368,611open jobs
9,439companies
50,719added this week
Browse all
Salary
$83k – $167k per year
Location
Remote (United States)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Blockchain Capital is one of the earliest dedicated digital asset venture firms, founded in 2013 in San Francisco. It has invested across many funds in exchanges, infrastructure, decentralised finance and consumer applications. The firm was also a pioneer of tokenised fund structures, issuing a security token to represent limited partner interests.

Building the Future of Open Finance

Payward - the parent company behind Kraken, NinjaTrader, Breakout, xStocks, Payward Services and CF Benchmarks - has spent the last 15 years building one of the most modern and globally accessible financial infrastructure platforms in the industry, built to advance an open, global financial system.

Before you apply, we encourage you to explore our culture page to understand what drives us and how we work.

The team

Founded in 2011, Kraken is one of the world's longest-standing crypto platforms, trusted by over 10 million individuals and institutions across the globe. It offers spot trading, margin, futures, staking, and OTC services, with products built for both individual investors and institutional clients.

Kraken’s world-class Security Team is growing. As we continue to scale and mature our information technology controls program, we are seeking a senior professional with a strong background in IT controls and external audit to help build and operate a program designed for enterprise scale.

This role sits within Kraken’s Security Compliance function and offers close partnership with experienced leaders across our IT program, security organization, and enterprise technology stack. You’ll have the opportunity to establish audit rigor while also helping design and implement a robust, next-gen controls framework in a rapidly evolving Web3 environment.

Kraken is a leader in the security and digital assets space. You will collaborate with peers who have led global audit and consulting teams across Big Four organizations and contribute to initiatives shaping emerging Web3 standards. This role offers the opportunity to make a meaningful and lasting impact both within Kraken and across the broader industry.

The ideal candidate is comfortable working cross-functionally across a variety of teams, including Finance, Technology, Engineering, and Security to inform sound, risk-based decisions in a fast-paced environment.

This is a fully remote role.

The opportunity

  • Lead and manage SOC 1 and SOC 2 examinations under AICPA standards in a complex, rapidly evolving technology environment, partnering with external auditors and internal teams to design, implement, and continuously improve IT control processes

  • Support end-to-end SOX planning and execution, including IT system scoping, audit readiness, and development and delivery of training for control owners operating in a high-growth, regulated business

  • Act as a trusted advisor to Security, IT, Infrastructure, Engineering, Data, and Finance teams, translating SOX and audit requirements into practical, scalable controls aligned with modern technology stacks

  • Lead security and IT control gap assessments, evaluate control design and operating effectiveness, and drive remediation efforts through to completion in partnership with control owners

  • Facilitate the ongoing maturation of IT general controls (ITGCs) and IT application controls (ITACs), balancing regulatory expectations with the pace of product and platform innovation

  • Oversee the quality and execution of audit initiatives, applying strong professional judgment to identify control gaps, assess risk, and guide teams through complex audit and compliance matters

  • Perform impact assessments for SOX control deficiencies and design risk-based, pragmatic remediation plans that stand up to auditor scrutiny without slowing the business

  • Implement and enhance controls monitoring and defense-in-depth across key IT risk areas to improve audit outcomes and strengthen the overall control environment

  • Partner cross-functionally to identify systemic program challenges, recommend process improvements, and drive durable solutions in a scaling organization

  • Develop and maintain clear, auditor-ready documentation, including data flow diagrams and process flowcharts for high-risk security and financial processes

  • Work closely with internal and external auditors, helping them navigate a sophisticated IT control environment and ensuring efficient, high-quality audits

  • Support audit evidence collection and continuous improvement initiatives, including leveraging automation to improve efficiency, consistency, and scalability

What You Bring

  • 5+ years of experience in external IT audit and/or technology risk assurance or advisory, with demonstrated ownership of complex audit requirements

  • Strong hands-on experience with Internal Controls over Financial Reporting (ICFR), including SOX 404 frameworks, control design, and operating effectiveness testing

  • Prior experience at a Big 4 or other large public accounting firm, or equivalent experience working with external auditors in a highly regulated environment

  • Proven ability to lead compliance and audit initiatives end to end, from planning and risk assessment through remediation and audit close

  • Experience auditing or assessing hybrid and cloud-based environments (e.g., IaaS, PaaS, SaaS), including access management, change management, and logging/monitoring controls

  • Ability to operate autonomously in ambiguous, fast-paced environments, driving outcomes across cross-functional teams with minimal supervision

  • Strong oral and written communication skills, with the ability to clearly explain technical concepts to technical and non-technical stakeholders

  • Demonstrated ability to manage multiple priorities, coordinate cross-functional work, and hold stakeholders accountable to agreed timelines

  • Strong organizational and time management skills, with a high degree of self motivation and effectiveness in a remote or distributed working environment

Nice to haves

  • Exposure to fintech, payments, crypto, or digital asset business models, an added plus for crypto audit experience

  • Familiarity with risk and control frameworks (e.g., NIST, ISO 27001, COBIT) beyond baseline audit requirements

  • Professional security management certification such as a Certified Public Accountant (CPA) or Certified Information Systems Auditor (CISA) or Certified in Risk and Information Systems Control (CRISC) other similar credentials, is a huge plus

What's in it for you

  • Accelerate your technical depth by working in a cutting-edge, modern infrastructure environment, gaining exposure to cloud-native architectures and complex, real-time systems

  • Broaden your impact and perspective by collaborating with highly integrated, globally distributed teams and working alongside world-class professionals across engineering, security, and other technical disciplines

  • Move beyond “check-the-box” compliance to influence how controls are designed and scaled in a fast-growing, regulated technology business

  • Gain meaningful ownership and visibility while helping shape a maturing audit and compliance program in a dynamic, evolving industry

Unless a specific application deadline is stated in the job posting, applications are accepted on an ongoing basis.

Please note, applicants are permitted to redact or remove information on their resume that identifies age, date of birth, or dates of attendance at or graduation from an educational institution.

We consider qualified applicants with criminal histories for employment on our team, assessing candidates in a manner consistent with the requirements of the San Francisco Fair Chance Ordinance.

Our commitment

Payward is powered by people from around the world and we celebrate the diverse talents, backgrounds, contributions, and unique perspectives that everyone brings to the table. We hire based on merit, seeking out people with the right abilities, knowledge, and skills for the job. We encourage you to apply for roles where you don't fully meet the listed requirements, especially if you're passionate or knowledgeable about crypto.

We may ask candidates to complete job-related skills or work-style assessments as part of our hiring process. These assessments evaluate competencies relevant to the role and are applied consistently across candidates for similar positions. Results are considered alongside experience and interviews, and are not the sole basis for any employment decision.

As an equal opportunity employer, we don't tolerate discrimination or harassment of any kind, whether based on race, ethnicity, age, gender identity, citizenship, religion, sexual orientation, disability, pregnancy, veteran status, or any other protected characteristic as outlined by federal, state, or local laws.

Stay connected

Follow us on Twitter

Learn on the Kraken Blog

Connect on LinkedIn

Candidate Privacy Notice

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,611 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$38k – $91k per year (Estimated) • Remote • Full-Time • 8+ years exp • PhD • Guadalajara
PowerShell
Python
Databases
Amazon Aurora
DynamoDB
AI/ML
Amazon SageMaker
AWS Bedrock
AWS Bedrock AgentCore
Ray
DevOps
Amazon CloudWatch
Amazon EC2
Amazon ECS
Amazon EKS
Amazon EventBridge
Amazon S3
AWS
AWS Lambda
AWS Step Functions
Azure
CI/CD
Datadog
FinOps
GCP
Git
GitLab
GitLab CI
IAM
Jenkins
JFrog Artifactory
Kubernetes
New Relic
Service Mesh
Splunk
Terraform
Cybersecurity
HIPAA
ISO 27001
PCI DSS
SOC 2
Apply
$100k – $180k per year • Equity • Remote • Full-Time • 7+ years exp • Bachelor's Degree • Austin
DevOps
VMWare
Cybersecurity
ISO 27001
SOC 2
Zero Trust
Apply
$285k per year • Equity • Remote • Hanover
AI/ML
AI Agents
Cybersecurity
ISO 27001
SOC 2
Apply
$88k – $199k per year (Estimated) • In office • 3+ years exp • Hudson
Python
DevOps
Ansible
AWS
Azure
GCP
Kubernetes
Terraform
Cybersecurity
CIS Benchmarks
SOC 2
Zero Trust
Apply
$62k – $126k per year (Estimated) • In office • 3+ years exp • Plano
Python
Cybersecurity
HIPAA
Okta
SOC 2
Management
Confluence
Google Workspace
Jira
n8n
Slack
Zapier
Apply
$43k – $128k per year (Estimated) • Remote • Full-Time
C++
Go
Rust
JavaScript
Frontend
React.js
Mobile
React Native
Apply
$33k – $42k per year (Estimated) • Remote • Full-Time • 7+ years exp
Rust
Databases
Apache Kafka
Apply
$124k – $274k per year (Estimated) • Remote • Full-Time • 8+ years exp • Bachelor's Degree
DevOps
Incident Management
Apply
$126k – $228k per year (Estimated) • Remote • Full-Time • Bachelor's Degree
C++
Go
Python
Rust
Web3
Staking
Apply
$68k – $176k per year (Estimated) • Remote • Full-Time
Python
Rust
Databases
MariaDB
MySQL
DevOps
ArgoCD
CI/CD
GitHub Actions
GitLab CI
GitOps
HAProxy
Kubernetes
Terraform
GitHub
GitLab
Apply
See all jobs
This is one of many
368,611 more open roles from verified company boards, updated every day.