06 Aug
|
Anlage Infotech
|
Pune
06 Aug
Anlage Infotech
Pune
We are seeking an experienced Security Architect to define and implement Hardware Security Module (HSM) and blockchain security controls and policies across our digital assets / tokenisation platforms. This role will lead security architecture, policy definition, threat modelling, and control assurance for both permissioned and permissionless blockchain models, including key management, key ceremonies, and operational security governance.
HSM Architecture, Set-up & Control Design
Own the end-to-end HSM security architecture: tenancy model, network placement, access patterns, and hardening requirements.
Define and govern key management controls (generation, storage, usage, rotation, backup, recovery) and secure key ceremony procedures using HSMs.
Specify separation-of-duties and operational safeguards (e.g., splitting physical access, remote access, and credential/PIN ownership across non-overlapping teams; logging of access requests; system hardening).
Establish mutual authentication expectations between services and HSM-backed components, and define audit evidence requirements for HSM operations.
Blockchain Security Policies & Standards
Define / update blockchain security policies and standards that cover both permissioned and permissionless models
Drive security architecture requirements for wallet/account management, smart contract lifecycle, node connectivity, and blockchain intelligence/observability components
Threat Modelling, Risk Assessment & Assurance
Lead targeted threat modelling and risk assessments for blockchain set-ups and ensure required controls are implemented against identified threat vectors.
Partner with stakeholders to plan and evidence penetration testing, vulnerability remediation, and risk closure activities.
Delivery Governance & Acceptance Criteria
Establish measurable security acceptance criteria for HSM-related deliveries (e.g.,
operational testing such as secure signing/verification, seed management, recovery, error handling, performance/scalability, and secure coding/cryptography validation).
Core/Must have skills
7+ years in security architecture / cyber security engineering, with significant depth in cryptography and key management
Hands-on experience with HSM technologies and enterprise key management patterns; familiarity with key management tooling such as Vault is desirable.
Experience designing/operating key ceremonies, including strong governance, physical/security controls, and auditable processes.
Knowledge of security standards and frameworks relevant to cryptography and HSM usage (examples referenced internally include PCI and NIST-aligned approaches; and FIPS requirements are referenced for HSMs).
Proven ability to lead threat modelling, security risk assessments, and architecture reviews end-to-end.
Strong communication and stakeholder management across engineering, platform, and risk/compliance teams
Experience securing blockchain platforms and smart-contract systems
Handson smart contract security credentials, audits, or platform certifications covering EVMbased chains (e.g., Ethereum), permissioned DLTs, or Web3 protocols
CISSP Certified Information Systems Security Professional ((ISC))
or
CISM – Certified Information Security Manager (ISACA)
(At least one senior, globally recognised cybersecurity certification is strongly preferred for this role, reflecting enterprisescale security ownership and risk accountability.)
Certified Blockchain Security Qualified (CBSP) or equivalent recognised blockchain security certification
or
Certificate in Blockchain Security / Smart Contract Security from a recognised industry or standards body
Good to have skills
Prior experience in regulated financial services environments
Knowledge of ZKP concepts
📌 Security Engineer (Hardware security engineer) (Pune)
🏢 Anlage Infotech
📍 Pune