Principal Security Engineer

Mlabs Ltd
San Francisco, CA, United States
19 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Compensation
$160,000.0 - $240,000.0
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Computing Platforms Authentication Protocols Cyber Security Continuous Integration Distributed Systems Cryptographic Protocols Key Management Network Protocols Blockchain Software Engineering TypeScript
+2 more
Cloud Platform System Infrastructure as Code (IaC)

Job description

  • Architectural Leadership: Lead product security architecture, ensuring security principles are embedded into core platform design and development cycles.
  • Core Infrastructure Security: Analyze and secure key management systems, transaction pipelines, and signing workflows across modern distributed networks.
  • Threat Modeling & Review: Perform system-level threat modeling for new product features, protocols, and multi-chain integrations.
  • Cryptographic & Auth Security: Design and evaluate security-sensitive components, including authentication protocols, authorization frameworks, and applied cryptographic workflows.
  • Defense-in-Depth: Define, implement, and maintain multi-layered security controls across the application, infrastructure, and protocol layers.
  • Supply Chain & Environment Security: Own and expand end-to-end software supply-chain security, spanning dependency scanning in CI pipelines to local developer environments.
  • Infrastructure as Code (IaC): Enforce security configurations into version-controlled repositories to prevent configuration drift and enhance auditability.
  • Risk Research & Mitigation: Investigate emerging security risks related to blockchain protocols, institutional custody models, and novel cryptographic techniques.
  • Compliance & Audits: Support ongoing SOC 2, ISO 27001, and ISO 22301 compliance frameworks alongside expanding control surfaces.
  • Technical Enablement & Incident Response: Provide day-to-day guidance to engineering teams to make secure patterns accessible, while supporting incident response and root-cause analysis when necessary.
  • External Representation: Participate in security architecture reviews with tier-one banking partners, external auditors, and enterprise clients.
  • Industry Thought Leadership: Contribute to technical research, whitepapers, and conference presentations to advance the digital asset security field.

Requirements

  • Experience: 10+ years in security engineering, product security, or security architecture roles.
  • Domain Expertise: Demonstrated track record of securing financial infrastructure, institutional blockchain platforms, or both.
  • Cryptographic Systems: Deep understanding of cryptographic protocols, wallet architectures, and key management frameworks. Direct experience with Multi-Party Computation (MPC), threshold signatures, or HSM-backed solutions is strongly preferred.
  • Threat Modeling: Extensive experience performing comprehensive system-level threat models and architecture reviews.
  • Infrastructure & Networks: Solid foundational knowledge of distributed systems, networking protocols, and cloud computing platforms (primarily AWS).
  • Supply Chain & IaC: Hands-on experience implementing software supply-chain defenses and managing security configurations via code to prevent drift.
  • Compliance & Frameworks: Familiarity with maintaining live audit cycles for frameworks such as SOC 2, ISO 27001, ISO 22301, and the NIST Cybersecurity Framework.
  • Development Skills: Professional familiarity with modern backend languages such as Rust or TypeScript.
  • Communication: Exceptional ability to communicate complex security concepts effectively to both internal engineering teams and external enterprise stakeholders., * Critical Thinking
  • Verbal Reasoning
  • Attention to Detail (Textual)
  • Numerical Reasoning
  • Problem Solving
  • (Note: Practice questions are provided prior to each timed 10-minute section).

  • Take-Home Technical Exercise: A practical assignment designed to assess technical problem-solving and architectural design capabilities.
  • Group Technical Interview (120 mins): A multi-part panel review covering

Benefits & conditions

  • Competitive executive-level compensation package.
  • Flexible, remote-first work environment.
  • Comprehensive health, wellness, and benefits coverage tailored to regional standards.
  • Generous paid time off (PTO) and personal Leave policy.
  • Professional development budget for security research, certifications, and industry conferences.
  • Exposure to cutting-edge cryptographic engineering alongside leading global financial institutions.

Interview Process

The selection process for this position consists of the following structured phases:

  • Initial Screening Call (30 mins): Introductory discussion with the Co-CEO to align on background, expectations, and role scope.
  • Cognitive & Skills Assessment (45 mins): A series of brief, timed assessments via TestGorilla evaluating

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:12 min

Using contract managers for blockchain operations

Soumaya Erradi · LIVE

1:00 min

Misconceptions about TypeScript safety capabilities

Simone Sanfratello · JS Congress

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:31 min

Monitoring active blockchain integrations for errors and malicious behavior

Michiel Mulders Michiel Mulders · World Congress 2025

Videos

See all

Related articles

See all