Head of Custody Security

London, United Kingdom
Full time
Hybrid
Compensation is not specified
Role
Security Engineer
Description

Responsibilities

  • Conduct, design, and implement testing of security controls encompassing identity management, key management, and infrastructure (network and cloud) configurations.
  • Assist in client assurance activities, including responding to Requests for Proposals (RFPs), Requests for Information (RFIs), and Due Diligence Questionnaires (DDQs).
  • Recognize and analyze trends in client inquiries and provide internal teams with feedback to enhance documentation and control preparedness.
  • Conduct security due diligence and continuous monitoring for Web3/blockchain vendors, assessing their control maturity, reviewing SOC reports and security documentation, and identifying residual risks.
  • Coordinate external audit efforts, including walkthroughs, evidence collection, and response tracking.
  • Identify and assess gaps in existing and new processes, develop, and monitor remediation recommendations to completion (e.g., onboarding flow).
  • Maintain a comprehensive understanding of relevant financial regulatory security requirements and ensure control alignment.
  • Research and share best practices in information security, emerging threats, and mitigation strategies with internal teams.
  • Evaluate and suggest next-generation security tools, automation, and technologies to enhance overall security posture.
  • Assess blockchain network or protocol upgrades for potential security impacts on the platform.

Requirements

  • Minimum of 8 years of pertinent experience in security assurance, audit, compliance, or cloud security engineering.
  • Demonstrated proficiency in testing and verifying security controls across IAM, key management, and network/cloud environments.
  • Strong comprehension of Identity and Access Management (IAM) concepts.
  • Knowledge of cryptographic key management, HSMs, and KMS systems.
  • Sound understanding of cloud and network security architecture and configuration.
  • Proven experience supporting SOC 1, SOC 2, ISO 27001, PCI DSS, or equivalent external audits and evaluations.
  • Exposure to leading cloud platforms (AWS, GCP, Azure) and infrastructure-as-code.
  • Experience in preparing client assurance materials, RFP/RFI/DDQ responses, and evidence documentation.
  • Familiarity with blockchain platforms or digital asset custody systems is beneficial.
  • Capable of working independently and under pressure.
  • Excellent verbal and written communication skills.
  • Pragmatic and solution-focused approach, ability to balance security requirements with operational feasibility and business needs.
Skills Required
Avatar
Сrypto.com
Company size
Not specified
Location
United States
Description
Not specified

More Full-time Jobs

Show more

Game Studio Hiring: Full-Stack, Mobile & 3D Web Developers

Part time
Remote
About Us
We are an established game studio developing HeroWarrior, a Unity-based web battle game that has been in active development for three years. Our project is supported by GameWorld (Netherlands) and we're currently preparing for version 2.0 with an expanded development team.
Following strategic restructuring in 2022, we're now building a distributed team across Europe and seeking talented developers to join our long-term project.
Open Positions
We are actively recruiting for the following roles:
UI/UX Designer
Specialization in gaming interface design
Experience with Unity UI systems preferred
 
Full-Stack Developers
 
Backend and frontend development for web platform
Experience with game-related web services preferred
 
Mobile Developers
 
Native mobile app development
Cross-platform experience valued
 
Unity Developers
 
Gameplay mechanics implementation
3+ years Unity experience required
 
3D Web Developers
 
WebGL and Three.js expertise
Browser-based 3D rendering experience
 
hat We Offer
Project Commitment: We're seeking long-term partnerships, not short-term contractors. This is an opportunity to grow with an established project backed by industry partners.
Compensation Structure:
Flexible payment options: hourly rates, monthly retainers, or milestone-based compensation
Rates negotiable based on experience and role
Initial evaluation period followed by standard employment terms
 
Work Environment:
Remote-friendly distributed team
Collaborative development process
Opportunity to work on a commercially-backed game project
Application Requirements
 
Please submit the following:
Portfolio/Resume - Detailed work history and relevant projects
Rate Expectations - Your preferred compensation structure and rates
Code Samples - GitHub repository, portfolio links, or previous work examples
Availability - Expected start date and commitment level
Evaluation Process Acknowledgment - Confirmation of willingness to complete a brief technical assessment
 
Ideal Candidates
Demonstrated passion for game development
Strong technical skills in relevant technologies
Experience working on long-term projects
Collaborative mindset and professional communication
Interest in building innovative gaming experiences
 
Next Steps
We are moving quickly to fill these positions. Qualified candidates will be contacted within one week for initial discussions and technical evaluation.
To apply, please send your complete application materials to vlad@gameworldcompany.com
 
Payment in Crypto
14,400-17,000
Monthly
See details

Assistant in Financial Technology and Trading Strategies (with Training)

Berlin, Germany
Berlin, Germany
Part time
Remote
Description
We are offering an opportunity to join our team and learn about cross-market trading strategies, focusing on identifying price differences of assets across multiple platforms. This role provides hands-on experience in financial technology, data analysis, and trading support.
As part of this position, you will:
Gain practical knowledge of market analysis and trading workflows
Learn how to recognize and evaluate opportunities across different platforms
Develop your skills in risk management and decision-making
Work with a mentor who will guide you step by step through the learning process
What we provide:
Comprehensive training program designed for beginners
Ongoing mentorship and professional support
Flexible schedule (approx. 1 hour a day required for study and practice)
Remote work setup with the possibility to grow into a larger role over time
This is a part-time, entry-level opportunity suitable for candidates with little or no prior experience. What matters most is your willingness to learn and apply new knowledge in practice.
Compensation: Competitive monthly pay structure with opportunities for progression as skills develop
5,000-20,000
Monthly
See details

Infrastructure Support Engineer

London, UK
London, UK
Full time
Hybrid
About Wintermute

Wintermute is a prominent crypto-native algorithmic trading firm in the digital asset space. Our services include providing liquidity algorithmically on various cryptocurrency exchanges and trading platforms, offering OTC trading solutions, and supporting blockchain projects and financial institutions entering the crypto realm. Additionally, Wintermute Ventures invests in early-stage DeFi projects.

Established in 2017 by industry experts, Wintermute blends the technological standards of high-frequency trading firms in traditional markets with the innovative and entrepreneurial culture of tech startups. We have a deep-rooted belief in the transformative potential of blockchain technology, viewing digital assets not merely as another asset class but as a source of meaningful innovation. We maintain a long-term outlook on the digital asset market and assertively lead in creating an innovative and compliant market.

About the Role

This position primarily involves technical support functions within our systems administration department, focusing on the desktop environment and providing support for our automated setup. Candidates for this role should exhibit a sense of responsibility and passion for pursuing or advancing their careers in infrastructure. The position offers the opportunity to collaborate with and learn from senior technologists, enhancing automation skills, particularly proficiency in Python. Given the dynamic nature of our business, we seek individuals to help uphold our networks and computing environment.

Wintermute provides avenues for individuals to enhance their automation skills.

Hard Skills Requirements

Demonstrate the drive to identify optimal solutions for problems of varying complexity, spanning tasks from data center management to addressing desktop issues.

Proficient in PC hardware and computer internals troubleshooting, capable of resolving workstation OS (Linux), applications, peripherals, network, and audio-visual problems.

At least 2 years of prior experience in desktop support or a related field.

Able to analyze, troubleshoot, and resolve hardware failures effectively.

Practical knowledge of Linux command-line operations is essential.

Familiarity with Git and working experience in hardware monitoring and performance tuning.

Collaborative approach in a team environment supporting production, back office computing, and end-user assistance activities.

Skilled in maintaining professional interactions with users during face-to-face interactions, desk-side visits, inquiries, and status updates.

Energetic, adaptable, and able to thrive in a high-paced environment.

Exceptional organizational skills and meticulous attention to detail.

Educational background in computer science or IT field preferred.

Clear and concise communication skills.

Basic understanding of Data center connectivity and TCP/IP Networking.

Capable of lifting 40 – 50 pounds; willingness to work weekend and evening shifts as required.

Nice to Have Skills

Working knowledge of Linux servers, networking principles (DNS, DHCP, VLAN), and Python.

Reasons to Join Our Team

Contribute your skills to a globally recognized algorithmic trading firm.

Engage in challenging projects with increased responsibilities compared to traditional financial settings.

Enjoy a vibrant working culture with team activities, celebrations, gaming events, and company-wide team building exercises.

Embrace our inclusive company culture that is informal, non-hierarchical, ambitious, professional with a startup feel, collaborative, and entrepreneurial.

Performance-driven compensation structure providing substantial earning potential, along with standard perks such as pension and private health insurance.

Head of Custody Security

Amsterdam, Netherlands
Amsterdam, Netherlands
Full time
Hybrid
Responsibilities

Plan, execute, and manage testing of security controls for identity management, key management, and network/cloud infrastructure.

Assist with client assurance tasks such as handling RFPs, RFIs, and DDQs.

Analyze customer inquiries, provide insights to internal teams for enhancing documentation and control readiness.

Conduct security assessments and continual monitoring of web3/blockchain vendors to evaluate control maturity and identify risks.

Coordinate external audit procedures including walkthroughs, evidence gathering, and response oversight.

Identify process gaps, develop remediation plans, and monitor progress to address deficiencies.

Stay informed on financial regulatory security requirements to ensure compliance of controls.

Share security best practices, emerging threats, and mitigation techniques with internal stakeholders.

Assess and recommend advanced security tools, automation, and technologies to improve overall security posture.

Evaluate potential security implications of blockchain network or protocol upgrades on the platform.

Requirements

Minimum of 8 years experience in security assurance, audit, compliance, or cloud security engineering.

Proficiency in testing security controls across IAM, key management, and network/cloud environments.

Strong understanding of Identity and Access Management (IAM) principles.

Familiarity with cryptographic key management, HSMs, and KMS systems.

Good knowledge of cloud and network security architecture and configurations.

Experience supporting external audits like SOC 1, SOC 2, ISO 27001, PCI DSS, or equivalent assessments.

Exposure to major cloud platforms (AWS, GCP, Azure) and infrastructure-as-code.

Ability to create client assurance materials, respond to RFP/RFI/DDQ, and maintain evidence documentation.

Knowledge of blockchain platforms or digital asset custody systems is a plus.

Capable of working independently and handling pressure effectively.

Excellent verbal and written communication skills.

Practical and solution-focused approach, able to balance security needs with operational feasibility and business requirements.

Head of Custody Security

Madrid, Spain
Madrid, Spain
Full time
Hybrid
Responsibilities

Conduct, design, and execute testing of security controls encompassing identity management, key management, and infrastructure (network and cloud) configurations.

Assist client assurance activities, including addressing Requests for Proposals (RFPs), Requests for Information (RFIs), and Due Diligence Questionnaires (DDQs).

Identify and analyze trends in client inquiries, offering feedback to internal teams to enhance documentation and control readiness.

Engage in security due diligence and continuous monitoring for Web3/blockchain vendors, evaluating control maturity, reviewing SOC reports and security documentation, and pinpointing residual risks.

Coordinate external audit activities, such as walk-throughs, evidence collection, and response tracking.

Recognize and evaluate gaps in existing and new processes, subsequently formulating and monitoring remediation recommendations to completion (e.g., onboarding flow).

Develop and sustain comprehension of applicable financial regulatory security requirements, ensuring control alignment.

Research and share information security best practices, emerging threats, and mitigation strategies with internal teams.

Evaluate and suggest next-generation security tools, automation, and technologies to enhance overall security posture.

Review blockchain network or protocol upgrades for potential security impacts on the platform.

Requirements

Minimum of 8 years of pertinent experience in security assurance, audit, compliance, or cloud security engineering.

Demonstrated proficiency in testing and validating security controls regarding IAM, key management, and network/cloud environments.

Solid understanding of Identity and Access Management (IAM) principles.

Knowledge of cryptographic key management, HSMs, and KMS systems.

Proficient in cloud and network security architecture and configuration.

Proven track record in supporting SOC 1, SOC 2, ISO 27001, PCI DSS, or equivalent external audits and assessments.

Exposed to major cloud platforms (AWS, GCP, Azure) and infrastructure-as-code.

Experience in preparing client assurance materials, RFP/RFI/DDQ responses, and evidence documentation.

Familiarity with blockchain platforms or digital asset custody systems considered a plus.

Capable of working autonomously and effectively under pressure.

Excellent verbal and written communication skills.

Pragmatic and solution-oriented approach, capable of balancing security requirements with operational feasibility and business needs.