This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Design, implement and maintain security controls across all systems and environments, spanning enterprise IT, cloud infrastructure and digital asset operations
Operate core security functions including endpoint protection, email security, identity and access management, data security and security monitoring
Manage and continuously improve the firm's SIEM, SOAR and EDR/XDR tooling, ensuring effective alerting, tuning and integration with incident response processes
Lead detection engineering and incident response, acting as the primary technical responder during security events and investigations
Lead vulnerability management and remediation across all environments, prioritising based on risk and business impact
Partner with IT, engineering and DevOps teams to embed security earlier in the development lifecycle, across infrastructure and into CI/CD pipelines
Maintain and improve cloud security controls across AWS, leveraging CSPM tooling to monitor posture and drive remediation
Conduct threat modelling, security architecture reviews and risk assessments for new systems, services and third-party integrations
Support third-party and vendor risk assessments, including review of SOC 2 reports, penetration test reports and security questionnaires
Contribute to the security of CoinShares' digital asset infrastructure, including custody and trading environments
prior exposure to crypto security is welcome but not expected
Play an active role in compliance initiatives (e.g. SOX 404, SOC 2, DORA) through control design, evidence generation, penetration testing coordination and audit support
Develop and maintain security standards, policies and technical documentation
Continuously evaluate the emerging threat landscape and recommend improvements to CoinSharesʼ security posture
Requirements
5 years' experience in a hands-on cyber security engineering or security operations role, with demonstrable breadth across multiple security domains
Experience running security processes end-to-end across multiple domains within a small team environment, operating as a generalist rather than a specialist in a single area
Bachelor's degree in Cyber Security, Computer Science, Information Technology, or equivalent practical experience
Relevant certifications are desirable (e.g. CISSP, CEH, AWS Security Specialty or CCSP)
Prior exposure to digital asset infrastructure, crypto custody or trading environments is advantageous but not required
Strong foundational knowledge across core cyber security domains: network security, endpoint security, cloud security, identity and access management, vulnerability management, threat detection, incident response and data security
Solid understanding of security frameworks including NIST CSF 2.0 and SOC 2
Experience working in a regulated environment
exposure to GDPR, DORA, SOX and the SEC Cybersecurity Rule is highly advantageous
Hands-on experience with SIEM, SOAR and EDR/XDR platforms - configuration, tuning, alerting, and integration with response workflows
Strong grasp of identity and access management including SSO, SCIM, access policies and secrets/credential management API keys and private keys)
Experience with vulnerability management tooling and a structured, risk-based approach to remediation
Working knowledge of cloud security concepts and controls, ideally in AWS. Familiarity with CSPM tooling such as Wiz is highly desirable
Ability to design and operate security controls that are pragmatic and proportionate to the business environment
Strong problem-solving skills with a risk-based mindset and sound judgement under pressure
Excellent written and verbal communication skills, with the ability to translate technical risk into clear language for non-security stakeholders
Nice to have
Prior exposure to digital asset infrastructure, crypto custody or trading environments