Principal Security Architect (On-Chain & Digital Assets)

Jobgether

France

À distance

EUR 120 000 - 180 000

Plein temps

Il y a 8 jours
Générateur de candidature

Une candidature complète en une minute — CV personnalisé et lettre de motivation, prêts à envoyer.

Passez les filtres ATS

Avantages offerts par ce poste

Fully remote
International environment
Exposure to digital-asset custody and

Résumé du poste

Jobgether is seeking a Principal Security Architect (On-Chain & Digital Assets) based in France. You will own security architecture across custody and on-chain layers of a regulated digital-asset platform operating globally.

You will define and implement security requirements spanning architecture, engineering, operations, and regulatory assurance with focus on MPC/HSM, transaction authorization, wallet security, and blockchain integrations.

Qualifications

  • 10+ years of information security with security architecture leadership.
  • Experience securing digital-asset custody platforms or regulated infra.
  • Knowledge of MPC, HSMs, key ceremonies, and signing-policy design.
  • Cloud security expertise in AWS within regulated orgs.
  • Ability to map controls to ISO 27001, SOC 2, NIST.
  • Threat modeling, security assessments, incident response experience.
  • Strong communication to non-security stakeholders.

Responsabilités

  • Own end-to-end security architecture for custody/on-chain tech.
  • Define controls for HSM/MPC, transactional auth, and wallet segregation.
  • Lead key ceremonies, cold custody, staking operations security.
  • Develop crypto security standards and secure SDLC in multi-account AWS.
  • Collaborate with IAM, SOC, AppSec, and Infra Security teams.
  • Define detection use cases for SOC in blockchain contexts.
  • Lead crypto incident response with Corporate Security.
  • Perform threat modeling and security reviews of ledger and smart contracts.
  • Protect transaction and funds flows by mitigating architectural risks.
  • Oversee assessments for external custody providers and treasury integrations.
  • Map controls to MiCA, DORA, FCA, MAS.

Connaissances

Crypto security
Threat modeling
Regulatory mapping
Communication to leadership

Formation

CISSP
CISM
CCSP
CCSSA

Outils

AWS
Kubernetes
Terraform
Python

Description du poste

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Principal Security Architect (On-Chain & Digital Assets) based in France.

Own security architecture across the custody and on-chain layer of a regulated digital-asset platform operating globally.
You will define and implement security requirements spanning architecture, engineering, operations, and regulatory assurance.
The role covers critical areas including MPC and HSM key management, transaction authorization, wallet security, staking, and blockchain integrations.
You will work closely with dedicated Infrastructure Security, Application Security, IAM, and SOC teams while providing specialized crypto-security leadership.
Your expertise will help protect transaction flows, digital assets, and key management systems against sophisticated operational and cyber risks.
You will also lead threat modeling, security assessments, incident response, and regulatory control mapping across international markets.
This is a hands-on principal-level opportunity for a security architect with deep digital-asset expertise who can translate complex technical risks into resilient controls and clear business outcomes.

Accountabilities
  • Own end-to-end security architecture for the custody and on-chain technology stack.

  • Define security requirements and controls for HSM and MPC-based key management, transaction authorization, signing quorums, address whitelisting, and hot/cold wallet segregation.

  • Establish secure processes for key ceremonies, delegated cold custody, staking deposits and withdrawals, and other critical digital-asset operations.

  • Develop crypto-specific security standards, privileged-access controls, and secure SDLC requirements within a multi-account AWS environment.

  • Partner with centralized Infrastructure Security, Application Security, IAM, and SOC teams to implement and maintain platform security capabilities.

  • Define blockchain and custody-specific detection use cases for the SOC.

  • Lead incident response procedures for crypto-specific scenarios, including key compromise, unauthorized transactions, and significant on-chain incidents, in collaboration with Corporate Security.

  • Conduct detailed threat modeling and security reviews covering internal ledger mechanisms, balance idempotency, withdrawal sequencing, and smart contract integrations.

  • Protect the integrity of transaction and funds flows across the platform by identifying and mitigating architectural and operational risks.

  • Direct security assessments and ongoing assurance activities for external custody providers, execution systems, blockchain analytics solutions, Travel Rule tools, and treasury integrations.

  • Map security controls to relevant international regulatory frameworks, including MiCA, DORA, FCA, and MAS requirements.

  • Collaborate with market and regulatory teams to maintain appropriate security and compliance controls as the platform expands internationally.

  • Translate complex cryptographic, infrastructure, and digital-asset risks into clear business and regulatory implications for non-security stakeholders.

Requirements
  • 10+ years of professional experience in information security, with a proven track record as a Security Architect, Principal Security Engineer, or technical security lead.

  • Demonstrated experience securing digital-asset custody platforms, high-throughput crypto environments, or regulated financial infrastructure.

  • Deep practical knowledge of crypto custody and wallet architecture, including Multi-Party Computation (MPC), Hardware Security Modules (HSMs), key ceremonies, and signing-policy design.

  • Strong cloud security expertise, preferably within AWS environments and regulated organizations.

  • Practical experience mapping security controls to recognized frameworks and regulatory requirements, including ISO 27001, SOC 2, and NIST.

  • Strong experience conducting threat modeling, security assessments, risk analysis, and incident response.

  • Ability to communicate sophisticated cryptographic and technical security risks clearly to business leaders, product teams, engineers, compliance professionals, and regulators.

  • Proven ability to operate effectively within a matrixed security organization and collaborate with dedicated IAM, AppSec, SOC, and Infrastructure Security functions.

  • Strong understanding of security architecture, secure software development, access controls, operational security, and risk management.

  • Experience working with regulated digital-asset, fintech, financial services, or blockchain environments.

  • Hands-on experience with Kubernetes, containers, Terraform or other Infrastructure as Code technologies, API security, or Python automation is an advantage.

  • Experience with Web3 dependency and software supply-chain security is a plus.

  • Industry certifications such as CISSP, CISM, CCSP, or CCSSA are advantageous.

  • Professional fluency in spoken and written Mandarin is beneficial for regional operations and cross-functional engineering collaboration.

Benefits
  • Competitive compensation package.

  • Fully remote working opportunity.

  • International and distributed working environment.

  • Opportunity to work on security architecture for digital-asset custody, blockchain, and on-chain infrastructure.

  • Exposure to complex fintech, cryptocurrency, and regulated financial technology environments.

  • Collaboration with specialized security, engineering, compliance, risk, product, and operations teams.

  • Opportunities to influence security architecture and controls across international markets.

  • Team-building initiatives and company events.

  • Senior-level scope with significant ownership over critical security architecture and risk management.

  • Opportunity to contribute to the development of secure, scalable digital-asset infrastructure.

Obtenez votre examen gratuit et confidentiel de votre CV.

ou faites glisser et déposez votre fichier ici.

Similar jobs

Postes similaires à comparer

Principal Crypto Security Architect - On-Chain Assets
Principal Crypto Security Architect - On-Chain Assets

Jobgether • France

À distance
EUR 120 000 - 180 000
Fully remote
International environment
Exposure to digital-asset custody and
Principal Software Engineer Europe
Principal Software Engineer Europe

Startup Talents • France

Hybride
EUR 120 000 - 200 000
Healthcare and life insurance
Retirement plan
Sponsored transportation
+4
Protocol Security Researcher
Protocol Security Researcher

Jobgether • France

À distance
EUR 120 000 - 190 000
Remote-first
Global exposure
Impactful work
+2
Senior Product Security Engineer
Senior Product Security Engineer

Blockchai • Paris

Hybride
EUR 90 000 - 130 000
Unlimited vacation
Unlimited books
Equity in the company
+2
Security Engineer, Institutional Trading
Security Engineer, Institutional Trading

Blockchai • Paris

Sur place
EUR 90 000 - 150 000
Unlimited vacation
Unlimited books
Equity based compensation
+2
Infrastructure Security Engineer
Infrastructure Security Engineer

Blockchai • Paris

Hybride
EUR 90 000 - 140 000
Unlimited vacation policy
Unlimited books policy
Equity in company
Cybersecurity Solution Architect
Cybersecurity Solution Architect

IDEMIA Public Security • Osny

Sur place
EUR 90 000 - 130 000
Senior Security Engineer
Senior Security Engineer

Spendesk • Paris

Sur place
EUR 90 000 - 140 000
System Architect
System Architect

Euroclear • France

Hybride
EUR 90 000 - 140 000
Head of Security
Head of Security

Aplo • Île-de-France

Sur place
EUR 100 000 - 150 000
100% health insurance coverage
Full public transport reimbursement
Monthly Sports subscription reimbursement
+2