About the company
Kiln is the leading enterprise-grade staking platform, enabling institutional customers to stake assets, and to whitelabel staking functionality into their offering. Our platform is API-first and enables fully automated validators, rewards, and data and commission management. With over $4+ billion crypto assets being programmatically staked, Kiln has a particularly strong track record on Ethereum as we run over 4% of the network; this includes 30,000+ validators with 0 slashing events. The team is made up of over 52 ecosystem enthusiasts formerly at Google, Circle, Ledger, Chainalysis, and other leading technology and cryptocurrency companies. Join Kiln and help us make the web more secure, stable, decentralized, and fair!
Job Summary
Responsibilities
šProgram Leadership & Governance šDesign and run a scalable security program aligned with Kilnās growth, web3 operations, and evolving regulations. šDevelop and maintain the security framework (policies, standards, and processes). šDefine and track KPIs/OKRs; present security posture to leadership. šLead risk management activities, including enterprise, vendor, and emerging threat assessments. šMaintain the risk register and oversee audit readiness (SOC 2, ISO 27001). šVendor & Third-Party Risk šBuild and manage the vendor security program, including due diligence, monitoring, and contractual controls. šOversee third-party incident coordination and mitigation. šSecurity Awareness & Incident Management šPromote a security-first culture through training and awareness programs. šManage incident response planning and execution; lead post-incident reviews to improve resilience. šRegulatory Compliance šEstablish compliance monitoring programs to ensure ongoing adherence to applicable laws, regulations, and industry standards. šPartner with legal and compliance teams to ensure continuous adherence to standards.
Profile
Required šBachelorās or Masterās in Computer Science or Information Security. š8+ years in information security, with strong GRC experience in regulated or high-growth environments. šProven record of building and scaling security programs. šKnowledge of ISO 27001, SOC 2, GDPR, and risk management frameworks. šExperience with third-party risk, cloud/infrastructure security, and compliance metrics.
If youāre passionate about blockchain and decentralized technologies, explore more opportunities in web3 and cryptocurrency careers.

.png?1750237187)



