About the company
Nansen is a blockchain analytics platform that enriches on-chain data with millions of wallets labels. Crypto investors use Nansen to discover opportunities, perform due diligence and defend their portfolios with our real-time dashboards and alerts.
Job Summary
Responsibilities
šInfrastructure and network security šTake ownership of and actively implement baseline cloud, container, and application security standards, ensuring they are integrated into our stack, including regular use of vulnerability scanning tools. šHarden bare-metal servers and deploy security tooling (e.g., AV/EDR, IDS/IPS, DLP, Logging & Monitoring), taking a hands-on role in the setup and maintenance. šCollaborate with external providers to plan and oversee penetration tests, ensuring identified vulnerabilities are prioritized and addressed. Blockchain security šActively improve key management processes, focusing on protecting high-risk blockchain keys with Hardware Security Modules (HSMs) or equivalent solutions. šProactively monitor and assess blockchain-exposed surfaces, personally reviewing internal and external endpoints for exploitable vulnerabilities. šCollaborate with external providers to plan and oversee security audits and reviews of smart contracts and blockchain components, ensuring actionable improvements are identified and addressed. šCompliance šCollaborate with teams to maintain clear, up-to-date security documentation, including reference architectures and operational procedures. šPersonally implement security architecture, methods, and controls required to meet compliance and audit requirements, ensuring execution is prioritized. šIncident response šLead the investigation, containment, and resolution of security incidents, taking a proactive, hands-on approach. šConduct detailed postmortems to identify root causes and establish preventive measures.
##Requirements šDeep familiarity with key management best practices and encryption fundamentals. šStrong understanding of defensive security tools and methodologies, including their practical application in dynamic environments. šProven experience implementing and maintaining security systems, such as SIEM, endpoint protection, network detection, vulnerability scanning, and cloud security tooling. šUnderstanding of blockchain security, including securing blockchain systems, assessing smart contracts, and implementing robust key management processes. šFamiliarity with vulnerability scanning tools, penetration testing and code audit processes. šExcellent communication and technical documentation skills. šFamiliarity with compliance frameworks and certification processes is a plus. šHave an AI-first mindset. At Nansen, AI is not just a tool - it's a mindset. Ideal candidates are those who enthusiastically embrace AI tools and techniques to streamline processes and elevate outcomes