The position involves conducting, designing, and implementing testing of security controls that cover identity management, key management, and infrastructure configurations, both network and cloud. The role supports client assurance activities, which include responding to Requests for Proposals (RFPs), Requests for Information (RFIs), and Due Diligence Questionnaires (DDQs). Additionally, the position requires identifying and analyzing trends in client inquiries and providing feedback to internal teams to improve documentation and control readiness. Security due diligence and ongoing monitoring for Web3/blockchain vendors is also a key responsibility, which includes assessing their control maturity, reviewing SOC reports and security documentation, and identifying residual risks. The role facilitates external audit activities, coordinating walkthroughs, evidence collection, and response tracking. It also involves identifying and analyzing gaps in current and new processes, developing and tracking remediation recommendations to completion, and maintaining an understanding of applicable financial regulatory security requirements to ensure alignment of controls. The position requires researching and sharing information security best practices, emerging threats, and mitigation strategies with internal teams, as well as evaluating and proposing next-generation security tools, automation, and technologies to enhance the overall security posture. Finally, the role includes reviewing blockchain network or protocol upgrades for their potential security impact on the platform.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
Bachelor's degree
Number of Employees
1,001-5,000 employees