What are the responsibilities and job description for the Information Security Manager Part Time - Stablecoin position at NIGHTSEA INC?
Position Summary:
We’re seeking an experienced part-time Information Security Manager to lead security and risk programs in our growing stablecoin and digital asset ecosystem. The ideal candidate has a proven track record building and scaling security governance across FinTech or crypto companies, with deep knowledge of blockchain risk, compliance frameworks, and secure product design. Location: New York.
Key Responsibilities:
- Develop and lead the company’s information security strategy, aligning it with industry standards such as ISO 27001, SOC 2, and NIST CSF.
- Design and enforce security frameworks for stablecoin operations, blockchain-based systems, wallets, and custody infrastructure.
- Conduct risk assessments and threat modeling across smart contracts, custody solutions, and digital asset management systems.
- Drive regulatory and audit readiness for SOC 2 Type II, ISO 27001, and evolving digital asset compliance requirements (e.g., MiCA, DORA).
- Oversee incident response and vulnerability management, ensuring effective triage, remediation, and post-incident review.
- Partner with product and engineering teams to embed security into the SDLC and blockchain integrations.
- Lead security awareness programs across global teams with a focus on crypto-native risks (phishing, wallet security, private key management).
- Manage third-party risk assessments for vendors, custodians, and DeFi partners.
- Develop and maintain metrics and KPIs that measure security performance and maturity across the organization.
Qualifications:
- Bachelor’s degree in Computer Science, Cybersecurity, or related field (Master’s preferred).
- 5 years of progressive experience in information security.
- Proven experience in stablecoins and digital assets security, including wallet and blockchain risk governance.
- Deep knowledge of cloud security (AWS, GCP, Azure) and modern security architectures.
- Strong understanding of regulatory compliance frameworks (SOC 2, ISO 27001, NIST, GDPR, CCPA).
- Excellent communication and executive reporting skills, capable of translating complex risk topics to business stakeholders.
- Relevant certifications preferred: CISSP, CISM, CCSP, ISO 27001 Lead Implementer, or equivalent.
Preferred Experience
- Security leadership experience in digital asset, blockchain, or FinTech companies.
- Familiarity with custody, trading, or settlement systems for crypto assets.
- Exposure to compliance automation, GRC tools, and Zero Trust architecture.
- Experience working with auditors, regulators, and institutional clients in the stablecoin or blockchain ecosystem