Principal Security Engineer
Mlabs
Germany · Remote · Full Time
Posted
Job description
Location: Remote - US or EU Remote | Full-time Compensation: $160K - $240K Our client operates a core banking platform designed specifically for digital assets, enabling fintechs and systemically important financial institutions to build, operate, and scale onchain infrastructure. The platform secures over €100B in assets and powers critical operations—including key management, transaction processing, treasury, and compliance—for over 400 global institutions. Our client is seeking a Principal Security Engineer to lead product security across the entire ecosystem. In this role, security is built directly into the system's architecture rather than applied as a secondary control. The ideal candidate will take ownership of hardening key management, signing workflows, authentication systems, policy enforcement, and multi-chain integrations. Beyond core product security and vulnerability management, this position plays a pivotal role in shaping the long-term architectural vision of a platform trusted by tier-one financial institutions. As an organization committed to technical excellence, our client also encourages contribution to the broader security community through research, publications, and industry events. Key Responsibilities Architectural Leadership: Lead product security architecture, ensuring security principles are embedded into core platform design and development cycles. Core Infrastructure Security: Analyze and secure key management systems, transaction pipelines, and signing workflows across modern distributed networks. Threat Modeling & Review: Perform system-level threat modeling for new product features, protocols, and multi-chain integrations. Cryptographic & Auth Security: Design and evaluate security-sensitive components, including authentication protocols, authorization frameworks, and applied cryptographic workflows. Defense-in-Depth: Define, implement, and maintain multi-layered security controls across the application, infrastructure, and protocol layers. Supply Chain & Environment Security: Own and expand end-to-end software supply-chain security, spanning dependency scanning in CI pipelines to local developer environments. Infrastructure as Code (IaC): Enforce security configurations into version-controlled repositories to prevent configuration drift and enhance auditability. Risk Research & Mitigation: Investigate emerging security ri…