Logo
STATION F

PRINCIPAL SECURITY ENGINEER

STATION F, Cassville, New York, United States

Save Job

About Dfns Dfns is the leading Wallets‑as‑a‑Service (WaaS) platform that helps fintechs, institutions and enterprises simplify digital asset management and securely onboard users onchain. Built on advanced security and cryptography, Dfns is trusted by over 200 financial institutions and applications—including ABN AMRO, Broadridge, Fidelity, Zodia Custody, Banca Sella, Stripe, Moonpay, Circle, IBM, Deblock, and Gemini—and secures more than $3 billion in monthly transactions.

Job Description Principal Security Engineer

– reporting to the CISO, you will set the strategy to protect our systems, fix vulnerabilities and keep client wallets safe. Your work spans the full security lifecycle: architecture reviews, threat modelling, penetration testing, incident response and secure software practices. You will work closely with engineering, infrastructure and product teams to embed security at every layer of the stack, ensure compliance with industry standards, design new security features, test resilience ideas and share your knowledge through articles or conferences.

Responsibilities

Lead security architecture, setting priorities and ensuring secure, reliable delivery.

Drive threat modelling, vulnerability management and pentesting (internal and external).

Conduct and oversee security reviews of code, design, architecture and dynamic testing.

Design and implement defence‑in‑depth security controls.

Build frameworks for automated security testing and SSDLC enforcement.

Mentor engineers on secure coding, incident response and best practices.

Manage bug bounty, security releases and coordinate with external researchers.

Monitor and respond to emerging threats, including supply‑chain risks.

Represent the company in client discussions, audits and security conferences.

Requirements

10+ years of experience in security engineering, with leadership in fintech or blockchain.

Strong expertise in application security, smart contract security and cryptography.

Deep understanding of pentesting, static/dynamic testing and vulnerability management.

Hands‑on with secure networking, cloud security (AWS) and software supply chains.

Familiar with industry standards and frameworks (ISO 27001, NIST, CIS, SOC 2, etc.).

Strong knowledge of network & web protocols, applied cryptography and PKI.

Experience integrating security into CI/CD pipelines and observability systems.

Proficient in TypeScript and Rust (or similar languages) with secure coding expertise.

Clear communicator who can explain complex security concepts to technical and business stakeholders.

Recruitment Process

Intro call with Co‑CEO (30 min)

Personality and cognitive tests (45 min)

Code test in a language of your choice

Focus interview with the hiring panel (120 min)

Threat model exercise

Infrastructure security

Culture fit check

Final interview with CISO (30 min)

Reference calls and background checks

Terms

Title:

Principal Security Engineer

Salary: $220,000–$300,000 per year (full‑time)

Equity: 150–300 stock options vested over 4 years

Benefits: Healthcare, 401(k), travel expenses

Location: US or EU (remote‑first, office optional)

Equipment: MacBook Pro + essentials

Additional Information

Contract type: Full‑time

Locations: Paris, New York

Experience: >10 years

Possible full‑remote

Salary range: $220,000–$300,000 per year

#J-18808-Ljbffr