Senior Security Engineer
You will embed security into everything we build. You will run assessments across systems, advise engineers on secure design, deploy and maintain security infrastructure, secure CI/CD and deployments, manage secrets and keys, address LLM/AI security risks, coordinate penetration tests and audits, create secure coding and code review practices, participate in incident response, and drive compliance readiness.
Responsibilities
- Run security assessments across systems architectures and code
- Advise engineering teams on secure design decisions
- Deploy and maintain security infrastructure (SIEM vulnerability scanning endpoint protection logging)
- Secure CI/CD pipelines and deployment workflows end-to-end
- Own secrets management key management and access controls
- Address LLM and AI security including API key management and prompt injection prevention
- Coordinate penetration tests and security audits with external vendors
- Create and maintain secure coding guidelines and enforce secure code review processes
- Represent the security team in incident response
- Drive compliance readiness for standards such as SOC 2 and ISO 27001
Requirements
- Built and hardened production security at scale
- Cloud security (AWS GCP or equivalent) container security and network security fundamentals
- Hands-on experience implementing security tooling
- Secrets and key management expertise
- Understanding of AI LLM and agent-based system security
- CI/CD pipeline security expertise
- Pragmatic compliance experience with SOC 2
- Experience working AI-first and using AI as a core part of workflow
- Strong asynchronous communication skills and ability to work overlapping EMEA hours
- Bonus: blockchain smart contract or staking infrastructure security experience
- Bonus: Kubernetes and Terraform security
- Bonus: Incident response or security operations background
Benefits
- Meaningful equity
- Fully remote with two no-meeting days a week
- Annual company retreat and team off-sites with flights and accommodation covered (Singapore Bangkok London Oslo)
- Unlimited AI tokens (Claude OpenAI etc.)
- Provision of an OpenClaw for work
- Nansen Pro account with full access to onchain data