обновлено 16 дней назад
Product Security Manager (Web3)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Product Security Manager (Web3): Leading Application Security and Vulnerability Management & Automation teams to secure cloud-native infrastructure and Web3 products with an accent on security automation, secure development, and proactive defense. Focus on integrating SAST, DAST, and SCA into CI/CD, managing vulnerability remediation, securing AI-enabled features, and leading incident response and compliance initiatives.
Location: Canada - Remote; hybrid working schedule available, with the option to work fully remotely or from a Moonbase.
Company
builds infrastructure for moving value through crypto, stablecoins, tokenized assets, and related financial products.
What you will do
- Lead and mentor the Application Security and Vulnerability Management & Automation teams.
- Define the product security roadmap, emphasizing scalable automation and proactive defense.
- Manage vulnerability discovery, triage, remediation, and security debt across the ecosystem.
- Integrate SAST, DAST, and SCA tooling into CI/CD pipelines and lead threat modeling and penetration testing.
- Partner with Engineering, Product, new business units, and acquisitions to promote Security by Design.
- Lead high-priority incidents and investigations while supporting SOC 2, PCI, CIS Top 18, and ISO 27001 certifications.
Requirements
- Experience managing technical security teams in high-growth, cloud-native environments.
- Strong background in application security, penetration testing, and software engineering.
- Experience building or implementing automated security scanning and reporting tools.
- Ability to navigate ambiguity, balance tactical needs with long-term security goals, and influence cross-functional stakeholders.
- Curiosity about or experience with blockchain technology, smart contract security, and Web3 security challenges.
- Experience securing cloud infrastructure, containers, serverless components, networking, and CI/CD environments.
Nice to have
- Experience securing AI-enabled features, LLM interactions, data privacy, and responsible AI practices.
Culture & Benefits
- Remote or hybrid working with flexible time off and regular company offsites.
- Equity ownership, performance-based equity rewards, and pension contributions from day one.
- Private healthcare, enhanced parental leave, birthday leave, commuter benefits, and wellness membership.
- Home office and remote-work allowances, lunch credit on office days, and a monthly product budget.
- Unlimited access to enterprise AI tools and a $1,000 annual training budget.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →