Zero Hash

Security Architect

Zero Hash$150K — $180K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 10+ years in security infrastructure design, especially in AWS
  • 5+ years focused on blockchain security
  • Experience in Application Security (AppSec) including SAST and DAST
  • Deep understanding of security operations standards
  • Proven skills in cross-functional project management and ownership
  • Excellent communication skills for diverse audiences
  • Hands-on experience with AWS services and identity management.

Responsibilities

  • Implement security strategy per the CISO's defined framework
  • Champion improvements in security-critical processes
  • Review and manage supplier and partner security profiles
  • Map security initiatives to risk and maturity models
  • Maintain compliance with ongoing security initiatives
  • Engage with industry groups for knowledge-sharing
  • Architect and implement security solutions for cloud protections.
  • Perform security tests and respond to incidents promptly.

Benefits

  • Comprehensive healthcare coverage with significant premium support
  • Vision and dental insurance available
  • Equity earning opportunities
  • Generous parental leave policy after 6 months
  • Access to WeWork facilities
  • Annual stipend for work-from-home expenses
  • Learning and development stipend after 6 months.
Full Job Description
About the Job

Reporting to the CISO, the Security Architect will ensure that stakeholder security requirements necessary to protect the organization's mission and business processes are adequately addressed in all aspects of enterprise architecture - including reference models, segment and solution architectures, and the resulting systems supporting those missions and business processes. This role carries responsibility for both blockchain and non-blockchain security, and should have experience with both. This position has high visibility and direct responsibility for the effective and efficient architecture of the Security Systems in addition to company and product systems. The role also drives process refinement and implementation, cross-team/discipline collaboration, and maintenance of internal and external stakeholder relationships.
Responsibilities

As part of our team, your core responsibilities will be:
• Implement strategy defined by the CISO, with some input on the same
• Have agency to visit, introspect and influence technology functions to champion maturity of security-critical processes
• Review supplier and partner security profiles and submissions
• Manage existing relationships and tooling to ensure licenses and entitlements are fully utilized
• Map security initiatives and benchmarks to established risk and maturity models
• Do what's right, so that current and future compliance initiatives come naturally
• Have a finger on the pulse of the industry, proactively maintain knowledge of emerging

tactics, tools, and solutions, and advise zerohash stakeholders as appropriate
• Engage with community and sector-specific organisations and working groups
• Champion defence in depth, layering protective controls and segmenting systems as appropriate
• Architect, design, and implement security solutions, tools, and services to protect zerohash's cloud network environment in collaboration with zerohash engineering teams
• Develop and maintain requirements and standards for capabilities that support security operations, threat detection, intelligence, and incident response functions
• Conduct regular system tests and ensure continuous monitoring of network security
• Establish disaster recovery procedures and conduct breach of security drills
• Promptly respond to all security incidents and provide thorough post-event analyses
• Work with product management and software engineering teams during all phases of the SDLC to ensure that applications are designed and implemented securely
• Leverage threat models to define requirements and identify gaps to address threats
• Perform security reviews of infrastructure, products, and services
• Test web3 and web2 applications and underlying systems for vulnerabilities using both tools and manual techniques; manage the remediation of findings through resolution
• Help develop secure coding standards and training materials based on findings seen in the zerohash environment, to empower engineers to write more secure code
• Research vulnerabilities specific to blockchain technologies and incorporate this knowledge into zerohash's security practices
• Provide technical expertise on trends and emerging standards in the cloud security and blockchain landscape
• Work closely with team members to enhance, implement, and configure scalable security technologies, and improve detection and response capabilities
• Implement, review, and maintain strong access controls and identity roles within the cloud infrastructure
• Support tooling evaluations and rollouts across the Security program (e.g., SIEM platform evaluation) in partnership with the broader Security team
• Support our CISO and Security team on additional security projects, as needed
Requirements

Baseline skills/experiences/attributes:
• Minimum 10+ years of experience designing and implementing security infrastructure services in AWS, and other security solutions including IAM, EDR, MDM, SIEM, KMS, and PAM
• Minimum 5+ years of experience in blockchain security
• Experience in AppSec including SAST, DAST, open vulnerability management, and pen testing
• Thorough understanding of industry and corporate technology standards for security operations
• Experience developing cybersecurity and IT architectures
• Demonstrated ability to take ownership and work with cross-functional teams to manage multiple projects simultaneously under pressure
• Advanced analytical and problem-solving skills
• Consistently demonstrates clear and concise written and oral communication, as well as strong presentation skills to both technical and non-technical audiences
• Deep experience with identity management solutions, trends, and practice
• Hands-on experience working with AWS services and tools such as CloudTrail, CloudWatch, SecurityHub, GuardDuty, Inspector, Shield, WAF, Secrets Manager, and Lambda
• Strong understanding of secrets management and confidential computing
• Familiar with serverless compute such as AWS Lambda and container implementations with EKS, Kubernetes, etc.
• Experience leading design and security reviews of cloud-based systems
• Familiarity with security concerns around language models, autonomous agents, machine learning, and agentic/AI-augmented systems
• Ability to work closely with software, SRE, and cloud engineers
• Software development experience is a plus
• CISSP, OSCP, GIAC, and/or AWS Certified Security Specialty a plus
Benefits
  • Healthcare Insurance: zerohash covers roughly 100% of employee premiums as well as a portion of spouse/children (U.S. only)
  • Vision & Dental Insurance (U.S. only)
  • Chance to earn equity
  • Maternity & Paternity leave (after 6 months)
  • WeWork All Access Membership
  • WFH Yearly Stipend
  • L&D Yearly Stipend (after 6 months)

Similar Jobs

More Jobs at Zero Hash

More Information Technology Jobs

Find similar Security Architect jobs: