<?xml version="1.0" encoding="UTF-8"?>
<source>
  <jobs>
    <job>
      <externalid>68e291fb-412</externalid>
      <Title>Senior Security Engineer</Title>
      <Description><![CDATA[<p>Talent Wanted. For hazardous journey. Small wages, bitter cold, long months of complete darkness, constant danger, safe return doubtful. Honour and recognition in case of success.</p>
<p>Fridtjof Nansen crossed the Arctic, going places no human had ever been. Together with our users, we&#39;re doing the same onchain , and someone needs to make sure we don&#39;t get killed on the way there.</p>
<p>We&#39;re building the single best platform for onchain investing , agentic trading, staking infrastructure, AI-powered analytics , and we&#39;re scaling fast. Fast enough that security can&#39;t be an afterthought bolted on later. It has to be built in, from the start, by someone who knows what they&#39;re doing.</p>
<p><strong>Our mission:</strong></p>
<p>Surface the signal and create winners.</p>
<p><strong>What you&#39;ll do at Nansen</strong></p>
<p>You&#39;ll be the person who makes sure we can move fast without breaking things that matter. That means embedding security into everything we build , cloud infrastructure, applications, CI/CD pipelines, AI systems, staking operations , across a generalist role that spans the full surface area.</p>
<ul>
<li>Run security assessments across systems, architectures, and code , find the vulnerabilities before someone else does</li>
<li>Advise engineering teams on secure design decisions. You&#39;re a partner, not a blocker</li>
<li>Deploy and maintain security infrastructure: SIEM, vulnerability scanning, endpoint protection, logging , the things that let us sleep at night</li>
<li>Secure our CI/CD pipelines and deployment workflows end-to-end</li>
<li>Own secrets management, key management, and access controls. No shortcuts</li>
<li>Address LLM security head-on: API key management, prompt injection prevention, and the risks that come with shipping AI-powered products at speed</li>
<li>Coordinate penetration tests and security audits with external vendors</li>
<li>Create and maintain secure coding guidelines and code review processes that engineers actually follow</li>
<li>Represent the Security Team in the incident response process</li>
<li>Drive compliance readiness , SOC 2, ISO 27001 , pragmatically, not bureaucratically</li>
</ul>
<p><strong>What we&#39;re looking for</strong></p>
<ul>
<li>You&#39;ve built and hardened production security at scale , you know the difference between a policy document and an actually secure system</li>
<li>Strong cloud security knowledge (AWS, GCP or equivalent). Container security and network security fundamentals</li>
<li>Hands-on experience implementing security tooling, not just evaluating it</li>
<li>Secrets and key management expertise , you&#39;ve managed this at a company where it actually mattered</li>
<li>You understand the security implications of AI/LLM and agent-based systems. This is new territory and we need someone thinking about it seriously</li>
<li>CI/CD pipeline security is second nature</li>
<li>Pragmatic about compliance , you can get us to SOC 2 without drowning the engineering team in process</li>
<li>You don&#39;t just use AI as a tool. You think with it. AI-first isn&#39;t a checkbox , it&#39;s how you work</li>
<li>Strong async communication skills , we&#39;re remote-first, Slack-and-docs-heavy, and EMEA hours are preferred for team overlap</li>
<li>Bonus: blockchain, smart contract, or staking infrastructure security experience. Kubernetes and Terraform security. Incident response or security operations background</li>
</ul>
<p><strong>What we offer our crew</strong></p>
<ul>
<li>Competitive salary. Meaningful equity. Real ownership in what you build</li>
<li>Fully remote with two no-meeting days a week , because deep work doesn&#39;t happen in a Google Meet</li>
<li>Annual company retreat and team off-sites in one of our offices: Singapore, Bangkok, London, and Oslo , flights and accommodation covered</li>
<li>Unlimited AI tokens , Claude, OpenAI, whatever helps you move fast</li>
<li>Your own OpenClaw for work</li>
<li>Nansen Pro account: giving you full access to the most detailed onchain data in the market</li>
<li>A team that started as data engineers and data scientists that has grown to over 80 builders. Your craft is respected here.</li>
<li>Speed, ownership, curiosity, courage. These aren&#39;t values on a wall , they&#39;re how we run.</li>
<li>A front-row seat (and a hand in building) the next chapter of finance</li>
</ul>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>remote</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>cloud security, container security, network security, security tooling, secrets management, key management, access controls, API key management, prompt injection prevention, LLM security, CI/CD pipeline security, compliance, SOC 2, ISO 27001, blockchain security, smart contract security, staking infrastructure security, Kubernetes security, Terraform security, incident response, security operations</Skills>
      <Category>Engineering</Category>
      <Industry>Technology</Industry>
      <Employername>Nansen</Employername>
      <Employerlogo>https://logos.yubhub.co/nansen.ai.png</Employerlogo>
      <Employerdescription>Nansen is a company building a platform for onchain investing, agentic trading, staking infrastructure, and AI-powered analytics.</Employerdescription>
      <Employerwebsite>https://nansen.ai/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/nansen/jobs/5811520004</Applyto>
      <Location>Remote Europe | Remote Asia</Location>
      <Country></Country>
      <Postedate>2026-04-17</Postedate>
    </job>
    <job>
      <externalid>819052bd-778</externalid>
      <Title>Member of Technical Staff, Security Operations</Title>
      <Description><![CDATA[<p>We&#39;re looking for a Member of Technical Staff, Security Operations to join our Security Engineering team. As a key member of our team, you will be responsible for developing and maintaining security automation and tooling to detect vulnerabilities through static and dynamic analysis across code and live systems. You will conduct application security assessments, penetration tests, and code reviews to identify high-risk security issues and provide secure development guidance. You will also develop and operate vulnerability management workflows, partnering with engineering teams to prioritize and remediate findings.</p>
<p>In this role, you will establish and test security guardrails for code, cloud resources, and infrastructure components throughout the Anchorage platform. You will monitor and respond to security events and configuration anomalies across the organization, leading investigation and containment efforts. You will manage the full vulnerability lifecycle from discovery through remediation, tracking progress and ensuring timely closure of findings.</p>
<p>You will lead or substantially contribute to Security Operations initiatives with minimal oversight, coordinating across team boundaries to drive projects to completion. You will break complex security problems into manageable workstreams with accurate scope and time estimates. Present options clearly and provide well-reasoned priority recommendations.</p>
<p>Deliver assurance artifacts and evidence for regulated entity requirements, supporting audit and compliance efforts. Balance speed of response with thoroughness of investigation, adapting approach based on risk and business impact.</p>
<p>You will understand and help implement the company&#39;s security strategy by participating in planning and defining Security Operations goals in alignment with Anchorage Digital&#39;s overall objectives. Stay alert to emerging threats, vulnerabilities, and industry trends that could affect organizational security posture.</p>
<p>Consider security holistically across the product ecosystem,applications, infrastructure, and third-party integrations,while fostering a security-first culture. Collaborate cross-functionally with Engineering, Infrastructure, and Compliance teams to embed security into development and operational processes.</p>
<p>Share knowledge broadly across the team through documentation, runbooks, and post-incident reviews, preventing single points of failure. Partner with engineering teams to explain security risks and remediation approaches, translating technical findings into actionable guidance.</p>
<p>Collaborate across teams to review security configurations, triage findings, and engage in technical discussions. Communicate insights and recommendations clearly to improve processes. Demonstrate empathy by understanding others&#39; context, priorities, and constraints,adapting communication style to maximize effectiveness with both technical and non-technical audiences.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>staff</Experiencelevel>
      <Workarrangement>remote</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Security Operations, AppSec experience, Security tooling and automation, Vulnerability assessment, Static and dynamic analysis, Cloud security, Incident response, Computer science fundamentals, Experience running or participating in bug bounty programs, Regulated financial services, fintech, or crypto environment, Blockchain security, smart contract auditing, or Web3 technologies, Open-source security tools, Relevant certifications</Skills>
      <Category>Engineering</Category>
      <Industry>Finance</Industry>
      <Employername>Anchorage Digital</Employername>
      <Employerlogo>https://logos.yubhub.co/anchorage.com.png</Employerlogo>
      <Employerdescription>A regulated crypto platform providing institutions with integrated financial services and infrastructure solutions.</Employerdescription>
      <Employerwebsite>https://www.anchorage.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.lever.co/anchorage/74fb5f60-d964-416e-90a0-7f89f3b07676</Applyto>
      <Location>United States</Location>
      <Country></Country>
      <Postedate>2026-04-17</Postedate>
    </job>
  </jobs>
</source>