Security Engineer, Institutional Trading - Blockchain
The vacancy is well-structured with clear responsibilities and requirements, but compensation details could be improved.
Check Match — Just drop your CV
See your fit for Security Engineer, Institutional Trading - Blockchain in seconds.
Overview
Join Blockchain as a Security Engineer to ensure the secure operation of off-chain trading processes and infrastructure. Collaborate with teams to assess vulnerabilities and implement security measures in a high-visibility role. Blockchain is connecting the world to the future of finance. As the most trusted and fastest-growing global crypto company, it helps millions of people worldwide safely access cryptocurrency. Since its inception in 2011, Blockchain has earned the trust of over 90 million wallet holders and more than 40 million verified users, facilitating over $1 trillion in crypto transactions.
WHAT YOU WILL DO
- •Partner with Trading, Middle Office and Quant (Institutional FinOps) teams to map out inventory trading systems, data flows, third-party integrations and custody/settlement touchpoints.
- •Conduct deep-dive assessments mapping critical assets and workflows to identify structural vulnerabilities. You will be responsible for defining the Target State and drafting the strategic Risk Treatment Plans (RTP) required to meet institutional-grade standards (e.g., CCSS, NIST, DORA).
- •Act as the primary security liaison for Senior Management and third-party vendors. You will translate complex technical gaps into actionable business risk summaries, drive vendor evaluations for core security infrastructure, and manage the project lifecycle for high-impact posture uplifts.
- •Implement and maintain monitoring for FinOps-specific security signals such as abnormal order patterns, signature misuse, unusual settlements. You will integrate these signals into our SIEM/SOAR for real-time response.
- •Support secrets and key-management hygiene. You will ensure app/service keys are stored in KMS/Vault, scoped to least privilege and rotated automatically to prevent credential leakage.
- •Assist product security in triage of SAST/SCA findings for FinOps-related repositories. You will help implement CI checks and remediation playbooks.
- •Participate in incident exercises, post-incident reviews and remediation tracking for trading incidents.
- •Document controls and produce concise risk summaries for FinOps leads and the Security.
- •AI-Driven Innovation: Research, architect, and safely embed cutting-edge AI utilities and Large Language Model (LLM) agents directly into our secure infrastructure.
COMPENSATION & PERKS
- •Unlimited vacation policy; work hard and take time when you need it.
- •Unlimited books policy; order the technical resources you need or simply pick something up from our company library.
- •Apple equipment.
- •Full-time salary based on experience and meaningful equity in an industry-leading company.
- •Role based in our Paris office, with a mandatory in-office presence four days per week.
- •Work from Anywhere Policy: You can work remotely from anywhere in the world for up to 20 days per year.
WHAT YOU WILL NEED
- •5+ years in security engineering, platform security, or application security experience.
- •Proven expertise in Threat Modeling. Ability to perform structured reviews (e.g., STRIDE) of complex data flows and operational processes.
- •Experience with observability and detection tooling (SIEM, logs, metrics) and ability to write basic detection rules.
- •Practical experience with KMS/HSM, secrets management platforms (Vault, 1Password, AWS/GCP KMS), IAM patterns and least-privilege.
- •Exceptional ability to translate "Technical Debt" into Business Risk for C-suite stakeholders (CFO, CTO, Head of Trading).
- •Ability to raise, read and audit Pull Requests in at least one language used in our stack (TypeScript, Java/Kotlin, Python).
- •Experience conducting technical due diligence and scoping for third-party security integrations.