via ats_greenhouse · 3 June 2026 ·2 days ago

Principal Security Architect

copperco
London
14,851 more jobs in London.
Upload your CV and see which ones actually match you.
Upload CV

<div class="content-intro"><p><span style="font-family: verdana, geneva, sans-serif;">Since being founded in 2018, Copper has been building the standard for institutional digital asset infrastructure with a focus on custody, collateral management, and prime services.</span><br><br><span style="font-family: verdana, geneva, sans-serif;">Led by Amar Kuchinad, Copper's Global CEO, the firm provides a comprehensive suite of custody, trading and settlement solutions that reduce counterparty risk and bring greater capital and operational efficiency to digital asset markets. At the heart of Copper's offering is Multi-Party Computation (MPC) technology – the gold standard in secure custody. Copper’s multi-award winning custody system is unique in that it can be connected to centralised exchanges, DeFi applications and even staking pools without the assets leaving the custody. </span><br><br><span style="font-family: verdana, geneva, sans-serif;">Built on top of this state-of-the-art custody, ClearLoop is the first solution in the market that overcomes a growing industry challenge; counterparty risk with exchanges. This solution underpins a full prime services offering, connecting global exchanges, and enabling customers to trade and settle directly from the safety of their MPC-secured wallets. By reducing settlement time for transfers to a few milliseconds (without blockchain network dependency) and offering enhanced security measures, ClearLoop is rapidly reshaping the way asset managers trade and manage capital. </span><br><br><span style="font-family: verdana, geneva, sans-serif;">In addition to industry-leading security certifications, Copper has one of the strongest insurance coverages in the industry from an A+ rated insurer, positioning the firm as the partner of choice for institutions seeking to safeguard their assets.</span></p></div><p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong>Department/Team Purpose:</strong> </span></p>
<p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Copper provides institutional digital asset custody, settlement, and collateral management services across a wide range of blockchains and integrated venues. Information Security protects the firm's platforms, client assets, and regulated entities across the group.</span></p>
<p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong>Role Purpose:</strong> </span></p>
<p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">The Principal Security Architect is the senior technical authority for security architecture at Copper. The role reports to the CISO and partners closely with Engineering. The holder sets architectural direction, reviews and approves designs for major change, and acts as the firm's reference point on the security of the systems, protocols, and integrations Copper depends on. The role is predominantly architecture and assurance, with limited hands-on solution design in the cloud and integration space where reference patterns are needed.</span></p>
<p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong>Key Responsibilities: </strong> </span></p>
<p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong>Architectural authority</strong></span></p>
<ul>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Hold formal security sign-off authority for major changes to Copper's platforms, infrastructure, and integrations.</span></li>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Shape and maintain the security architecture patterns, principles, and reference designs that engineering teams build against.</span></li>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Provide the senior technical security position in architectural and business decisions, including escalations where security and delivery pressures conflict.</span></li>
</ul>
<p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong>Custody, signing, and cryptographic architecture</strong> </span></p>
<ul>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Provide architectural security leadership over Copper's signing infrastructure, working alongside specialist engineering and cryptography teams. Scope covers the people, process, and operational design around MPC-based signing. Solid conceptual grounding in threshold cryptography and signature schemes is required; cryptographer-level work is not.</span></li>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Review and approve changes to transaction construction, signing flows, approval policy, and key lifecycle operations.</span></li>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Provide architectural assurance over chain-of-trust constructs adjacent to custody, including verifiable build pipelines, hardware-backed code signing, and authenticator-bound administrative paths.</span></li>
</ul>
<p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong>Multi-chain and integration security</strong></span></p>
<ul>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Reason at architectural depth across the range of blockchains Copper supports, including EVM, UTXO, and account-based non-EVM families. This requires a working understanding of transaction construction, signing semantics, consensus assumptions, and validator and staking models across these environments, without being a protocol engineer in any of them.</span></li>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Assess third-party smart contract architectures, implementations, and audit reports to a level sufficient to understand the exploit and risk surface, without performing line-by-line code review.</span></li>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Review first-party integrations with partner networks, including those underpinning staking and similar on-chain participation, and form a defensible security position on the operational and contract risk Copper inherits.</span></li>
</ul>
<p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong>Settlement, collateral, and off-exchange architecture</strong></span></p>
<ul>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Provide architectural ownership of the security model for Copper's settlement, collateral mirroring, and off-exchange product surfaces.</span></li>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Reason about the trust boundaries between Copper, venues, and clients, and ensure architectural controls match the obligations each side carries.</span></li>
</ul>
<p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong>Identity and access architecture</strong></span></p>
<ul>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Own identity and access architecture as a dedicated pillar of the role.</span></li>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Set patterns for workforce, workload, and third-party identity across Entra ID, federated SSO, OAuth2 / OIDC, SAML, and modern authenticators.</span></li>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Govern entitlement design, privileged access, and access models for contractors, vendors, and external operators.</span></li>
</ul>
<p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong>Cloud and platform security</strong></span></p>
<ul>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Maintain working architectural fluency in both AWS and Azure, including network topology, segmentation, secrets handling, and platform telemetry.</span></li>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Produce reference patterns and, where needed, direct integration designs in the cloud and platform space.</span></li>
</ul>
<p><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><strong>Third-party and protocol risk</strong></span></p>
<ul>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Lead technical security review of vendors, integrated venues, and protocols, including challenge of assurances that do not stand up to scrutiny.</span></li>
<li style="font-family: verdana, geneva, sans-serif; font-size: 12pt;"><span style="font-family: verdana, geneva, sans-serif; font-size: 12pt;">Support client and counterparty due diligence on the technical content most l

The market for this type of role

Similar openings
14,851
jobs in London
Full-time
80%
of roles in the UK
Remote possible
4%
of roles
copperco

3 open positions · London, New York

📊 Job market · the UK
60,586
active jobs
7.9%
Remote
Ø 2d
avg. online

Frequently asked questions

How many jobs are available in London?
Currently 14,851 roles in London on AlmostHired, across 4,950 different companies. Our data is updated daily.
Do roles in the UK offer remote work?
4% of roles in the UK allow remote work, either partial or full. To filter specifically for remote positions, use AlmostHired.
How do I know if I match this role?
Upload your CV — our AI compares your profile to the job requirements and gives you a precise match score, with matching and missing skills.