Digital Assets Security Lead
Listed on 2026-03-02
-
IT/Tech
Cybersecurity, Blockchain / Web3, Data Security, Security Manager
Marex Group plc (NASDAQ: MRX) is a diversified global financial services platform providing essential liquidity, market access and infrastructure services to clients across energy, commodities and financial markets. The group provides comprehensive breadth and depth of coverage across four core services: clearing, agency and execution, market making, and hedging and investment solutions. It has a leading franchise in many major metals, energy and agricultural products, with access to 60 exchanges.
The group provides access to the world’s major commodity markets, covering a broad range of clients that include some of the largest commodity producers, consumers and traders, banks, hedge funds and asset managers. With more than 40 offices worldwide, the group has over 2,300 employees across Europe, Asia and the Americas.
Marex is expanding its digital assets capabilities across custody, stablecoin products, OTC liquidity, settlement infrastructure, and global cross-margining. We are seeking a Digital Assets Security Lead, to design, implement, and oversee security controls that safeguard digital asset operations, infrastructure, and client assets across the lifecycle. This role will ensure Marex meets the highest standards of cyber resilience, operational integrity, and regulatory compliance as we scale our digital asset product suite.
The Digital Assets Security Lead will be responsible for managing digital-asset–specific cybersecurity risks, including private key security, custody integrations, blockchain transaction integrity, smart-contract risks, cross-platform account security, and regulatory obligations under FCA 5
MLD and future UAE/US/APAC licensing frameworks.
1. Custody & Wallet Security
- Design and oversee security architecture for integrated wallet/custody solutions, including MPC-based providers (e.g., Fireblocks, Utila).
- Evaluate custody vendor security (MPC implementations, HSM usage, governance workflows, key sharding, transaction approval policies).
- Implement and maintain private key governance, including transaction signing controls, segregation of duties, and auditability.
- Conduct ongoing due diligence and penetration testing on custody provider integrations.
- Identify, assess, and manage risks associated with stable coins, tokenized assets (RWAs), and cross-margining products.
- Build monitoring and anomaly-detection capabilities for on-chain and off-chain activities.
- Develop internal control frameworks covering price manipulation risk, oracle risk, fraud, loss, and insider handling vulnerabilities.
- Design and enforce secure operational processes for spot, NDF, NDO, repo, lending/borrowing, and structured note flows.
- Assess and secure the “true spot clearing” model, including settlement instructions, blockchain transaction validation, and counter party trust boundaries.
- Work with Product, Risk, and Engineering teams to design secure cross-currency margining, account management, and settlement workflows.
- Implement protections against settlement-layer attacks (double spend, replay, address poisoning, routing attacks).
- Secure the NEON Crypto platform integration, ensuring safe APIs, authentication, encryption, and hardened microservices.
- Establish secure SDLC practices for digital-asset components, including smart contract interfaces (if applicable).
- Oversee cloud security (AWS/Azure/GCP) for digital-asset workloads, including container runtime, secrets management, and network segmentation.
- Lead technical due diligence and security assessments for new digital-asset vendors, liquidity providers, custodians, and blockchain infrastructure partners.
- Ensure third-party integrations align with FCA 5
MLD requirements and global regulatory expectations.
- Ensure security operations and controls meet FCA 5
MLD AML/CTF expectations for digital assets. - Prepare for regulatory engagements in UAE, US, and APAC, including cybersecurity readiness assessments.
- Maintain documentation required for audits, external reviews, SOC/ISO alignment,…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: