Skip to main content
NEUN
Back to Careers

OpenEden

IT Security Lead

NEW
Kuala Lumpur, MalaysiaFull-timeGlobal
šŸ“Š SenioršŸ  Hybrid
ActivePosted within the last 30 days

Job Description

[AI-summarized by JobStash]

You will oversee and enhance security across cloud infrastructure, internal systems, and digital asset operations. You will design, implement, and manage security controls, perform security reviews of new features and integrations, and maintain the Technology Risk Management register. You will identify and remediate threats, vulnerabilities, misconfigurations, and access risks, monitor system health, investigate alerts, and lead incident response and recovery. You will own relationships with security vendors, lead third-party and vendor risk reviews, and support disaster recovery and resilience testing. You will design and maintain institutional-grade wallet and transaction security controls to protect minting and redemption processes.

Requirements

  • ā—5–8 years in IT security, security engineering, or DevSeCOps with at least 2–3 years in crypto or web3 environments
  • ā—Experience working within a regulated environment (e.g. MAS, BMA, FCA, SEC) preferred
  • ā—Strong hands-on experience in cloud security, preferably AWS (IAM, logging, networking)
  • ā—Strong understanding of blockchain security fundamentals including Ethereum/EVM, smart contract vulnerabilities, and oracle risks
  • ā—Hands-on ability to design and implement security solutions independently
  • ā—Experience working with or managing external security vendors
  • ā—Experience in startups or fast-moving environments
  • ā—Familiarity with custody providers (e.g. Fireblocks) preferred
  • ā—Experience supporting audits such as ISO and SOC2 preferred

Responsibilities

  • ā—Own and maintain security controls across AWS including IAM, access, logging, and network security
  • ā—Identify and remediate threats, vulnerabilities, misconfigurations, and access risks across systems
  • ā—Maintain and actively manage the Technology Risk Management register including risk identification, tracking, and remediation
  • ā—Perform security reviews of new features, smart contract integrations, and system architectures prior to launch
  • ā—Manage security vendors including MSSP, monitoring tools, and Web3 security providers
  • ā—Monitor system health, investigate security alerts, and lead incident response and escalation
  • ā—Design and maintain institutional wallet and transaction security controls for minting and redemption
  • ā—Lead third-party and vendor risk reviews and technical due diligence for integrations and protocols
  • ā—Support testing and continuous improvement of disaster recovery and resilience processes
  • ā—Maintain and enhance recovery procedures for critical systems

Benefits & Perks

  • ā—Employee Stock Option Scheme eligibility
  • ā—Token incentive allocation
  • ā—Flexible work arrangements

Tech Stack

TRMsmart contractloggingvulnerability managementIAMincident responsedigital assetoraclemonitoringSOC2
Expired
Search