Principal Security Engineer/ Security Manager

Posted 13 Days Ago
Be an Early Applicant
6 Locations
In-Office or Remote
Senior level
Blockchain • Fintech • Software • Financial Services
The Role
Lead security assurance activities, collaborate across teams on security initiatives, build automation tools, monitor incidents, and educate developers on secure practices.
Summary Generated by Built In

Key Responsibilities:

You will join the GRVT Site Reliability Engineering (SRE) team, which operates across three tightly integrated verticals:

  • DevSecOps (cloud infrastructure, incident response, platform stability)

  • Test Engineering (end-to-end testing, regression pipelines, feature assurance)

  • Security Engineering (penetration testing, security advisory, security governance).

The organization has the mandate of ensuring the end-to-end reliability of the GRVT platform, protecting our product's reliability, correctness, and security.

This role is positioned within the Security vertical but works cross-functionally with the entire organization.

  • Lead technical assurance activities across projects, including penetration testing, purple teaming, threat modeling, and architecture reviews—ensuring both new and existing systems maintain a high security baseline.

  • Serve as the primary security expert within the SRE team, collaborating closely with Ops and QA Engineers and Wider Teams to designfi practical, high-impact controls that enhance platform security without compromising delivery velocity.

  • Build automation and internal tooling for security visibility, posture monitoring, and enforcement (e.g., secret scanning, anomaly detection, automated test harnesses).

  • Monitor, triage, and lead response efforts for security incidents, coordinating across SRE, and wider engineering teams.

  • Establish and maintain security policies and controls aligned with both engineering best practices and regulatory obligations

  • Educate and empower developers and engineers with actionable guidance, secure coding practices, and feedback cycles—reducing the likelihood of vulnerabilities during development.

👤 Experience & Skills Requirements:

  • Strong Information Security (InfoSec) background (5 years+), with proven experience in application security across both traditional web stacks and blockchain-based systems.

  • Expert knowledge of web application security, including deep familiarity with the OWASP Top 10, to assess and defend GRVT’s off-chain services against common web-based threats.

  • Python proficiency - Experience building security engineering tools such as automated API security testers, custom static analyzers, or CI/CD-integrated scanners for secrets, misconfigurations, and insecure patterns.

  • Proficiency in security testing tools, such as SAST (e.g., SonarQube, Checkmarx, GoSec), DAST (e.g., OWASP ZAP, Burp Suite).

  • Demonstrated ability to quickly understand and analyze unfamiliar codebases, enabling effective secure code review across diverse systems—including web services, infrastructure components, and smart contracts.

  • Experience conducting threat modelling exercises, or a strong grasp of threat modeling methodologies to evaluate project risk at the design and implementation levels.

  • Smart contract auditing experience, with familiarity in identifying common vulnerabilities in decentralized applications and blockchain systems.

  • Bug bounty programs experience, either as a seasoned researcher or by managing an organization’s program.

  • Experience with Cloud infrastructure (e.g., AWS, GCP). Understanding of container security and DevSecOps principles, with practical experience integrating security into CI/CD pipelines.

🚀 Bonus Points:

  • Familiarity with IT security frameworks such as SOC 2 and ISO 27001, and how to align technical controls to compliance objectives.

  • Holds or actively pursues professional certifications such as OSCP, OSWE, CISSP, CDP, or CTMP.

Top Skills

AWS
Burp Suite
Checkmarx
GCP
Gosec
Owasp
Owasp Zap
Python
Sonarqube
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
33 Employees
Year Founded: 2022

What We Do

At the intersection of traditional finance and blockchain, we create the next generation digital asset platform. Our mission is to empower users to securely possess, transfer, and trade their assets. By merging centralized trading infrastructure with blockchain settlements and smart contract-driven margin management, our self-custody trading eliminates counterparty risk, ensuring users full control of their funds. With advanced volition technology, we safeguard trading privacy, while our sophisticated margin model enables efficient and seamless transactions. Join us as we pave the path to the future of crypto trading.

Similar Jobs

Motorola Solutions Logo Motorola Solutions

Software Quality Lead

Artificial Intelligence • Hardware • Information Technology • Security • Software • Cybersecurity • Big Data Analytics
Remote or Hybrid
Penang, MYS
23000 Employees

Airwallex Logo Airwallex

People Operations Partner

Artificial Intelligence • Fintech • Payments • Business Intelligence • Financial Services • Generative AI
In-Office or Remote
Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, MYS
2000 Employees

Mastercard Logo Mastercard

Consultant

Blockchain • Fintech • Payments • Consulting • Cryptocurrency • Cybersecurity • Quantum Computing
Remote or Hybrid
Selangor, MYS
38800 Employees

Motorola Solutions Logo Motorola Solutions

Program Manager

Artificial Intelligence • Hardware • Information Technology • Security • Software • Cybersecurity • Big Data Analytics
Remote or Hybrid
Penang, MYS
23000 Employees

Similar Companies Hiring

Scotch Thumbnail
Software • Retail • Payments • Fintech • eCommerce • Artificial Intelligence • Analytics
US
25 Employees
Milestone Systems Thumbnail
Software • Security • Other • Big Data Analytics • Artificial Intelligence • Analytics
Lake Oswego, OR
1500 Employees
Fairly Even Thumbnail
Software • Sales • Robotics • Other • Hospitality • Hardware
New York, NY

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account