Назад
Company hidden
обновлено 16 дней назад

Product Security Manager (Web3)

Формат работы
remote (только Canada)/hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
Canada
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Product Security Manager (Web3): Leading Application Security and Vulnerability Management & Automation teams to secure cloud-native infrastructure and Web3 products with an accent on security automation, secure development, and proactive defense. Focus on integrating SAST, DAST, and SCA into CI/CD, managing vulnerability remediation, securing AI-enabled features, and leading incident response and compliance initiatives.

Location: Canada - Remote; hybrid working schedule available, with the option to work fully remotely or from a Moonbase.

Company

hirify.global builds infrastructure for moving value through crypto, stablecoins, tokenized assets, and related financial products.

What you will do

  • Lead and mentor the Application Security and Vulnerability Management & Automation teams.
  • Define the product security roadmap, emphasizing scalable automation and proactive defense.
  • Manage vulnerability discovery, triage, remediation, and security debt across the ecosystem.
  • Integrate SAST, DAST, and SCA tooling into CI/CD pipelines and lead threat modeling and penetration testing.
  • Partner with Engineering, Product, new business units, and acquisitions to promote Security by Design.
  • Lead high-priority incidents and investigations while supporting SOC 2, PCI, CIS Top 18, and ISO 27001 certifications.

Requirements

  • Experience managing technical security teams in high-growth, cloud-native environments.
  • Strong background in application security, penetration testing, and software engineering.
  • Experience building or implementing automated security scanning and reporting tools.
  • Ability to navigate ambiguity, balance tactical needs with long-term security goals, and influence cross-functional stakeholders.
  • Curiosity about or experience with blockchain technology, smart contract security, and Web3 security challenges.
  • Experience securing cloud infrastructure, containers, serverless components, networking, and CI/CD environments.

Nice to have

  • Experience securing AI-enabled features, LLM interactions, data privacy, and responsible AI practices.

Culture & Benefits

  • Remote or hybrid working with flexible time off and regular company offsites.
  • Equity ownership, performance-based equity rewards, and pension contributions from day one.
  • Private healthcare, enhanced parental leave, birthday leave, commuter benefits, and wellness membership.
  • Home office and remote-work allowances, lunch credit on office days, and a monthly product budget.
  • Unlimited access to enterprise AI tools and a $1,000 annual training budget.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →