
Lead IT Security Administrator
About Digital Asset & the Canton Network
Digital Asset builds the technologies that are reshaping the foundations of financial markets. Our mission is to create the world’s most trusted, privacy-enabled, and interoperable digital infrastructure for global finance.
At the heart of this mission is the Canton Network - the blockchain purpose-built for institutional finance. Uniquely combining privacy, compliance, and scalability, Canton enables real-time, secure settlement across multiple asset classes. Governed by the Canton Foundation with participation from leading financial institutions, it is the proven link between the promise of blockchain and the power of global finance.
Founded in 2014 and headquartered in New York City, with offices in London, Zurich, Budapest, Hong Kong, and Sydney— we are on a mission to transform finance— and that transformation is now playing out rapidly on the Canton Network.
If you’re interested in playing a crucial role at the intersection of traditional and crypto-capital markets and want to help bring the next trillion dollars of finance on-chain, join us.
About the role:
The Lead IT Security Administrator is a senior individual contributor responsible for designing, implementing, and optimizing the organization's enduser, endpoint, cloud infrastructure and networking systems. This role focuses on high-level hands-on engineering, ensuring the reliability and scalability of our technology stack through robust system design, advanced CI/CD management, and automated operations.
Partnering as a technical expert with the Engineering teams, the Lead IT Security Administrator drives the evolution of our cloud-native environment, manages critical Juniper networking hardware, and develops sophisticated automation scripts to streamline deployment pipelines and enhance overall system performance.
Responsibilities:
- Network — the Juniper/Junos estate end-to-end (routers, switches, firewalls), plus secure hybrid architecture: VPNs, VPCs, Interconnect
- Linux at scale — Ubuntu server fleet, hardened baselines, automated patching via Canonical Landscape, drift eliminated through Salt/Ansible/Terraform
- Security operations — EDR, SIEM, email security, and identity (SSO/MFA/PAM), from detection tuning through triage, access reviews, and incident root cause
- Cloud — AWS, GCP, and Azure with a focus on networking, IAM, and security configuration; read and review Terraform to validate changes
- Kubernetes & databases — production incident resolution, observability and runbooks, managed RDBMS provisioning and upgrades, tested backup/restore
- Automation — Python and Bash tooling and API-driven SaaS integration that removes manual work permanently
- Technical leadership — Tier-3 escalation, mentorship, and security standards across the org
What We're Looking For:
- Deep hands-on experience with Junos and enterprise network architecture
- Proven Linux fleet management — patching, hardening, compliance reporting at scale
- Fluency with at least one of Salt, Ansible, or Terraform; more is an advantage
- Strong identity and access management background: SSO, MFA, RBAC, privileged access
- Practical cloud security experience in AWS, GCP, or Azure
- Python/Bash automation skills applied to real operational problems
- Experience investigating alerts and running incident response
- Familiarity with SOC 2, ISO 27001, NIST CSF, or CIS Controls
- Clear communicator who can explain technical risk to non-technical stakeholders
- Learns unfamiliar technology quickly and takes ownership through to resolution
Nice to have
- Fintech, payments, crypto/blockchain, or other regulated environments
- CIS Benchmarks / STIG hardening and drift detection
- CI/CD troubleshooting across GitHub Actions, Azure DevOps, CircleCI
- Building AI-assisted monitoring, log analysis, or troubleshooting pipelines
The range below may vary if based outside the New York tri-state area (New York, New Jersey, and Connecticut). Base salaries are determined during our interview process, during which we assess the candidate's experience, skills, and capabilities against internal peers and the scope and responsibilities of the position.
US Pay Transparency
$160,000 - $185,000 USD
At Digital Asset, we are committed to compensation structures that reward impact consistently across our global teams. We support our people at every stage of life with comprehensive, family-forward benefits and flexible working models designed to help you do your best work.
Benefits We offer a comprehensive benefits package designed to support the well-being of our team members. Health and insurance benefits vary by region to ensure local relevance and compliance, and may include medical, dental, and vision coverage.
Equal Opportunity Employer Digital Asset is an equal opportunity employer committed. All qualified applicants will receive consideration for employment without regard to race, color, national origin, sex, religion, sexual orientation, age, disability, citizenship status, veteran status, or any other basis protected by applicable law.
Employment Eligibility If and as required by applicable law, all persons hired to work at Digital Asset will be required to verify identity and eligibility to work in the location for which they have an offer to work and to complete the necessary employment eligibility verification documents upon hire.
Accommodations Applicants with disabilities who require accommodation during the application or interview process should contact talent@digitalasset.com.
California Privacy Act (CCPA) If you are based in California, we encourage you to read this important information for California residents linked here.
Apply for this job
*
indicates a required field
.png?1785940118)