We are seeking an experienced CISO to lead the enterprise security strategy for a digital asset / blockchain-focused organization. The role will be responsible for building, implementing, and managing a robust cybersecurity framework to protect blockchain infrastructure, crypto/digital asset platforms, and enterprise systems.
Key Responsibilities:
- Define and execute the overall cybersecurity strategy aligned with business and regulatory requirements.
- Secure digital asset infrastructure , including wallets, custody systems, exchanges, and blockchain nodes.
- Establish enterprise-wide security governance, risk, and compliance (GRC) frameworks.
- Lead incident response, threat detection, and vulnerability management programs.
- Oversee cloud security architecture (AWS/Azure/GCP) and zero-trust implementation.
- Smart contract exploits
- Private key compromise
- Exchange breaches
- Insider threats
- Work closely with engineering teams on secure blockchain architecture design .
- Implement IAM, encryption, key management (HSM/KMS) strategies.
- Ensure compliance with global regulations (MAS, FATF, GDPR, SOC2, ISO 27001).
- Conduct regular security audits, penetration testing, and red team exercises .
- Manage relationships with external security vendors and audit firms.
- Build and lead a high-performing cybersecurity team .
Key Requirements:
- 10–20+ years in cybersecurity, with at least 5+ years in leadership (CISO / Head of Security / VP Security).
- Strong experience in financial services, fintech, crypto exchanges, or blockchain platforms .
- Blockchain architecture (Ethereum, Layer 1/Layer 2 systems)
- Cryptographic principles and key management
- Cloud security (AWS/Azure/GCP)
- SOC, SIEM, SOAR tools
- Experience handling security for digital asset custody or trading platforms is highly preferred.
- Strong knowledge of regulatory and compliance frameworks in financial technology.
Preferred Skills
- Experience with smart contract security and audits
- Familiarity with DeFi, CeFi, NFT ecosystems
- Certifications such as CISSP, CISM, CCSP, or equivalent
- Experience working in high-growth startups or exchange environments
Originally posted on Himalayas