Turnkey

Secure, flexible, and scalable wallet infrastructure

Senior Security Engineer, Corporate Security

Security EngineerSecurity EngineerFull TimeRemoteTeam 11-50Since 2022H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

5 days ago

Salary

$175K - $275K / year

MDMEDRXDRIdentity AND Access ManagementOktaAzure ADSAMLOauthOIDCSCIMZero Trust ArchitectureAWSGCPMAC OS SecurityEndpoint HardeningVulnerability RemediationIncident ResponseAutomationSecurity Policies

Job Description

About Us

Turnkey is developer-first infrastructure for private key management, making it simple to create wallets, sign transactions, and automate on-chain actions through one elegant API, without ever exposing sensitive key material. Founded by the team who scaled Coinbase Custody from zero to a $100M+ ARR business and helped protect over $100B in crypto assets, Turnkey is tackling crypto security at its foundational level. Our mission is to make strong cryptography the default across the open internet the same way AWS made scalable computing the default for software.

Our team is low-ego, high-agency, and high-autonomy, with a significant amount of combined experience in cryptography, security, and low-level systems. We're building the trustless, programmable infrastructure that will power the next wave of mass-market crypto applications and we're looking for people who want to shape what that future looks like.

Role Overview

We are hiring a Senior Corporate Security Engineer to own and scale the security of Turnkey's corporate infrastructure. This is a foundational role - you'll be the first dedicated corporate security hire, working diectly with the security lead to build enterprise security capabilities from the ground up.

In this role, you’ll protect Turnkey’s people, endpoints, SaaS, identity systems, and internal
infrastructure, securing our distributed workforce while enabling the team to move quickly without compromising safety. Sitting at the intersection of security engineering, IT operations, and risk management, you’ll design and build security controls that are both robust and user-friendly, ensuring the company remains secure as it scales

What You’ll Do

  • Build & Secure Corporate Infrastructure
    • Design, implement, and manage security for endpoints and distributed systems; deploy and operate our security stack (MDM, EDR/XDR, ZTNA, SSO); enforce zero-trust principles, least-privilege access, and hardening standards
  • Drive Security Initiatives & Risk Reduction
    • Lead initiatives around endpoint hardening, access controls, and vendor risk; conduct security design reviews, risk assessments, and vulnerability remediation; develop and enforce security policies and best practices.
  • Detection, Response & Automation
    • Respond to security incidents with urgency and technical depth; collaborate on detection rules, alerts, and monitoring; automate workflows and create runbooks and playbooks to scale security operations efficiently.
  • Foster Security Culture & Education
    • Evangelize security best practices, build awareness programs, and partner with teams to embed “secure by default” principles into workflows; serve as a trusted security advisor across the organization.

What We're Looking For

  • 5+ years of experience in corporate and/or enterprise security, IT security, or endpoint security engineering
  • Hands-on experience with:
    • MDM Platforms (JAMF, Kandji, Intune, or similar)
    • EDR/XDR solutions (Cloudstrike, SentinelOne, Microsoft Defender, etc.)
    • Identity and Access Management (Okta, Azure AD/Entra ID, etc.)
    • Authentication Protocols (SAML, OAuth, OIDC, SCIM, etc.)
    • Zero-trust principles (device trust, conditional access, least-privilege models)
  • Cloud security experience (AWS, GCP)
  • macOS security expertise (architecture, hardening, and fleet management)
  • Security-first mindset with practical knowledge of defense-in-depth and risk-based security

Style Points

  • Crypto/web3 or FinTech experience
  • Detection/response experience: SIEM, log analysis, threat hunting, or SOC operations
  • Knowledge of modern threat landscape: Adversary TTPs, phishing, insider threats, etc.
  • Security compliance experience: SOC 2, ISO 27001, or similar frameworks

What We Offer

  • Full benefits, including medical, dental, vision, life, disability, HSA/FSA, 401(k) - detailed benefits overview available as we get further in the process
  • Paid parental leave
  • Unlimited PTO
  • $3,000/yr learning and development budget to attend industry conferences
  • Multiple team offsites per year
  • Lunch stipend

Turnkey is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, protected veteran status, or any other characteristic protected by law. We encourage individuals of all backgrounds to apply.

Compensation range
$175,000$275,000 USD

Related Categories

Related Job Pages

More Security Engineer Jobs

Offensive Security Engineer

Wraithwatch Corporation

Wraithwatch was founded by security engineers from SpaceX, Palantir, and Anduril to build the next generation of AI-powered cyber defense systems for the United States and its allies. We are deployed today to customers spanning Fortune 500, US Federal Government, commercial nuclear, aerospace, defense, maritime, and other emerging technology companies. Our core product is a cyber defense platform utilizing generative artificial intelligence agents to autonomously model a digital twin of an organization's entire IT and cybersecurity environment and analyze it for weaknesses, misconfigurations, and chains of possible attack.

Security Engineer5 days ago
Full TimeRemote

The Offensive Security Engineer will continuously harden the company and product against advanced threats by teaching the system expert attack tradecraft and evolving it to execute autonomously. This role involves daily building and shipping with the core product engineers, focusing on practical application rather than pure research.

Penetration TestingRed TeamingOffensive SecurityC2 EngineeringEDR BypassIdentity and Access ManagementDetection EngineeringCybersecurity
United States

Network Security Consultant

CC Pace Systems

CC Pace is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, genetic information, or any other protected characteristic under federal, state, or local laws. CC Pace is committed to employing only candidates who are legally authorized to work in the United States. For us to comply with the Immigration Reform and Control Act of 1986, all new employees, as a condition of employment, must complete the Employment Eligibility Verification Form I-9 and provide documentation that establishes identity and authorization to work. E-Verify will be used for employment verification as part of your onboarding process. CC Pace values integrity throughout our hiring process. As part of our standard verification procedures, candidates will be asked to provide documentation confirming employment history, education, and work authorization.

Security Engineer5 days ago
ContractRemote

We are seeking an experienced Palo Alto Network Security Consultant to lead and support critical network security efforts in our client's transition to public cloud infrastructure. This role is a key contributor to two main initiatives: Migrating Zscaler security policies to Palo...

United States
Full TimeRemoteTeam 10,001+Since 1863H1B No Sponsor

The Lead Software Engineer will implement key control automation on Microsoft Azure and Amazon AWS, involving managing discussions with Control Owners and mapping control processes. Duties include automating key controls like key recycling, ensuring VM compliance, and developing frameworks for specialized serverless environments.

AzureAWSCI/CDGitHubPHPBashMySQLMariaDBMS SQL ServerCodeQL
United States
$156K - $196K / year
Full TimeRemote

Identify vulnerabilities and potential exposure across enterprise networks, systems, and applications through continuous security assessments. Conduct technical and non-technical risk assessments of technology environments, including local systems, network infrastructure, applica...

Vulnerability AssessmentPenetration TestingRisk AssessmentIncident ResponseThreat HuntingSecurity ControlsNetwork SecurityApplication SecuritySecurity DocumentationVulnerability ManagementMalware AnalysisIOCsSecurity AutomationCybersecurity Frameworks
United States + 144 moreAll locations: United States, Canada, Brazil, Colombia, Argentina, Chile, Venezuela, Bolivarian Republic Of, Bolivia, Plurinational State Of, Ecuador, French Guiana, Guyana, Paraguay, Peru, Suriname, Uruguay, Mexico, Costa Rica, El Salvador, Guatemala, Honduras, Nicaragua, Panama, Dominican Republic, Puerto Rico, Bahamas, Guadeloupe, Haiti, Jamaica, Martinique, Montserrat, United Kingdom, Germany, France, Estonia, Portugal, Hungary, Poland, Ukraine, Romania, Bulgaria, Czech Republic, Slovakia, Belarus, Moldova, Republic Of, Sweden, Greece, Belgium, Italy, Ireland, Switzerland, Netherlands, Finland, Malta, Denmark, Lithuania, Croatia, Spain, Austria, Bosnia And Herzegovina, Iceland, Luxembourg, Macedonia, The Former Yugoslav Republic Of, Montenegro, Norway, Serbia, Slovenia, Albania, Cyprus, Latvia, Monaco, South Africa, Egypt, Algeria, Angola, Benin, Botswana, Burkina Faso, Burundi, Cameroon, Cape Verde, Central African Republic, Chad, Congo, Côte D'ivoire, Congo, The Democratic Republic Of The, Equatorial Guinea, Eritrea, Ethiopia, Gabon, Gambia, Ghana, Guinea, Guinea-bissau, Kenya, Lesotho, Liberia, Libyan Arab Jamahiriya, Madagascar, Malawi, Mali, Mauritania, Mauritius, Mayotte, Morocco, Mozambique, Namibia, Niger, Nigeria, Réunion, Rwanda, Senegal, Seychelles, Sierra Leone, Somalia, Sudan, Swaziland, Tanzania, United Republic Of, Togo, Tunisia, Uganda, Zambia, Zimbabwe, Georgia, Turkey, Israel, United Arab Emirates, Armenia, Azerbaijan, Bahrain, Iraq, Jordan, Kuwait, Lebanon, Oman, Qatar, Saudi Arabia, Palestinian Territory, Occupied, Yemen