
Senior Security Engineer
8 hours ago
Overview
GRVT (pronounced “gravity”) is the world’s first licensed onchain exchange, where traditional banking meets decentralized innovation on one regulated, compliant, and trustless financial marketplace. A blockchain-based platform that is democratizing how wealth is created and shared, GRVT allows everyday people to trade, invest, and grow their wealth by providing direct access to top industry traders and investors.
Key Stats
- Team size: 50+ and growing
- Strategic round funding: $5 million (single equity round led by Further Ventures)
- Seed round funding: $9.5 million led by multiple investors including QCP, Delphi Digital, Selini, Matter Labs, Pulsar, Ampersan, CMS and more
- Users: 40,000+ KYCed users, unprecedented for DEXs
- 50+ institutional clients onboarded
- $1.2 billion monthly trading volume and growing, since launch
At GRVT, security is a cornerstone of our platform and products. This role is a blend of engineering and security. You will be part of a dynamic team, identifying risks throughout the organisational landscape and working with each engineering vertical to manage novel risks encountered in a hybrid exchange like GRVT. You will have the opportunity to shape, build, and innovate security solutions within a rapidly evolving industry, gaining exposure to both CeFi and DeFi.
Responsibilities- You will join the GRVT Site Reliability Engineering (SRE) team, operating across three tightly integrated verticals:
- DevSecOps (cloud infrastructure, incident response, platform stability)
- Test Engineering (end-to-end testing, regression pipelines, feature assurance)
- Security Engineering (penetration testing, security advisory, security governance)
The organization has the mandate of ensuring the end-to-end reliability of the GRVT platform, protecting our product's reliability, correctness, and security. This role is positioned within the Security vertical but works cross-functionally with the entire organization.
- Lead technical assurance activities across projects, including penetration testing, purple teaming, threat modeling, and architecture reviews—ensuring both new and existing systems maintain a high security baseline.
- Serve as the primary security expert within the SRE team, collaborating with Ops and QA Engineers and Wider Teams to design practical, high-impact controls that enhance platform security without compromising delivery velocity.
- Build automation and internal tooling for security visibility, posture monitoring, and enforcement (e.g., secret scanning, anomaly detection, automated test harnesses).
- Monitor, triage, and lead response efforts for security incidents, coordinating across SRE and wider engineering teams.
- Establish and maintain security policies and controls aligned with engineering best practices and regulatory obligations.
- Educate and empower developers and engineers with actionable guidance, secure coding practices, and feedback cycles—reducing vulnerabilities during development.
- Strong Information Security (InfoSec) background (5 years+), with proven experience in application security across both traditional web stacks and blockchain-based systems.
- Expert knowledge of web application security, including deep familiarity with the OWASP Top 10, to defend GRVT’s off-chain services against common web-based threats.
- Python proficiency — experience building security engineering tools such as automated API security testers, custom static analyzers, or CI/CD-integrated scanners for secrets, misconfigurations, and insecure patterns.
- Proficiency in security testing tools, such as SAST (e.g., SonarQube, Checkmarx, GoSec) and DAST (e.g., OWASP ZAP, Burp Suite).
- Demonstrated ability to quickly understand and analyze unfamiliar codebases, enabling effective secure code review across diverse systems—including web services, infrastructure components, and smart contracts.
- Experience conducting threat modelling exercises or strong grasp of threat modeling methodologies.
- Smart contract auditing experience, with familiarity in identifying common vulnerabilities in decentralized applications and blockchain systems.
- Bug bounty programs experience, either as a seasoned researcher or by managing an organization’s program.
- Experience with cloud infrastructure (e.g., AWS, GCP), understanding of container security and DevSecOps principles, with practical experience integrating security into CI/CD pipelines.
- Familiarity with IT security frameworks such as SOC 2 and ISO 27001, and how to align technical controls to compliance objectives.
- Holds or actively pursues professional certifications such as OSCP, OSWE, CISSP, CDP, or CTMP.
-
Integration Engineer – Security Services
2 days ago
Singapur, Singapore HENDERSON SECURITY SERVICES PTE. LTD. Full timeResponsibilities Oversee the secure integration of components such as base stations, controllers, and related network elements. Ensure that the integration of both hardware and software follows industry-leading security best practices to prevent unauthorized access and data breaches. Implement strong security protocols in the integration of new features,...
-
Senior Security Engineer
5 days ago
Singapur, Singapore Randstad Singapore Full timeSenior Security Engineer (Endpoint) - 120k Join to apply for the Senior Security Engineer (Endpoint) - 120k role at Randstad Singapore Senior Security Engineer (Endpoint) - 120k 1 day ago Be among the first 25 applicants Join to apply for the Senior Security Engineer (Endpoint) - 120k role at Randstad Singapore Serve as a primary technical resource for...
-
Senior Security Project Engineer
5 days ago
Singapur, Singapore Logicalis Asia Pacific Full timeJoin to apply for the Senior Security Project Engineer role at Logicalis Asia Pacific 2 weeks ago Be among the first 25 applicants Join to apply for the Senior Security Project Engineer role at Logicalis Asia Pacific Why choose Logicalis?As Architects of Change, Logicalis' focus is to design, support and execute clients' digital transformation by uniting...
-
Security Engineer
4 days ago
Singapur, Singapore FinTop Consulting Full timeOverview Job Title: Security Engineer Location: Singapore, Hybrid (2 Days in office) Our client is looking for a Security Engineer who will work in a rapidly growing global team. You will be working with various clients and helping to automate their security tasks. Responsibilities Be part of a team focused on detecting and automating the incident handling...
-
Security Engineer
4 days ago
Singapur, Singapore DXC Technology Full timeJoin to apply for the Security Engineer role at DXC Technology 1 day ago Be among the first 25 applicants Join to apply for the Security Engineer role at DXC Technology Get AI-powered advice on this job and more exclusive features. Monitor and manage security infrastructure and tools in scope (e.g., AV, DLP, EDR, DAM, PKI, PAM, HSM, Vulnerability...
-
Network Security Engineer
4 days ago
Singapur, Singapore HENDERSON SECURITY SERVICES PTE. LTD. Full timeJob Summary: We are seeking a highly skilled Network & Cybersecurity Engineer with experience in securing enterprise and government infrastructures, including IM8-aligned environments. The ideal candidate will have hands-on expertise in managing firewalls, performing vulnerability assessments, and implementing secure hybrid (on-prem/cloud) network solutions....
-
Network Security Engineer
4 days ago
Singapur, Singapore Comstor Europe Full timeOverview Join to apply for the Network Security Engineer role at Comstor Europe Vacancy No VN13902 • Job Title: Network Security Engineer • Office Location: SG-Singapore • Alternative Office Location: About the Role Your Key Responsibilities Qualifications / Requirements About Us Westcon-Comstor (WestconGroup Inc.) is a global technology distributor...
-
Engineer, Network
4 days ago
Singapur, Singapore Avensys Consulting Full timeAvensys is a reputed global IT professional services company headquartered in Singapore. Our service spectrum includes enterprise solution consulting, business intelligence, business process automation and managed services. Given our decade of success we have evolved to become one of the top trusted providers in Singapore and service a client base across...
-
Senior Infrastructure Security Engineer
4 days ago
Singapur, Singapore Tencent Full timeOverview Tencent is a leading global internet and technology company dedicated to developing innovative products and services that improve the quality of life for people around the world. Founded in 1998 with its headquarters in Shenzhen, China. Our two guiding principles are to use technology for good and to provide value to our users. Our growth strategy...
-
Data Centre Engineer
5 days ago
Singapur, Singapore Internal Security Department Full timeJoin to apply for the Data Centre Engineer role at Internal Security Department 2 weeks ago Be among the first 25 applicants Join to apply for the Data Centre Engineer role at Internal Security Department What The Role Is ISD confronts and addresses threats to Singapore’s internal security and stability. For over 70 years, ISD and its predecessor...