Senior Security Engineer

Remote $130k–$180k senior 1 month ago full-time quality 8.7/10

Role in brief

NEAR Foundation seeks a Senior Security Engineer to manage and automate its information security program, including SOC2 and ISO 27001 compliance. This role involves engineering security controls, monitoring, and incident response for the NEAR ecosystem. Candidates with extensive experience in IAM, endpoint, and cloud security, coupled with scripting skills and compliance expertise, should apply.

IAMendpointcloudPythonGoBashSSOIdPOktaGoogle WorkspaceEntraMDM

About the role

This role involves comprehensive management of the NEAR Foundation's information security program, focusing on compliance standards such as SOC2 Type 2 and ISO 27001. The engineer will lead efforts to secure the NEAR AI initiatives and support the NEAR Security Committee. Key responsibilities include designing and implementing security controls, conducting security audits, and managing vendor relationships to maintain a robust security posture.

A core part of the work involves engineering and automating security controls across various domains, including Identity and Access Management (IAM), endpoint protection, and cloud environments. The role also encompasses continuous monitoring, vulnerability management, and leading incident investigations. Success in this position means ensuring the ongoing safety and integrity of the NEAR ecosystem through proactive security measures and effective response strategies.

The ideal candidate will contribute to technical due diligence processes and help shape security policies, requiring strong communication skills to articulate complex security concepts to diverse audiences, from audit teams to internal stakeholders. This position offers significant responsibility in safeguarding critical infrastructure within the crypto and AI space, requiring a hands-on approach to security engineering and program management.

The listed salary range for this role is between $130,000 and $180,000 USD, complemented by NEAR tokens.

Skills that matter here

  • IAM: This role requires deep knowledge of Identity and Access Management to engineer and automate security controls.
  • endpoint: The engineer will manage and automate security controls related to endpoint protection.
  • cloud: This position involves engineering and automating security controls within cloud environments like AWS and GCP.
  • Python: Scripting languages such as Python are essential for automating security tasks and controls.
  • SOC2: The role requires experience building and managing compliance programs, specifically SOC2 Type 2.
  • ISO 27001: This position involves managing ISO 27001 compliance for NEAR AI and the overall security program.

Who this role suits

  • A person with at least seven years of experience in information security, particularly in building compliance programs.
  • Someone who enjoys automating security processes and has practical experience with scripting languages.
  • An individual who can clearly communicate complex security information to various stakeholders.
  • A professional who thrives in a role with significant responsibility for an entire ecosystem's security.

From the employer

Responsibilities

  • Full management of the information security program: SOC2 Type 2, ISO 27001 (for NEAR AI), support for NEAR Security Committee.
  • Engineering and automation of security controls (IAM, endpoint, cloud).
  • Monitoring, vulnerability management, incident investigation.
  • Security audits of SaaS, vendor management, security awareness.
  • Participation in technical due diligence, support for security policies.

Requirements

  • 7+ years in information security, experience building compliance programs (SOC2, ISO 27001).
  • Deep knowledge of IAM, endpoint, cloud (AWS/GCP).
  • Scripting languages (Python, Go, Bash) for automation.
  • Practical experience with SSO/IdP (Okta, Google Workspace, Entra), MDM/EDR, SIEM.
  • Strong communication skills (policies, post-mortem, audit).
  • Knowledge of crypto/AI (plus).

Conditions

  • Fully remote, global team.
  • Competitive salary + NEAR tokens.
  • Medical insurance, training budget.
  • Real responsibility for the security of the NEAR ecosystem (AI, Intents, Protocol).

Questions about this role

What is the remote work policy for this position?

This is a fully remote position, and the team operates globally.

What level of seniority is expected for this role?

This is a senior-level position, requiring extensive experience in information security.

What is the salary range for this role?

The salary for this position ranges from $130,000 to $180,000 USD, plus NEAR tokens.

Similar jobs

Before you apply

  • Legitimate employers never ask you to pay anything to apply or get hired.
  • Never share seed phrases or private keys. No real job needs them.
  • Do not install software ("test tasks", "trading tools", "video call clients") sent during hiring.
  • Check that the application page's domain really belongs to NEAR Foundation.