Who We Are:

At Galaxy we are building products and services to help the world invest in economic progress. We believe crypto and blockchain innovations will permeate and improve all aspects of our global economy. Our vision is a society where value and ownership flow as freely as information. Galaxy is a digital asset and blockchain leader helping institutions, startups, and individuals access and navigate the crypto economy. As one of the most well-capitalized and trusted companies in the industry, we provide platform solutions custom-made for a digitally native ecosystem across three complementary operating businesses: Global Markets, Asset Management, and Digital Infrastructure Solutions. Our offerings include, amongst others, trading, lending, strategic advisory services, institutional-grade investment solutions across passive, active and venture strategies, proprietary bitcoin mining and hosting services, network validator services, and the development of enterprise custodial technology. Galaxy’s CEO and Founder Michael Novogratz leads a team of crypto enthusiasts, and institutional veterans focused on the future of finance and Web3. The Company is headquartered in New York City, with global across North America, Europe and Asia.

Additional information about the Company's businesses and products is available on www.galaxy.com.

What We Value:

We are a diverse team of free thinkers, and fast movers united to help investors and creators energize the global economy. We are looking for individuals who thrive in a culture of builders and overachievers and embrace high performance, transparent feedback, and a mission-first approach. Our culture shapes our way of working and gets us where we want to be.

  • Seek Excellence.
  • Be Selective To Be Effective.
  • Be Highly Aligned, Loosely Coupled.
  • Disagree Transparently.
  • Encourage Independent Decision-Making.
  • Build Dream Teams.

Who You Are:

Galaxy is seeking a Product Security Engineer to join our team of senior ProdSec and offensive security engineers. The engineer will contribute to establishing our secure by design program to all software and production engineering teams, and elaborate standards and best practices to bring efficiency to those engineers as they implement security controls. We are looking for a curious, collaborative, detailed oriented individual who will gradually build a solid understanding of Galaxy business lines and solutions. Based in London, the Product Security Engineer will work with teams in the local office as well as US (where all other members of ProdSec are based) and Hong Kong.

What You’ll Do:

  • Assist software and production engineering teams in applying threat modeling to their designs
  • Assess which security controls are most adequate for a specific design, taking into consideration the existing policies and standards
  • With guidance from senior team members, elaborate standards to be used by engineering teams: e.g. use of OAuth in custom applications, required system and network hardening for a blockchain transaction signing application
  • Assist software and production engineering teams in understanding vulnerabilities reported by various security tools (SAST, SCA, container/OS scanners)
  • Build solid understanding of the London and HK-built technology stacks
  • Help increase the understanding of our secure by design program for London and HK technology teams, as well as Project Management and Product points of contact

What We’re Looking For:

  • Bachelor or post-graduate diploma in cybersecurity or technology
  • 2+ years work experience in product security, application security, cloud security, or software development of security features
  • Strong understanding of at least a few of the following topics: authentication and authorization technology, TLS and PKI, network security, cloud security, system security
  • Threat modeling, risk assessment, controls review
  • SAST, DAST, SCA
  • Programming experience
  • Strong analysis skills, detail oriented
  • Very good verbal and written communication skills, collaborative and solution-driven
  • Experience working in financial services and/or on blockchain related projects
  • Security or cloud certifications

What We Offer:

  • Competitive base salary, bonus, and equity compensation
  • Company-paid health and protective benefits for employees and their eligible dependents
  • Free virtual coaching and counseling sessions
  • Opportunities to learn about the Crypto industry
  • Smart, entrepreneurial, and fun colleagues
  • Employee Resource Groups

*Benefits may vary depending on location.

Galaxy respects diversity and seeks to provide equal employment opportunities to all employees and job applicants for employment without regard to actual or perceived age, race, color, creed, religion, sex or gender (including pregnancy, childbirth, lactation and related medical conditions), gender identity or gender expression (including transgender status), sexual orientation, marital or partnership or caregiver status, ancestry, national origin, citizenship status, disability, military or veteran status, protected medical condition as defined by applicable state or local law, genetic information or predisposing genetic characteristic, or other characteristic protected by applicable federal, state, or local laws and ordinances.

We will endeavor to make a reasonable accommodation to the known limitations of a qualified applicant with a disability unless the accommodation would impose an undue hardship on the operation of our business. If you believe you require such assistance to complete the application process or to participate in an interview, please contact careers@galaxy.com. 

Apply for this Job

* Required
resume chosen  
(File types: pdf, doc, docx, txt, rtf)
cover_letter chosen  
(File types: pdf, doc, docx, txt, rtf)
When autocomplete results are available use up and down arrows to review
+ Add another education


INVITATION TO SELF-IDENTIFY

Collecting diversity data from colleagues is a well-established way to track and encourage improvement in diversity.  We are asking you to provide this information on a voluntary basis to help us inform our recruiting practices and policies. It is entirely your choice if you choose to provide this information.  Your managers will not have access to your responses.

This helps us plan our work in promoting a diverse and inclusive working environment. This information is used for monitoring and reporting purposes only and will only be shared in an anonymous, collective format. 

GENDER/SEXUAL ORIENTATION

Our company does not discriminate on the basis of sexual orientation, gender identity, or gender expression. But to track the effectiveness of our recruiting efforts and ensure we consider the needs of all our employees, please consider the following optional questions.

Transgender is an umbrella term that refers to people whose gender identity, expression or behavior is different from those typically associated with their assigned sex at birth. Other identities considered to fall under this umbrella can include non-binary, gender fluid, and genderqueer – as well as many more.

Your voluntary cooperation is appreciated.  Thank you.

Sex (Select one)


Ethnicity - Please check the appropriate box below.


Race - Please check the appropriate box(es) below.





Veteran Service - Do you identify as a veteran of the United States Armed Forces?



What is your gender identity? (Select one)





What is your Sexual Orientation (Select one)






Do you identify as transgender? (Select one)




Enter the verification code sent to to confirm you are not a robot, then submit your application.

This application was flagged as potential bot traffic. To resubmit your application, turn off any VPNs, clear the browser's cache and cookies, or try another browser. If you still can't submit it, contact our support team through the help center.