07 Aug
|
Cerebra
|
Hyderabad
Job Title Blockchain Security Architect
Role Summary & Role Description:
We are seeking an experienced Security Architect to define and implement Hardware Security Module (HSM) and blockchain security controls and policies across our digital assets / tokenisation platforms. This role will lead security architecture, policy definition, threat modelling, and control assurance for both permissioned and permissionless blockchain models, including key management, key ceremonies, and operational security governance.
HSM Architecture, Set-up & Control Design
Own the end-to-end HSM security architecture: tenancy model, network placement, access patterns, and hardening requirements.
Define and govern key management controls (generation, storage, usage, rotation, backup, recovery) and secure key ceremony procedures using HSMs.
Specify separation-of-duties and operational safeguards (e.g., splitting physical access, remote access, and credential/PIN ownership across non-overlapping teams; logging of access requests; system hardening).
Establish mutual authentication expectations between services and HSM-backed components, and define audit evidence requirements for HSM operations.
Blockchain Security Policies & Standards
Define / update blockchain security policies and standards that cover both permissioned and permissionless models
Drive security architecture requirements for wallet/account management, smart contract lifecycle, node connectivity, and blockchain intelligence/observability components
Threat Modelling, Risk Assessment & Assurance
Lead targeted threat modelling and risk assessments for blockchain set-ups and ensure required controls are implemented against identified threat vectors.
Partner with stakeholders to plan and evidence penetration testing, vulnerability remediation, and risk closure activities.
Delivery Governance & Acceptance Criteria
Establish measurable security acceptance criteria for HSM-related deliveries (e.g., operational testing such as secure signing/verification, seed management, recovery, error handling, performance/scalability, and secure coding/cryptography validation).
Core/Must have skills 10+ years in security architecture / cyber security engineering, with significant depth in cryptography and key management
Hands-on experience with HSM technologies and enterprise key management patterns; familiarity with key management tooling such as Vault is desirable.
Experience designing/operating key ceremonies, including strong governance, physical/security controls, and auditable processes.
Knowledge of security standards and frameworks relevant to cryptography and HSM usage (examples referenced internally include PCI and NIST-aligned approaches; and FIPS requirements are referenced for HSMs).
Proven ability to lead threat modelling, security risk assessments, and architecture reviews end-to-end.
Strong communication and stakeholder management across engineering, platform, and risk/compliance teams
Experience securing blockchain platforms and smart-contract systems
Hands on smart contract security credentials, audits, or platform certifications covering EVM based chains (e.g., Ethereum), permissioned DLTs, or Web3 protocols
CISSP Certified Information Systems Security Professional ((ISC))
or
CISM – Certified Information Security Manager (ISACA)
(At least one senior, globally recognised cybersecurity certification is strongly preferred for this role, reflecting enterprise scale security ownership and risk accountability.)
Certified Blockchain Security Skilled (CBSP) or equivalent recognised blockchain security certification
or
Certificate in Blockchain Security / Smart Contract Security from a recognised industry or standards body
Good to have skills Prior experience in regulated financial services environments
Knowledge of ZKP concepts
Keywords (If any) Security Architecture, Blockchain Security, HSM
📌 Blockchain Security Architect (Hyderabad)
🏢 Cerebra
📍 Hyderabad