SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 200,000 - 235,000 / annual
BitGo (NYSE: BTGO) is a digital asset infrastructure company providing custody, wallets, staking, trading, financing, stablecoins, and settlement services. The company operates as a regulated trust bank and serves thousands of institutions, exchanges, and platforms globally.
You will lead the technical execution of BitGo's product security strategy, focusing on securing high-growth FinTech and Web3 digital asset platforms. This role requires deep engineering expertise and hands-on experience defending complex cloud environments, with a particular focus on blockchain-adjacent technologies.
Key responsibilities include:
- Leading comprehensive threat modeling and product security architecture reviews with cross-functional teams
- Integrating security automation into CI/CD pipelines using SAST, DAST, and continuous vulnerability management tools
- Architecting and implementing secure-by-default cloud infrastructure on AWS using Terraform and Kubernetes
- Designing and deploying robust encryption services, key management systems (KMS), and advanced data protection controls across distributed environments
- Overseeing operational security initiatives including corporate bug bounty programs, incident response workflows, and penetration testing engagements
- Securing next-generation AI-integrated applications by establishing input/output validation protocols and LLM guardrails
- Engineering proactive defenses against sophisticated adversaries and nation-state-level threats
This is a full-time onsite role at the Palo Alto office to support collaborative team dynamics and innovative problem-solving.
QUALIFICATIONS:
- 8+ years of experience engineering and scaling end-to-end security programs for high-growth startups
- Proven background securing platforms within FinTech, Web3, and digital asset ecosystems
- Strong engineering proficiency in distributed systems, microservices, and languages such as Python or Java
- Hands-on mastery of container security, Kubernetes orchestration, and AWS infrastructure hardening
- Practical knowledge of implementing technical controls to meet SOC 2 Type II and GDPR compliance standards
- Deep expertise in securing AI/ML lifecycles, MLOps frameworks, and agentic AI platforms
- Bachelor's degree in Computer Science, Engineering, or equivalent technical field