FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in product security, application security, and offensive security within financial services and regulated environments. Proficient in threat modeling, security architecture, and implementing security controls across various technologies and platforms.
Highest-signal resume keywords
Application SecurityThreat ModelingSecurity Code ReviewKubernetes SecurityCryptographic Systems
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
GoC/C++TypeScriptPythonPKITLSAESRSAECDSAHSM Technologies
Soft Skills
Clear CommunicationEngagement with Security TeamsProblem-Solving Mindset
Tools & Technologies
AWS CloudHSMAzure Managed HSMThales / Luna HSMIntel SGXAMD SEV-SNPAWS Nitro EnclavesAzure Confidential Computing
Certifications & Qualifications
Master's Degree in Computer SciencePhD in IT Security EngineeringPhD in Cryptography
Industry Keywords
Financial ServicesPaymentsIdentityCustodyRegulated PlatformsSecurity ComplianceRegulatory FrameworksISO 27001SOC 2FIPS 140-3
Tech Stack
Tools & technologiesAWSAzureCloudKubernetesPythonTypeScriptC++Go
About the role
Key responsibilities & impact- Own product security for all applicable digital asset products: Taurus-PROTECT, Taurus-CAPITAL, Taurus-EXPLORER and Taurus-NETWORK
- Contribute to financial services product security
- Contribute to security architecture for HSMs, confidential computing, MPC, and cryptographic systems
- Perform security reviews of application code, cryptographic workflows, smart contracts, HSM integrations, and enclave-based components
- Model threats of new features and review architectural designs before release
- Lead and review penetration tests, reproduce findings, and validate remediation plans
- Build and own automation enforcing security guardrails across CI/CD pipelines, software supply chains, Kubernetes environments, and deployment platforms
- Pair with product engineering teams to design and ship fixes
- Review authorization models, privilege management, identity integrations, and operational access controls
- Support incident response, vulnerability management, and security investigations
- Support client audits, RFPs, security workshops, and regulatory discussions
- Translate regulatory and compliance requirements into practical technical controls
- Monitor security news and trends, identify potential product impact, and ensure timely corrective actions
Requirements
What you’ll need- Master or PhD in computer sciences, IT security engineering or cryptography
- 7+ years in application security, product security, offensive security, or security engineering
- Background in security-critical environments — financial services, payments, identity, custody, embedded systems, or regulated platforms
- Fluent written and spoken English
- Strong security code review experience in at least two of: Go, C/C++, TypeScript, Python
- Threat modeling, secure design reviews, and penetration testing
- Ability to identify business logic flaws, authorization issues, cryptographic misuse, and complex attack paths
- Strong applied-cryptography foundation: PKI, TLS, X.509; AES, RSA, ECDSA, EdDSA
- Experience with key management, key ceremonies, secure key storage, and signing workflows
- Experience with HSM technologies and PKCS#11 environments
- Strong Kubernetes and container security experience
- Familiarity with cloud IAM, workload identity, secrets management, and policy-as-code
- A builder’s mindset — implement security controls, not only review them
- Experience with one or more of: Thales / Luna HSM, AWS CloudHSM, Azure Managed HSM, Intel SGX, AMD SEV-SNP, AWS Nitro Enclaves, Azure Confidential Computing
- Comfortable engaging security teams, auditors, regulators, enterprise clients, and prospect CISOs
- Able to explain complex security topics clearly and pragmatically
- Blockchain and smart contract security is a strong plus
- MPC and threshold signature systems is a strong plus
- Fuzzing and secure software testing is a strong plus
- Security compliance and regulatory frameworks (FINMA, DORA, MiCA, ISO 27001, SOC 2, FIPS 140-3) is a strong plus
- Public security research, CVEs, bug bounty experience, or open-source security contributions is a strong plus
- Experience supporting RFPs, security questionnaires, and customer due diligence is a strong plus
- Degree in Computer Science, Security, or equivalent practical experience
Benefits
Comp & perks- An opportunity to work at the intersection of digital assets and finance
- A skilled and experienced team, including world-renowned experts
- A fast-paced learning environment, entrepreneurial spirit and team spirit
- A great moment to join as the company grows and expands
- State-of-the-art technology and IT infrastructure
- Hybrid remote work and flexible working hours
- Fun team events
- Significant growth opportunities for candidates with an open and deliver-oriented mindset
- Equal opportunity employer
