Head of Security Engineering (DevSecOps & CISO)
Core
Lead the inaugural security engineering program for a prediction market exchange, building DevSecOps capabilities from the ground up to protect distributed, real-time trading systems.
Role type
Head of Security Engineering (DevSecOps & CISO)
Builds
Security engineering capabilities, regulatory compliance frameworks, and incident response systems for a high-volume trading platform.
Domain
Financial services / Prediction markets / Cloud-native infrastructure
Required skills
Security engineering, DevSecOps, regulatory compliance (CFTC), application security (OWASP, NIST), CI/CD tooling, cloud security (AWS/Azure/GCP), Kubernetes, container security, IaC, Python/Bash/Go
Preferred skills
Security automation at scale, Agile/Scrum, regulator engagement, event contracts/prediction markets experience
Technologies
GitHub Actions, GitLab CI, Jenkins, Azure DevOps, CircleCI, Snyk, Aqua, Trivy, Checkov, Twistlock, Clair, AWS, Azure, GCP, Kubernetes
Responsibilities
Establish and evolve security capabilities within Infrastructure and Engineering teams; define risk-based security strategy across cloud, applications, and trading systems; lead security incident investigation and remediation; integrate security into SDLC (SAST, DAST, SCA, scanning); implement controls for identity, secrets, and network access; establish security monitoring and detection; develop security policies and controls; maintain documentation for regulatory audits; partner with engineers to foster a security ownership culture.
Seniority
Executive (Head of Function), hands-on IC