Senior Security Engineer (Digital Asset Custody)
The Judge Group
Southlake, TX, USA
Senior Security Engineer (Digital Asset Custody)
Southlake, TX (Primary) or Austin, TX (Backup)
Work Model: On-site 4 days per week
Duration – 12+ Months (potential to convert to full-time employment)
We are hiring a Senior Security Engineer, Digital Asset Custody, to serve as the technical authority for Crypto Custody engineering. You will have deep ownership of key management, custody security architecture, and risk posture across our enterprise digital asset platforms.
This is a hands‑on, high‑impact individual contributor role. You will set technical direction, define custody architecture, and own critical design decisions across HSMs, MPC, key storage, policy enforcement, disaster recovery, and incident response. This role requires strong engineering judgment in high‑risk, high‑trust environments and the ability to operate with autonomy while influencing teams, architects, security, and leadership.
Responsibilities
- Design, implement, and evolve institutional‑grade key management architectures, including HSMs, MPC, and secure key generation, storage, rotation, signing, and recovery.
- Define clear trade‑offs and architectural patterns across hot wallet, warm wallet, and cold storage models, partnering with Cybersecurity to embed zero-trust principles.
- Lead the design of a code-driven Custody Policy Engine to govern authorization, transaction controls, exception handling, and segregation of duties.
- Own custody‑specific disaster recovery strategies, including key recovery and quorum loss scenarios, while maintaining incident response runbooks.
- Act as the custody architecture authority, ensuring consistency and scalability across wallets, blockchains, and future tokenized products.
- Leverage GenAI and agentic AI tools to accelerate architecture design, threat modeling, documentation, and testing without sacrificing engineering rigor.
Minimum qualifications:
- 10 years of software engineering experience, with deep specialization in security‑sensitive or cryptographic systems.
- Experience with Hardware Security Modules (HSMs), Multi‑Party Computation (MPC) frameworks, and secure key management systems.
- Experience programming in common cryptography implementation languages such as C, C++, Rust, or Go.
- Experience utilizing Web3 security tooling (e.g., Slither, Mythril, Foundry Fuzzing) and collaborating with external security auditors (e.g., Trail of Bits, Halborn).
- Experience with distributed systems, secure architectures, and fault‑tolerant design in environments where failure carries material risk.
Preferred qualifications:
- Experience with crypto custody, digital asset platforms, or blockchain infrastructure.
- Prior ownership of incident response, disaster recovery (DR) design, or security runbooks.
- Experience applying generative and agentic AI tools to complex engineering workflows.
- Ability to act as a technical authority without formal people management, articulating risk‑based trade‑offs clearly to both technical and non‑technical stakeholders.
- Strong systems thinking ability, connecting technology, security, policy, and operations in high-stakes environments.