Head of Security (Web3)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Head of Security (Web3): Defining and driving Morpho's security strategy across corporate, cloud, and application layers with an accent on scaling the security function and managing counterparty risk. Focus on building a high-performance security team, establishing governance frameworks, and leading incident response for a high-growth DeFi protocol.
Location: Remote (Time zone: -5h GMT to +2h GMT) or Paris/New York
Company
Morpho is a leading Decentralized Finance (DeFi) lending protocol building an open credit network with over $12 billion in deposits.
What you will do
- Own and evolve the security strategy across corporate, cloud, application, and supply-chain security.
- Build and lead the security function, recruiting across security operations and application security.
- Execute hands-on technical work including threat modeling, architecture reviews, and incident command.
- Establish a governance architecture and lead certification efforts for SOC 2 and ISO 27001.
- Develop a counterparty security program for curators and ecosystem partners.
- Act as the primary security voice for internal leadership and external institutional partners.
Requirements
- 10+ years in security, with experience building security functions in crypto, web3, or fintech.
- Deep technical expertise in cloud, CI/CD, supply-chain, identity, and application security.
- Proven track record of owning end-to-end incident response and external communication.
- Experience leading organizations through SOC 2, ISO 27001, or similar certifications.
- Strong grasp of the crypto/web3 threat model.
- Must be able to work within the -5h GMT to +2h GMT time zone range.
Nice to have
- Established network and public profile in the crypto-security community.
- Offensive security depth or experience with red/blue teaming.
- Familiarity with institutional regulatory expectations and threat-sharing networks.
Culture & Benefits
- Top-tier compensation and comprehensive health coverage.
- High flexibility with a focus on deep work and growth.
- Periodic team gatherings in Paris.
- Support for continuous learning and professional development.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →