Senior/Staff Security Engineer - Corporate Security jobs in United States
cer-icon
Apply on Employer Site
company-logo

Phantom · 3 days ago

Senior/Staff Security Engineer - Corporate Security

Phantom is revolutionizing the way millions of people interact with the crypto ecosystem through their self-custodial wallet. They are seeking a Senior/Staff Security Engineer to own and scale the security of Phantom's corporate infrastructure, building enterprise security capabilities and protecting corporate systems while enabling a fast-paced work environment.

BitcoinCryptocurrencyDecentralized Finance (DeFi)FinanceFinancial ServicesFinTechNon-Fungible Token (NFT)
check
Growth Opportunities
check
H1B Sponsor Likelynote

Responsibilities

Design, implement, and manage security for all corporate endpoints across our fully distributed workforce
Deploy and operate our security stack including MD, EDR/XDR, ZTNA and SSO
Implement zero-trust architecture principles including device trust, conditional access, and least-privilege controls
Enforce security baselines, hardening standards, and compliance policies across all corporate systems
Build and maintain secure authentication systems and identity management workflows
Lead security initiatives for endpoint hardening, access controls, and corporate infrastructure protection
Conduct security design reviews and risk assessments for new services, tools, and integrations
Perform vulnerability assessments and drive remediation efforts across corporate systems
Partner with IT and cross-functional teams to balance security requirements with business velocity
Develop and enforce IT security policies, standards, and procedures aligned with industry best practices
Respond to security incidents and events impacting corporate systems with urgency and technical depth
Collaborate with the Detection & Response team to build detection rules, alerts, and monitoring for corporate infrastructure threats
Automate security workflows using Python, Go, or similar languages to reduce manual toil
Create runbooks and playbooks for common security scenarios
Leverage security tooling and automation to scale security operations efficiently
Evangelize security best practices through education, training, and internal communications
Build security awareness programs that empower employees to make secure decisions
Partner with engineering teams to embed 'secure by default' principles into development workflows
Serve as a trusted security advisor across the organization

Qualification

Corporate security experienceMDM platformsEDR/XDR solutionsIdentity & Access ManagementZero Trust architectureScripting/automation skillsCloud security knowledgeMacOS security expertiseSecurity-first mindsetCollaboration skillsCommunication

Required

5+ years of experience in corporate/enterprise security, IT security, or endpoint security engineering
Deep hands-on expertise with: MDM platforms: JAMF, Kandji, Intune, or similar for macOS/iOS fleet management
Deep hands-on expertise with: EDR/XDR solutions: CrowdStrike, SentinelOne, Microsoft Defender, or similar
Deep hands-on expertise with: Identity & Access Management: Okta, Azure AD/Entra ID, or similar SSO/IAM platforms
Deep hands-on expertise with: Authentication protocols: SAML, OAuth, OIDC, SCIM
Deep hands-on expertise with: Zero Trust architecture: Device trust, conditional access, identity verification, and least-privilege access models
Strong scripting/automation skills: Python, Go, Bash for security automation and tooling
Cloud security knowledge: Hands-on experience with AWS, GCP, or Azure
macOS security expertise: Deep understanding of macOS security architecture, hardening, and management
Proven ability to independently manage projects, navigate ambiguity, and drive initiatives to completion
Collaboration skills: Ability to work cross-functionally, influence without authority, and translate security requirements for non-technical stakeholders
Security-first mindset with practical knowledge of zero-trust principles, defense-in-depth, and risk-based security

Preferred

Crypto/Web3 or fintech experience: Prior work at crypto exchanges, wallets, DeFi protocols, or fintech startups
Detection engineering background: Experience with SIEM, log analysis, threat hunting, or SOC operations
Modern threat landscape knowledge: Understanding of adversary tactics, techniques, and procedures (TTPs) including social engineering, phishing, and insider threats
Security compliance experience: Familiarity with SOC 2, ISO 27001, or similar frameworks
BYOD security models: Experience securing contractor and vendor access in distributed environments

Benefits

Competitive salary and equity
Comprehensive insurance (medical/dental/vision) — 100% covered
Stipend for your ideal remote set-up
Flexible hours and a supportive remote environment
Unlimited vacation: Take time when you need it (and we really mean it!)
401(k) retirement plan
Monthly wellness benefit
Weekly meal benefit
Global off-sites

Company

Phantom

twittertwittertwitter
company-logo
Phantom is a crypto wallet that facilitates the buying, trading, and storing of cryptocurrencies, including NFTs and tokens.

H1B Sponsorship

Phantom has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (4)
2024 (3)
2023 (4)
2022 (3)

Funding

Current Stage
Growth Stage
Total Funding
$268M
Key Investors
ParadigmAndreessen Horowitz
2025-01-16Series C· $150M
2022-01-31Series B· $109M
2021-07-14Series A· $9M

Leadership Team

leader-logo
Chris Kalani
CPO & Co-Founder
linkedin
leader-logo
Francesco Agosti
CTO & Co-founder
linkedin
Company data provided by crunchbase