Crypto Asset Custody and Security Engineer
Remote / Online - Candidates ideally in
Singapore
Listed on 2025-12-12
Singapore
Listing for:
Reap
Remote/Work from Home
position Listed on 2025-12-12
Job specializations:
-
IT/Tech
Cybersecurity, Data Security, Security Manager, Blockchain / Web3
Job Description & How to Apply Below
Join to apply for the Crypto Asset Custody and Security Lead role at Reap
Crypto Asset Custody & Security Lead (DORA‑Aligned)
Help reinvent global finance with secure, resilient digital asset infrastructure. At Reap, you’ll be the security backbone behind our custody operations—shaping private key protection, wallet scale, and DORA‑compliant ICT controls.
What you’ll do
- Operate and harden custody environments across hot, warm, and cold storage.
- Own key lifecycle controls: secure creation, rotation, backup, recovery, and destruction, aligned to DORA secure ICT operations (Art.
9). - Support and evolve multisig flows, HSMs, and offline signing patterns.
- Monitor wallet transaction flows and signals for anomalies, abuse, and drift.
- Establish secure configuration baselines, hardening guides, and change controls for custody systems.
Access, SSO, and lifecycle
- Enforce strict segregation of duties and RBAC in line with DORA principles (Art.
6). - Administer SSO integrations and joiner‑mover‑leaver lifecycle for custody participants.
- Drive MFA everywhere it matters, least‑privilege defaults, and periodic access reviews.
ICT governance and DORA compliance
- Co‑author policies, standards, and procedures for custody security and change management (Art.
5). - Keep control inventories, evidence, and audit‑ready documentation current.
Run or support risk assessments for keys, wallets, and asset movement (Art.
8). - Contribute to oversight of third‑party custody providers and critical vendors (Art. 30).
Incident response and resilience
- Tune monitoring for custody alerts: wallet anomalies, access violations, and key events.
- Triage, escalated, and document incidents in accordance with DORA (Art. 17-19).
- Maintain DR procedures for custody systems and key backups (Art. 28) with tested RTO/RPO.
- Design and run resilience scenarios: key loss, wallet malfunction, chain instability.
Cross‑functional impact
- Partner with Product, Platform, Data, and Compliance to land controls that scale.
- Turn regulatory expectations into clear, testable engineering outcomes.
- Communicate risk and trade‑offs crisply to technical and non‑technical stakeholders.
About you
- Hands‑on experience in crypto custody, blockchain operations, or digital asset security.
- Deep understanding of custody risks: key compromise, misuse of signing authority, replay and chain instability.
- Practical knowledge of SSO, IAM/RBAC, MFA enforcement, and SoD in high‑sensitivity environments.
- Familiar with ICT governance and risk management under DORA (Art. 5-9) and operational resilience and incident obligations (Art. 17-20, 28-30).
- Strong documentation discipline and an evidence‑first mindset.
Nice to have
- Experience in a regulated financial or digital asset institution.
- Exposure to institutional custody platforms and enterprise KMS/HSMs.
- Audit readiness and control testing background, e.g., SOC 2 or ISO 27001.
- Relevant security or blockchain certifications or equivalent demonstrated expertise.
How you work
- Systems thinker with a builder's bias‑able to ship secure defaults and iterate.
- Clear communicator who can translate regulation into engineering patterns.
- High integrity and reliability in sensitive custody domains.
What you’ll work with
- Multisig wallets, HSMs, hardware wallets, and offline signing setups.
- Secure key ceremonies, tamper‑evident backup, and recovery playbooks.
- Monitoring and analytics across wallet activity, access, and infra posture.
- Change management, evidence collection, and control automation.
What this role offers
- Direct impact on DORA‑aligned custody controls and operational resilience.
- A front‑row seat at the intersection of security engineering and governance.
- Influence over security architecture and custody operating models.
- Growth paths into governance, architecture, or custody security leadership.
Benefits you'll enjoy
- A vibrant, inclusive work culture.
- Annual leave to relax and recharge, plus public holidays.
- Health insurance budget.
- Be part of a fast‑growing global team.
- Flexible remote work options.
- Home office equipment budget.
- Your own Corporate Reap Card-no more out‑of‑pocket spending.
About Reap
Reap is a leading global payment technology provider that enables financial connectivity and access…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×