Senior Product Security Engineer / Architect [Lausanne]

Embodied AI

Lausanne

Hybrid

CHF 140.000 - 210.000

Vollzeit

14 Tage+
Bewerbungsgenerator

Hebe dich für diese Rolle von der Masse ab — erstelle in etwa einer Minute einen maßgeschneiderten Lebenslauf und ein Anschreiben.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Hybrid remote work
Flexible working hours
State-of-the-art technology

Zusammenfassung

Taurus is seeking a senior security engineer to raise the security bar across its digital asset products. You will own security reviews, threat modeling, and enforcement of guardrails in CI/CD and cloud environments.

Join a world‑leading fintech with global reach and a strong emphasis on cryptography, HSMs, and secure hardware. This role blends hands-on code review with architectural oversight, in a hybrid work setup.

Qualifikationen

  • Master or PhD in computer sciences, IT security engineering or cryptography.
  • 7+ years in application security, product security, offensive security, or security engineering.
  • Background in security-critical environments — financial services, payments, identity, custody, embedded systems, or regulated platforms.
  • Fluent written and spoken English.

Aufgaben

  • Own product security for all digital asset products: Taurus-PROTECT, Taurus-CAPITAL, Taurus-EXPLORER and Taurus-NETWORK.
  • Contribute to security architecture for HSMs, confidential computing, MPC, and cryptographic systems.
  • Perform security reviews of application code, cryptographic workflows, smart contracts, HSM integrations, and enclave-based components.
  • Model threats of new features and review architectural designs before release.
  • Lead and review penetration tests, reproduce findings, and validate remediation plans.
  • Build and own automation that enforces security guardrails across CI/CD pipelines, software supply chains, Kubernetes environments, and deployment platforms.
  • Pair with product engineering teams to design and ship fixes, not just file findings.
  • Review authorization models, privilege management, identity integrations, and operational access controls.
  • Support incident response, vulnerability management, and security investigations.
  • Support client audits, RFPs, security workshops, and regulatory discussions.
  • Translate regulatory and compliance requirements into practical technical controls.
  • Monitor security news and trends; identify potential impact on products and ensure timely application of corrective actions.

Kenntnisse

Go
C/C++
TypeScript
Python
Threat modeling
Penetration testing
Security reviews
Kubernetes security
CI/CD security

Ausbildung

Master or PhD in computer sciences, IT security engineering or cryptography

Tools

PKCS#11
HSM technologies
Kubernetes security tooling

Jobbeschreibung

Do you want to be part of a new entrepreneurial adventure and help build the next global FinTech, then we might just have the job for you.

Taurus is a FINMA-regulated securities firm, headquartered in Geneva, Switzerland, and providing digital asset trading and financial services to its clients. It is also a world-leading provider of digital asset infrastructure solutions to banks, corporations and private companies. Using blockchain technology, Taurus platform covers cryptocurrencies, tokenized securities, tokenized assets (such as NFTs), digital currencies, and stable coins.

We are looking for ambitious and driven individuals to support our fast global growth.

Tasks

A deeply hands-on, individual-contributor role where you'll raise the security bar of the product itself. You're the security partner engineers want in the room: someone who can open a diff, understand the attack surface, build the automation that enforces the fix, and ship it the same day. Much of that surface is cryptographic (keys, signing, HSMs, and the trust boundary around them), so that's where you'll have the most impact.

Responsibilities
  • Own product security for all applicable digital asset products: Taurus-PROTECT, Taurus-CAPITAL, Taurus-EXPLORER and Taurus-NETWORK. Contribute to financial services product security.
  • Contribute to security architecture for HSMs, confidential computing, MPC, and cryptographic systems
  • Perform security reviews of application code, cryptographic workflows, smart contracts, HSM integrations, and enclave-based components
  • Model threats of new features and review architectural designs before release
  • Lead and review penetration tests, reproduce findings, and validate remediation plans
  • Build and own the automation that enforces security guardrails — across CI/CD pipelines, software supply chains, Kubernetes environments, and deployment platforms
  • Pair with product engineering teams to design and ship fixes, not just file findings
  • Review authorization models, privilege management, identity integrations, and operational access controls
  • Support incident response, vulnerability management, and security investigations
  • Support client audits, RFPs, security workshops, and regulatory discussions
  • Translate regulatory and compliance requirements into practical technical controls
  • Monitor security news and trends; identify potential impact on products and ensure timely application of corrective actions
Requirements
Experience
  • Master or PhD in computer sciences, IT security engineering or cryptography
  • 7+ years in application security, product security, offensive security, or security engineering
  • Background in security-critical environments — financial services, payments, identity, custody, embedded systems, or regulated platforms
  • Fluent written and spoken English
Key Requirements
  • Strong security code review experience in at least two of: Go, C/C++, TypeScript, Python
  • Threat modeling, secure design reviews, and penetration testing
  • Ability to identify business logic flaws, authorization issues, cryptographic misuse, and complex attack paths
Cryptography & key management
  • Strong applied-cryptography foundation: PKI, TLS, X.509; AES, RSA, ECDSA, EdDSA; key management and key ceremonies; secure key storage and signing workflows
  • Experience with HSM technologies and PKCS#11 environments
Infrastructure & cloud security
  • Strong Kubernetes and container security experience
  • Familiarity with cloud IAM, workload identity, secrets management, and policy-as-code
  • A builder’s mindset — you implement security controls, not only review them
Secure hardware & confidential computing
  • Experience with one or more of: Thales / Luna HSM, AWS CloudHSM, Azure Managed HSM, Intel SGX, AMD SEV-SNP, AWS Nitro Enclaves, Azure Confidential Computing
Client & communication skills
  • Comfortable engaging security teams, auditors, regulators, enterprise clients, and prospect CISOs
  • Able to explain complex security topics clearly and pragmatically
A strong plus
  • Blockchain and smart contract security
  • MPC and threshold signature systems
  • Fuzzing and secure software testing
  • Security compliance and regulatory frameworks (FINMA, DORA, MiCA, ISO 27001, SOC 2, FIPS 140-3)
  • Public security research, CVEs, bug bounty experience, or open-source security contributions
  • Experience supporting RFPs, security questionnaires, and customer due diligence
  • Degree in Computer Science, Security, or equivalent practical experience
Benefits
  • An opportunity to work at the intersection of digital assets and finance
  • A skilled and experienced team, including world-renowned experts
  • A fast-paced learning environment, entrepreneurial spirit and team spirit
  • A great moment to join as the company grows and expands
  • State-of-the-art technology and IT infrastructure
  • Hybrid remote work and flexible working hours
  • Fun team events
Note

Please note: we're opening this position with a target start date of Q1 2027, so early applications are very welcome.

We will not consider applications via agencies.

taurushq[.]com

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Senior Product Security Engineer / Architect [Lausanne]
Senior Product Security Engineer / Architect [Lausanne]

Taurus SA • Lausanne

Vor Ort
Confidential
Hybrid remote work
Flexible working hours
Fun team events
Senior Product Security Architect for FinTech & Crypto
Senior Product Security Architect for FinTech & Crypto

Taurus SA • Lausanne

Hybrid
Confidential
Hybrid remote work
Flexible working hours
Fun team events
Platform Engineer / Devops Engineer [Geneva / Zurich / Lausanne]
Platform Engineer / Devops Engineer [Geneva / Zurich / Lausanne]

Embodied AI • Genf

Hybrid
CHF 110.000 - 150.000
Hybrid remote work
State-of-the-art technology
Entrepreneurial spirit
+2
Platform Engineer / Devops Engineer [Geneva / Zurich / Lausanne]
Platform Engineer / Devops Engineer [Geneva / Zurich / Lausanne]

Taurus SA • Genf, Zürich, Lausanne

Hybrid
Confidential
Hybrid remote work
Flexible working hours
State-of-the-art technology
+2
Platform Engineer / Devops Engineer [Geneva / Zurich / Lausanne]
Platform Engineer / Devops Engineer [Geneva / Zurich / Lausanne]

Taurus SA • Genf

Vor Ort
Confidential
Hybrid remote work
Flexible working hours
Fun team events
Project Manager [Geneva/ Lausanne/ Zürich]
Project Manager [Geneva/ Lausanne/ Zürich]

Taurus SA • Genf

Vor Ort
Confidential
Exposure to leading financial institutions
Experienced team in digital assets
Fast-paced entrepreneurial environment
(Senior) Application Security Engineer
(Senior) Application Security Engineer

Sygnum Bank • Zürich

Hybrid
CHF 150.000 - 190.000
Market salary + incentive scheme
Flexible/Work at home policies
Mentoring and Buddy programs
+1
Senior QA Engineer - FinTech/Crypto, Automation & CI/CD
Senior QA Engineer - FinTech/Crypto, Automation & CI/CD

Crypto Finance Group • Zürich

Hybrid
CHF 110.000 - 155.000
Senior IT Infrastructure & Security Engineer
Senior IT Infrastructure & Security Engineer

Audax Solutions AG • Zürich

Vor Ort
CHF 140.000 - 190.000
Software Engineer
Software Engineer

Crypto Finance Group • Zürich

Vor Ort
CHF 100.000 - 150.000