Job Summary
The Senior Security Engineer, Digital Asset Custody will serve as the technical authority for crypto custody engineering, with deep ownership of key management, custody security architecture, and risk posture across digital asset platforms. This hands-on individual contributor will set technical direction and own critical design decisions across HSMs, MPC, key storage, policy enforcement, disaster recovery, and incident response while partnering with Cybersecurity, Risk, and other stakeholders to develop secure, resilient, and compliant custody solutions.
Key Responsibilities
• Design, implement, and evolve institutional-grade key management architectures using Hardware Security Modules (HSMs) and Multi-Party Computation (MPC).
• Define architectural patterns across hot wallet, warm wallet, and cold storage models in alignment with regulatory, security, and audit expectations.
• Partner with Cybersecurity and Risk teams to implement defense-in-depth and zero-trust principles across custody architecture.
• Lead the design of the Custody Policy Engine governing authorization, approvals, transaction controls, and policy enforcement.
• Translate business, legal, and risk requirements into clear and enforceable technical controls.
• Own custody-specific disaster recovery strategies, including key recovery and chain event scenarios.
• Author and maintain incident response and recovery runbooks for custody-related failures and security events.
• Serve as the custody architecture authority across wallets, blockchains, and platforms, identifying and mitigating architectural and security risks.
• Leverage GenAI and agentic AI tools to accelerate architecture design, threat modeling, documentation, and testing.
• Collaborate with security auditors on architecture, security controls, and custody-related assessments.
Required Qualifications
• 10+ years of software engineering experience with deep specialization in security-sensitive or cryptographic systems.
• Proven experience designing systems where failures carry material security or business risk.
• Strong understanding of distributed systems, secure architectures, and fault-tolerant design.
• Demonstrated ability to operate as a technical authority without formal people management responsibilities.
• Strong hands-on experience with HSMs, MPC frameworks, and secure key management systems.
• Experience with Web3 security tools such as Slither, Mythril, and Foundry Fuzzing.
• Experience with cryptography implementation languages such as C, C++, Rust, and Go.
• Experience collaborating with security auditors.
• Must be able to work onsite 4 days per week from day one in Southlake, TX or Austin, TX.
Preferred Qualifications
• Experience with crypto custody, digital asset platforms, or blockchain infrastructure.
• Prior ownership of incident response, disaster recovery design, or security runbooks.
• Ability to clearly articulate risk-based trade-offs to technical and non-technical stakeholders.
• Experience applying AI tools to complex engineering workflows.