Logo

Operational Information Security Officer

Aztec
Global
Full time
Remote

Overview

Department

IT

Job type

Full time

Compensation

Salary not specified

Location

Global

Company size

Scale Up [ 11<50 employees ]

Ready to apply?

You're one step away - it takes less than a minute to upload your resume

Resume Assistance

See how well your resume matches this job role with our AI-powered score. By uploading your resume, you agree to our Terms of Service

Define and execute a comprehensive operational security strategy, working with engineering and operations teams to ensure infrastructure and process integrity, confidentiality, and resilience. Ideal for an experienced OpSec engineer or hands-on manager with experience in distributed environments, ideally blockchain security.

Requirements

  • 7+ years of experience in cybersecurity.
  • Experience securing cloud-based infrastructure (AWS, GCP, or Azure) and DevSecOps environments.
  • Proven ability to design and implement security frameworks in fast-paced, high-growth organizations.
  • Excellent communication, and cross-functional collaboration skills.
  • Familiarity with DeFi protocols, MEV security, and decentralized governance models.
  • Track record of leading bug bounty programs and engaging with security researchers.
  • Relevant certifications: CISSP, CISM, Offensive Security certifications.
  • Responsibilities

  • Develop and implement a robust cybersecurity strategy tailored to Aztec’s processes.
  • Define security policies, standards, and best practices within the organization.
  • Advise executive leadership and engineering teams on security risks and industry best practices.
  • Lead incident response planning, ensuring rapid detection, containment, and remediation of security threats.
  • Develop security monitoring, logging, and detection systems to prevent unauthorized access.
  • Ensure the security of cloud-based infrastructure, DevSecOps pipelines, and decentralized nodes.
  • Assist engineering teams to implement secure software development life cycle (SDLC) practices.
  • Conduct threat modeling exercises to identify vulnerabilities.
  • Manage security awareness training for employees, ensuring a culture of security-first thinking.
  • © All rights reserved.