Hello Folks,
Hope you are doing great!
This is Himank Jani from ApTask.
We have urgent requirements with one of our client’s, please review the job description below and let me know if you have any relevant candidates on your bench, Kindly share.
Kindly share the DL location and work authorization status along with the profile
Senior Security Engineer, Digital Asset Custody
Location: - Austin, TX /Dallas, TX - Onsite
Job Description:
We are hiring a Senior Security Engineer, Digital Asset Custody, to serve as the technical authority for Crypto Custody engineering, with deep ownership of key management, custody security architecture, and risk posture across Organization’s digital asset platforms.
This is a hands‑on, high‑impact individual contributor role. The Lead Engineer sets technical direction, defines custody architecture, and owns critical design decisions across HSMs, MPC, key storage, policy enforcement, disaster recovery, and incident response.
This role requires strong engineering judgment in high‑risk, high‑trust environments, and the ability to operate with autonomy while influencing teams, architects, security, and leadership.
What This Engineer Will Do
Custody Key Management & Cryptographic Architecture
- Design, implement, and evolve institutional‑grade key management architectures, including:
Hardware Security Modules (HSMs)
Multi‑Party Computation (MPC)
Secure key generation, storage, rotation, signing, and recovery
- Define clear tradeoffs and architectural patterns across hot wallet, warm wallet, and cold storage models.
- Ensure cryptographic designs align with regulatory, security, and audit expectations.
- Partner closely with Cybersecurity and Risk to embed defense‑in‑depth and zero‑trust principles into custody design.
Custody Policy Engine & Governance
- Lead the design of the Custody Policy Engine, governing:
- Authorization, approvals, limits, and segregation of duties
- Transaction controls and exception handling
- Policy versioning, auditability, and enforceability
- Ensure policies are code‑driven, deterministic, observable, and testable.
- Translate business, legal, and risk requirements into clear, enforceable technical controls.
- Serve as a trusted technical advisor on custody governance topics.
Disaster Recovery, Resilience & Incident Ownership
- Own custody‑specific disaster recovery strategies, including key recovery, quorum loss scenarios, and chain events.
- Author and maintain incident response and recovery runbooks for custody‑related failures or security events.
- Partner with Operations, Security, and SRE to ensure practicable, tested recovery procedures.
- Lead post‑incident technical analysis, root cause reviews, and long‑term remediation strategies.
Overall Custody Architecture & Risk Posture
- Act as the custody architecture authority, ensuring consistency across wallets, blockchains, environments, and platforms.
- Identify architectural and operational risks early; propose mitigation strategies with clear tradeoffs.
- Ensure custody designs scale across assets, chains, and future tokenized products.
- Influence enterprise standards by raising the bar on security, resilience, and technical rigor.
AI‑Augmented Engineering Excellence
- Leverage GenAI and agentic AI tools to accelerate architecture design, threat modeling, documentation, testing, and reviews.
- Set expectations for AI‑assisted engineering rigor—speed with correctness, not shortcuts.
- Partner with engineering teams to raise architecture, code, and documentation quality across custody components.
What you have
Required Qualifications
- 10+ years of software engineering experience, with deep specialization in security‑sensitive or cryptographic systems.
- Strong hands‑on experience with HSMs, MPC frameworks, and secure key management systems.
- Experience with Web3 Security tooling such as Slither, Mythril, Foundry Fuzzing
- Experience with common cryptography implementation languages such as C, C++, Rust, Go
- Experience with collaborating with security auditors, Ex: Trail of bits, halborn,
- Proven ability to design systems where failure has material risk implications.
- Strong grounding in distributed systems, secure architecture, and fault‑tolerant design.
- Track record of acting as a technical authority without formal people management.
Strongly Preferred
- Experience with crypto custody, digital asset platforms, or blockchain infrastructure.
- Prior ownership of incident response, DR design, or security runbooks.
- Ability to articulate risk‑based trade‑offs clearly to technical and non‑technical stakeholders.
- Systems thinker who connects technology, security, policy, and operations.
- Comfortable challenging assumptions and raising concerns early in high‑stakes environments.
- Experience applying AI tools to complex engineering workflows.
What Success Looks Like
- Custody key management and policy systems are secure, resilient, auditable, and trusted.
- Failure modes are well understood, modeled, and operationally prepared for.
- Incidents are handled with clarity, speed, and technical confidence.
- Custody architecture scales across assets, chains, and tokenized products without erosion of risk posture.
- This role is viewed as the technical backbone of Organization’s digital‑asset custody strategy.
Best Regards,
Himank Deepak Jani
ApTask | A global, diversity-certified workforce solutions provider.
Address: 120 Wood Ave South, Suite # 300, Iselin, NJ 08830
This e-mail and any attachments may be confidential, proprietary or legally privileged. Any review, use, disclosure, distribution or copying of this e-mail is prohibited except by or on behalf of the intended recipient. If you received this message in error or are not the intended recipient, please delete or destroy the e-mail message and any attachments or copies and notify the sender of the erroneous delivery by return e-mail. It shall not attach any liability on the sender or ApTask or its affiliates. Any views or opinions presented in this email are solely those of the sender and may not necessarily reflect the opinions of ApTask or its affiliates.
Candidate Data Collection Disclaimer:
At ApTask, we prioritize safeguarding your privacy. As part of our recruitment process, certain Personally Identifiable Information (PII) may be requested by our clients for verification and application purposes. Rest assured, we strictly adhere to confidentiality standards and comply with all relevant data protection laws. Please note that we only collect the necessary information as specified by each client and do not request sensitive details during the initial stages of recruitment.
If you have any concerns or queries about your personal information, please feel free to contact our compliance team at compliance@aptask.com.
Applicant Consent:
By submitting your application, you agree to ApTask's (www.aptask.com) Terms of Use and Privacy Policy, and provide your consent to receive SMS and voice call communications regarding employment opportunities that match your resume and qualifications. You understand that your personal information will be used solely for recruitment purposes and that you can withdraw your consent at any time by contacting us at 732-355-8000 or help@aptask.com. Message frequency may vary. Msg & data rates may apply.
No comments:
Post a Comment
Thanks
Gigagiglet
gigagiglet.blogspot.com