Logo

Product Security Engineer

Galaxy
New York, United States
Full time
$185,000 - $215,000 per year
On site

Overview

Department

IT

Job type

Full time

Compensation

$185,000 - $215,000 per year

Location

New York, United States

Company size

Mature [ 50+ employess ]

Ready to apply?

You're one step away - it takes less than a minute to upload your resume

Resume Assistance

See how well your resume matches this job role with our AI-powered score. By uploading your resume, you agree to our Terms of Service

Galaxy Digital seeks a Senior Product Security Engineer to secure microservices and cloud applications. The engineer will assess trading systems and blockchain architectures, implementing remediations and working closely with Engineering, Product, and Infrastructure teams.

Requirements

  • Bachelor or post-graduate diploma in cybersecurity or technology
  • 5 years work experience in product security, application security, cloud security, or software development of security features
  • Threat modeling, risk assessment, controls review
  • Programming languages
  • Managing SAST, DAST, SCA, and helping software engineers with understanding vulnerabilities and selecting appropriate mitigation
  • In depth understanding of at least a few of the following topics: authentication and authorization technology, TLS and PKI, network security, cloud security, system security
  • Strong analysis skills, detail oriented, strategic thinking
  • Strong verbal and written communication skills, collaborative and solution-driven
  • Security or cloud certifications
  • Familiar with Cryptocurrency
  • Responsibilities

  • Participate in relevant secure software design and code reviews.
  • Assist with development and review of test plans to ensure effective security coverage.
  • Assist teams with the mitigation of findings: assess the impacts, propose possible solutions, and provide technical guidance for implementation.
  • Provide expertise and advice on cloud application and infrastructure security design patterns.
  • Provide training and thought leadership for secure software development practices
  • Review and improve implementations of authentication, authorization, data access and other security layers of our product stack
  • Research and collaborate with product team members to make proposals to adopt advanced security patterns - e.g. MPC, multi-signature, confidential computing
  • Assist engineering and software delivery teams in assessing the security of the applications, software, and operational components including:
  • Benefits

  • Competitive base salary and discretionary bonus
  • Flexible Time Off (paid)
  • 3% 401(k) company contribution
  • Company-paid health and protective benefits for employees, partners, and other dependents
  • Generous paid Parental Leave
  • Free virtual coaching and counseling sessions through Ginger
  • Opportunities to learn about the Crypto industry
  • Free daily snacks in-office
  • Smart, entrepreneurial, and fun colleagues
  • Employee Resource Groups
  • © All rights reserved.