About the company
Gemini is a regulated cryptocurrency exchange, wallet, and custodian that makes it simple and secure to buy bitcoin, ether, and other cryptocurrencies.
Job Summary
Responsibilities:
šPerform technical security reviews and assessments for cloud architectures, Kubernetes and containers, serverless, network controls, and IAM. Apply CIS Benchmarks and vendor best practices. Produce clear remediation plans and track closure. šBuild and support API-based integrations across GRC, cloud, and identity platforms (AWS, Azure, Okta, Atlassian). Use REST, GraphQL, webhooks, OAuth, and service accounts. šLead threat modeling and design reviews for infrastructure, applications, and services. Document risks and compensating controls. šDevelop continuous control monitoring and evidence pipelines. Collect, normalize, and map evidence to ISO 27001, SOC 2, PCI DSS, NIST CSF, and ISO 22301 requirements. šDrive zero trust improvements across identity, device posture, network segmentation, and service-to-service authentication. šPrepare for audits and regulatory requests using automated evidence, inventories, and dashboards. Reduce manual work through automation and self-service. šOwn and drive workstreams across security governance (e.g., entitlement reviews, access management, vendor security, cyber risk, software compliance). šAssess and lead cybersecurity projects across cloud security, container security, and infrastructure hardening. šDrive cybersecurity transformation initiatives including implementation of modern security architectures, DevSecOps practices, and zero trust frameworks. šCollaborate with DevOps and engineering teams to embed security into CI/CD pipelines, container orchestration platforms (e.g., Kubernetes), and cloud-native services. šAdvise technical and business teams on secure configurations, emerging threats, and remediation strategies.
Minimum Qualifications:
šBachelorĆ¢ĀĀs degree in computer science, information security, engineering, or related field, or equivalent experience. š5+ years in cybersecurity with hands-on security engineering in cloud, automation, or platform security. šProficiency in basic coding. Python or JavaScript and shell scripting. šAbility to write API clients, parse JSON, and orchestrate workflows in n8n or similar tools (Tines, StackStorm, Airflow, Zapier). šExperience building and operating REST or GraphQL integrations. Familiarity with OAuth, service principals, and webhooks. šWorking knowledge of AWS, GCP, and Azure. Comfortable with IAM, networking, KMS, logging and monitoring, and cloud-native security services.
If this role isnāt the perfect fit, there are plenty of exciting opportunities in blockchain technology, cryptocurrency startups, and remote crypto jobs to explore. Check them on our Jobs Board.


