Senior Product Security Engineer / Architect

Swiss digital-asset infrastructure company providing regulated custody, tokenization, trading, and settlement solutions for financial institutions.

Maintainer signals as of 9/25/2026

Geneva, Switzerland
About Taurus SA

Taurus SA operates an enterprise-grade platform for custody of digital assets, tokenized-asset issuance and lifecycle management, institutional trading, and interbank collateral and settlement workflows. Founded in 2018, it is regulated by FINMA as a Swiss securities firm.

View jobs by Taurus SA

Skills

Candidate Availability

Required and preferred rules are kept separate and reflect the wording in the original posting.

About the Role

You will own product security across applicable digital asset products. You will review code, cryptographic workflows, smart contracts, HSM integrations, and architecture; model threats; lead penetration tests; and validate remediation. You will build security automation across CI/CD, supply chains, Kubernetes, and deployment platforms, while supporting incidents, audits, and regulatory discussions.

Requirements

  • Master's degree or PhD in computer science, IT security engineering, or cryptography
  • 7+ years of application security, product security, offensive security, or security engineering experience
  • Experience in security-critical or regulated environments
  • Fluent written and spoken English
  • Security code-review experience in at least two of Go, C/C++, TypeScript, and Python
  • Threat modeling, secure design reviews, and penetration testing
  • Knowledge of PKI, TLS, X.509, AES, RSA, ECDSA, EdDSA, and key management
  • Experience with HSM technologies and PKCS#11
  • Kubernetes and container security experience
  • Familiarity with cloud IAM, workload identity, secrets management, and policy-as-code
  • Experience with confidential computing or secure hardware technologies

Responsibilities

  • Own product security for applicable digital asset products
  • Contribute to security architecture for HSMs, confidential computing, MPC, and cryptographic systems
  • Perform security reviews of code, cryptographic workflows, smart contracts, HSM integrations, and enclave components
  • Model threats and review architectural designs before release
  • Lead penetration tests and validate remediation plans
  • Build security automation across CI/CD pipelines, software supply chains, Kubernetes, and deployment platforms
  • Design and ship security fixes with product engineering teams
  • Review authorization, privilege management, identity integrations, and access controls
  • Support incident response, vulnerability management, and security investigations
  • Support client audits, RFPs, security workshops, and regulatory discussions
  • Translate regulatory requirements into technical controls
  • Monitor security trends and implement corrective actions

Benefits

  • Hybrid remote work
  • Flexible working hours
  • State-of-the-art technology and IT infrastructure
  • Team events