Head of Custody Security
Dallas, USA
Full time
Hybrid
Compensation is not specified
Role
Security Engineer
Description
Responsibilities
- Conduct, devise, and execute testing of security controls pertaining to identity management, key management, and infrastructure in network and cloud setups.
- Aid client assurance tasks, including addressing Requests for Proposals (RFPs), Requests for Information (RFIs), and Due Diligence Questionnaires (DDQs).
- Recognize and assess trends in client inquiries and offer feedback to internal teams for enhancing documentation and control preparedness.
- Perform security due diligence and continuous monitoring for Web3/blockchain vendors, involving evaluating their control maturity, scrutinizing SOC reports and security documents, and identifying residual risks.
- Coordinate external audit activities by managing walkthroughs, collating evidence, and tracking responses.
- Pinpoint and analyze gaps in existing and new processes, devise and chart remediation suggestions until completion (e.g., onboarding procedure).
- Develop and sustain comprehension of pertinent financial regulatory security requirements and ensure control alignment.
- Research and distribute information security best practices, emerging threats, and mitigation techniques with internal teams.
- Evaluate and suggest modern security tools, automation, and technologies to elevate overall security stance.
- Assess blockchain network or protocol upgrades for their potential security implications on the platform.
Requirements
- A minimum of 8 years' relevant experience in security assurance, audit, compliance, or cloud security engineering.
- Demonstrated proficiency in testing and validating security controls across IAM, key management, and network/cloud environments.
- Firm understanding of Identity and Access Management (IAM) principles.
- Knowledge of cryptographic key management, HSMs, and KMS systems.
- Comprehensive understanding of cloud and network security architecture and configuration.
- Proven track record in supporting SOC 1, SOC 2, ISO 27001, PCI DSS, or equivalent external audits and assessments.
- Exposure to major cloud platforms like AWS, GCP, Azure, and infrastructure-as-code.
- Experience in creating client assurance materials, RFP/RFI/DDQ responses, and evidence documentation.
- Familiarity with blockchain platforms or digital asset custody systems is beneficial.
- Capable of independent work and performing under pressure.
- Excellent oral and written communication skills.
- Pragmatic and solution-driven mindset with the ability to balance security requirements with operational feasibility and business needs.
$190,000 - $230,000 a year
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Skills Required

Сrypto.com
Website
Сrypto.comCompany size
Not specified
Location
United States
Description
Not specified