Summary
Dragonfly is a crypto-native venture capital and research firm connecting candidates with security engineering opportunities across its portfolio companies. The Founding Security Engineer role involves building security infrastructure from the ground up, securing cloud, network, application, and crypto-specific systems, and partnering with engineering teams on risk management, compliance, monitoring, and incident response.
Responsibilities
- Designing and operating security infrastructure across cloud, network, and production environments
- Building and managing PKI, certificates, authentication, and key management systems
- Designing secure network architecture, segmentation, private connectivity, and zero-trust systems
- Owning IAM, secrets management, cloud KMS, HSMs, and access controls
- Implementing secure API infrastructure, request signing, replay protection, and audit logging
- Building security monitoring, anomaly detection, and incident response processes
- Partnering with Engineering and Infrastructure teams to identify and address security risks
- Managing penetration testing, vulnerability assessments, and remediation
- Supporting security audits and compliance programs such as SOC 2 and ISO 27001
- Building security processes and infrastructure from the ground up in early-stage environments
- Collaborating on smart contract, blockchain, wallet, custody, or other crypto-specific security systems
Skills
- Strong experience building or operating production security systems
- Deep understanding of **network, infrastructure, cloud, or application security**
- Experience with areas such as **PKI, IAM, secrets management, HSMs, KMS, network segmentation, or zero-trust architecture**
- Comfort owning security projects end-to-end and working directly with engineering teams
- Ability to operate in fast-moving environments where security infrastructure is still being built
- Strong attention to detail and understanding of how security decisions affect production systems
- Experience responding to incidents, managing audits, or working with external security partners
- Ability to work across technical and non-technical teams
- Experience at a **crypto, fintech, payments, trading, custody, or financial infrastructure** company
- Experience working with regulated financial institutions or institutional counterparties
- Familiarity with **smart contract or blockchain security**
- Experience with cryptographic signing, attestation, or multi-party signing systems
- Experience with **SOC 2, ISO 27001, penetration testing, or security audits**
- Previous experience as an early or founding security engineer
Qualifications
Must Haves
- Strong experience building or operating production security systems
- Deep understanding of **network, infrastructure, cloud, or application security**
- Experience with areas such as **PKI, IAM, secrets management, HSMs, KMS, network segmentation, or zero-trust architecture**
- Comfort owning security projects end-to-end and working directly with engineering teams
- Ability to operate in fast-moving environments where security infrastructure is still being built
- Strong attention to detail and understanding of how security decisions affect production systems
- Experience responding to incidents, managing audits, or working with external security partners
- Ability to work across technical and non-technical teams
Nice to Haves
- Experience at a **crypto, fintech, payments, trading, custody, or financial infrastructure** company
- Experience working with regulated financial institutions or institutional counterparties
- Familiarity with **smart contract or blockchain security**
- Experience with cryptographic signing, attestation, or multi-party signing systems
- Experience with **SOC 2, ISO 27001, penetration testing, or security audits**
- Previous experience as an early or founding security engineer
Benefits
- Remote and hybrid roles are available worldwide