📢 New: get today's jobs on our WhatsApp Channel
Jobiglo

No results.

Security Architect for Self‑Custody Crypto Wallet

ITRex Group

New
🇬🇧 English
iOS Secure Enclave Android Keystore StrongBox biometric APIs platform attestation RASP certificate pinning Frida objection MobSF modern KDFs envelope encryption KMS HSM key rotation OIDC JWT JWKS WebAuthn device binding API authorisation rate limiting threat modelling secure code review SAST DAST SCA SBOM secret scanning CI/CD hardening KYC/CDD Travel Rule data model audit logging severity triage

Job description

About the role

ITRex is seeking a Security Architect to own security and privacy assurance for a self‑custody crypto wallet during its first delivery phase. The wallet runs on users' devices, so any defect in the signing path cannot be fixed server‑side. You will work closely with SDK, backend, mobile, DevOps, and QA teams and act as the technical counterpart to the independent auditor.

Key responsibilities

  • Be the single technical owner of security and privacy for the crypto wallet.
  • Collaborate daily with wallet SDK integration, backend, mobile, DevOps, and QA engineers.
  • Co‑sign the exit checklist for every milestone.
  • Provide technical guidance to the client‑engaged independent auditor.
  • Continuously monitor, detect, and respond to security incidents.

Required profile

  • Strong experience in mobile and application security (iOS, Android).
  • Deep knowledge of applied cryptography and digital‑asset security.
  • Hands‑on expertise with backend and cloud security, especially AWS.
  • Proficiency in secure SDLC, supply‑chain security, and compliance engineering.
  • Excellent written communication for auditors, legal counsel, and non‑technical stakeholders; English at C1 level.

Required skills

  • iOS Secure Enclave, Android Keystore/StrongBox, biometric APIs, platform attestation.
  • RASP, anti‑tamper, certificate pinning, Frida, objection, MobSF.
  • BIP‑32, BIP‑39, BIP‑44, ECDSA secp256k1, AES‑GCM, modern KDFs, envelope encryption, KMS, HSM, key rotation.
  • AWS IAM, KMS, VPC, CloudTrail, GuardDuty.
  • OAuth 2.0, OIDC, JWT, JWKS, WebAuthn, session/device binding, API authorisation, rate limiting, secure service‑to‑service design.
  • Threat modelling, secure code review, SAST, DAST, SCA, SBOM, secret scanning, CI/CD hardening.
  • EVM transaction structure, ERC‑20, ERC‑4337, smart‑account wallets, address‑poisoning, RPC provider trust.
  • Sanctions screening, KYC/CDD, Travel Rule data model, audit logging, ISO/IEC 27001, SOC 2, NIST CSF.
  • Incident detection, severity triage, on‑call practice, post‑mortem discipline.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec ITRex Group.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

💬 Chat with us on Telegram Chat on WhatsApp

Published 2 օր առաջ

Expires 1 ամիսից

9 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

ITRex Group