture reviews with tier-one banking partners, external auditors, and enterprise clients.
• Contribute to technical research, whitepapers, and conference presentations to further the field of digital asset security.
• Over 10 years of experience in security engineering, product security, or security architecture roles.
• Proven track record in securing financial infrastructure, institutional blockchain platforms, or both.
• In-depth knowledge of cryptographic protocols, wallet architectures, and key management frameworks; direct experience with Multi-Party Computation (MPC), threshold signatures, or HSM-backed solutions is highly desirable.
• Extensive experience in performing comprehensive system-level threat models and conducting architecture reviews.
• Strong foundational knowledge of distributed systems, networking protocols, and cloud computing platforms (primarily AWS).
• Practical experience in implementing software supply-chain defenses and managing security configurations through code to prevent drift.
• Familiarity with maintaining active audit cycles for frameworks such as SOC 2, ISO 27001, ISO 22301, and the NIST Cybersecurity Framework.
• Professional familiarity with modern backend programming languages like Rust or TypeScript.
• Outstanding ability to convey complex security concepts effectively to both internal engineering teams and external enterprise stakeholders.
• Competitive executive-level compensation package.
• Flexible, remote-first work environment.
• Comprehensive health, wellness, and benefits coverage tailored to regional standards.
• Generous paid time off (PTO) and personal leave policy.
• Professional development budget for security research, certifications, and industry conferences.
• Exposure to cutting-edge cryptographic engineering alongside leading global financial institutions.
Legacy Community Health
NeoGuardian
Fresh Consulting
CrowdStrike
Get handpicked remote jobs straight to your inbox weekly.