Taurus SA · Lausanne, Vaud, Switzerland
Do you want to be part of a new entrepreneurial adventure and help build the next global FinTech, then we might just have the job for you.
Taurus is a FINMA-regulated securities firm, headquartered in Geneva, Switzerland, and providing digital asset trading and financial services to its clients. It is also a world-leading provider of digital asset infrastructure solutions to banks, corporations and private companies. Using blockchain technology, Taurus platform covers cryptocurrencies, tokenized securities, tokenized assets (such as NFTs), digital currencies, and stable coins.
We are looking for ambitious and driven individuals to support our fast global growth.
Tasks
A deeply hands-on, individual-contributor role where you'll raise the security bar of the product itself. You're the security partner engineers want in the room: someone who can open a diff, understand the attack surface, build the automation that enforces the fix, and ship it the same day. Much of that surface is cryptographic (keys, signing, HSMs, and the trust boundary around them), so that's where you'll have the most impact.
Responsibilities
Own product security for all applicable digital asset products: Taurus-PROTECT, Taurus-CAPITAL, Taurus-EXPLORER and Taurus-NETWORK. Contribute to financial services product security.
Contribute to security architecture for HSMs, confidential computing, MPC, and cryptographic systems
Perform security reviews of application code, cryptographic workflows, smart contracts, HSM integrations, and enclave-based components
Model threats of new features and review architectural designs before release
Lead and review penetration tests, reproduce findings, and validate remediation plans
Build and own the automation that enforces security guardrails — across CI/CD pipelines, software supply chains, Kubernetes environments, and deployment platforms
Pair with product engineering teams to design and ship fixes, not just file findings
Review authorization models, privilege management, identity integrations, and operational access controls
Support incident response, vulnerability management, and security investigations
Support client audits, RFPs, security workshops, and regulatory discussions
Translate regulatory and compliance requirements into practical technical controls
Monitor security news and trends; identify potential impact on products and ensure timely application of corrective actions
Requirements
Experience
Key Requirements
Application & product security:
Cryptography & key management:
Infrastructure & cloud security:
Secure hardware & confidential computing:
Client & communication skills:
A strong plus
Benefits
As the company evolves in a dynamic and innovative environment, its DNA is based on merit. As such, there will be significant growth opportunities for candidates with an open and deliver-oriented mindset. We are an equal opportunity employer.
Note
Please note: we're opening this position with a target start date of Q1 2027, so early applications are very welcome.
We will not consider applications via agencies.
taurushq[.]com
Inicia sesión para generar una carta de presentación para esta vacante.
Iniciar sesiónInicia sesión para ver cómo encaja este empleo con tu perfil.
Iniciar sesión