
Who You Are:
Galaxy is seeking a Product Security Engineer to join our team of senior ProdSec and offensive security engineers. The engineer will contribute to establishing our secure by design program to all software and production engineering teams, and elaborate standards and best practices to bring efficiency to those engineers as they implement security controls. We are looking for a curious, collaborative, detailed oriented individual who will gradually build a solid understanding of Galaxy business lines and solutions. Based in London, the Product Security Engineer will work with teams in the local office as well as US (where all other members of ProdSec are based) and Hong Kong.
What You’ll Do:
- Assist software and production engineering teams in applying threat modeling to their designs
- Assess which security controls are most adequate for a specific design, taking into consideration the existing policies and standards
- With guidance from senior team members, elaborate standards to be used by engineering teams: e.g. use of OAuth in custom applications, required system and network hardening for a blockchain transaction signing application
- Assist software and production engineering teams in understanding vulnerabilities reported by various security tools (SAST, SCA, container/OS scanners)
- Build solid understanding of the London and HK-built technology stacks
- Help increase the understanding of our secure by design program for London and HK technology teams, as well as Project Management and Product points of contact
What We’re Looking For:
- Bachelor or post-graduate diploma in cybersecurity or technology
- 2+ years work experience in product security, application security, cloud security, or software development of security features
- Strong understanding of at least a few of the following topics: authentication and authorization technology, TLS and PKI, network security, cloud security, system security
- Threat modeling, risk assessment, controls review
- SAST, DAST, SCA
- Programming experience
- Strong analysis skills, detail oriented
- Very good verbal and written communication skills, collaborative and solution-driven
- Experience working in financial services and/or on blockchain related projects
- Security or cloud certifications
What We Offer:
- Competitive base salary, bonus, and equity compensation
- Company-paid health and protective benefits for employees and their eligible dependents
- Free virtual coaching and counseling sessions
- Opportunities to learn about the Crypto industry
- Smart, entrepreneurial, and fun colleagues
- Employee Resource Groups
*Benefits may vary depending on location.
Listed in: Web3 Jobs, Web3 Crypto Jobs, Security Web3 Jobs, Developer Web3 Jobs, Engineering Web3 Jobs, Senior Crypto Jobs, Full Time Crypto Jobs.
Associate, Product Security Engineer - London at Galaxy: FAQ
Where is the Associate, Product Security Engineer - London role at Galaxy based?
The Associate, Product Security Engineer - London role at Galaxy is based in London. Check the job description for any remote or hybrid options.
What skills are required for the Associate, Product Security Engineer - London role at Galaxy?
This Associate, Product Security Engineer - London role is associated with the following skills and technologies:
- Web3
- Security
- Developer
- Engineering
- Senior
- Full Time
Read the full job description above for the complete list of requirements.
Is the Associate, Product Security Engineer - London role at Galaxy full-time or contract?
Galaxy is hiring this Associate, Product Security Engineer - London as a full time position.
How do I apply for the Associate, Product Security Engineer - London role at Galaxy?
You can apply for the Associate, Product Security Engineer - London role at Galaxy directly on this page using the Apply button. London candidates are welcome. Applications submitted through CryptoJobsList reach the employer directly.