SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Security Application Engineer

BitGo - New York, NY, United States - In-office - posted 2026-09-15

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Salary: USD 200,000 - 235,000 / annual

BitGo (NYSE: BTGO) is a digital asset infrastructure company providing custody, wallets, staking, trading, financing, stablecoins, and settlement services. The company operates as a regulated trust bank and serves thousands of institutions, exchanges, and platforms in the crypto and fintech space. We are seeking a Senior Application Security Engineer to lead the technical execution of our product security strategy. This role focuses on securing high-growth FinTech and Web3 digital asset platforms by building end-to-end security programs and integrating automated security controls directly into the software development lifecycle. The ideal candidate has a deep engineering background, hands-on experience defending complex cloud environments, and a passion for securing blockchain-adjacent technologies. Key Responsibilities: - Lead comprehensive threat modeling and product security architecture reviews in collaboration with cross-functional teams - Integrate security automation into CI/CD pipelines utilizing SAST, DAST, and continuous vulnerability management tools - Architect and implement secure-by-default cloud infrastructure on AWS using Terraform and Kubernetes - Design and deploy robust encryption services, key management systems (KMS), and advanced data protection controls across distributed environments - Oversee operational security initiatives including corporate bug bounty programs, incident response workflows, and regular penetration testing engagements - Secure next-generation AI-integrated applications by establishing input/output validation protocols and LLM guardrails - Engineer proactive defenses to safeguard platform infrastructure against sophisticated adversaries and nation-state-level threats Requirements: - 8+ years of experience engineering and scaling end-to-end security programs for high-growth startups - Proven background securing platforms within FinTech, Web3, and digital asset ecosystems - Strong engineering proficiency in distributed systems, microservices, and languages such as Python or Java - Hands-on mastery of container security, Kubernetes orchestration, and AWS infrastructure hardening - Practical knowledge of implementing technical controls to meet SOC 2 Type II and GDPR compliance standards - Deep expertise in securing AI/ML lifecycles, MLOps frameworks, and agentic AI platforms - Bachelor's degree in Computer Science, Engineering, or an equivalent technical field

Similar roles