Engineering Manager - Identity, Compliance & Risk
- Company
- Crossmint
- Location
- New York, NY
- Work type
- Full Time · Hybrid
- Posted
- 2026-09-01
Job description
About The Role
We are hiring a senior Engineering Manager to own identity, compliance and risk as a single engineering horizontal.
Every Crossmint product depends on the same set of questions. Who is this user or business, and what have we proven about them? What is this client allowed to do, in this market, under this licence? Is this transaction one we should accept? Today those answers are built into each product. This role brings them together into shared services that every team builds on.
This is a player-coach role. You will lead a team and own the roadmap, and you will stay close enough to the systems to review a domain model, challenge an architecture decision, and read the code. No delegation without comprehension.
The work is regulated. Crossmint operates under MiCA, DORA, and SOC 2, and our licences depend on the systems your team owns. Compliance here is a design constraint on the product, not a policy document. We are looking for someone who treats it that way.
You will report to the CTO and work closely with Product, Compliance, Legal, Security and Risk Operations.
Responsibilities
Own the horizontal (from an engineering standpoint)
Own the engineering roadmap for identity, compliance and risk, and align it with the product and compliance roadmaps.
Define the shared services other teams build on: identity and account models, verification and onboarding, authentication and authorization, screening and monitoring, and risk decisioning.
Set the domain models that hold across clients, projects, jurisdictions, and regulatory regimes. This is the central technical problem of the role.
Decide what we build, what we buy, and what we retire, and defend those decisions with evidence.
Lead the team
Manage, grow, and develop a team of engineers. Run performance reviews, career development, and mentorship.
Forecast hiring needs, write the roles, and run the hiring process. Raise the technical bar with every hire.
Set the standards your team works to: design review, testing, on-call, and incident response.
Participate in the on-call rotation.
Plan for the team's capacity honestly, including PTO and handoffs.
Stay technical
Review architecture and design documents before they ship, and write your own when the problem warrants it.
Lead threat modelling and failure-mode analysis for the systems your team owns.
Step in hands-on during incidents and high-stakes reviews.
Keep current on identity standards, fraud and AML tooling, and the AI-native workflows we use across engineering.
Work across functions
Partner with Compliance and Legal to turn regulatory obligations into product requirements, and to tell them early when a requirement is not buildable as written.
Support audit and supervisory review with evidence the systems produce automatically, rather than evidence assembled by hand before each audit.
Work with the Head of Security on the boundary between security controls and risk controls.
Represent Crossmint to enterprise clients and their compliance teams when the deal needs it.
About You
Must-haves
8+ years building production systems, with 2+ years managing engineers.
A track record shipping in a regulated environment: payments, banking, lending, crypto, or similar, where a failure has licensing consequences.
Hands-on depth in at least one of: identity and authentication, KYC/KYB and onboarding, fraud and risk decisioning, or AML screening and transaction monitoring.
Strong programming skills in at least one modern language. TypeScript is ideal.
Experience designing data and domain models that survive multiple clients, markets, and regulatory regimes.
The judgment to tell a real regulatory constraint apart from an internal habit, and to say which is which in a room.
Deep familiarity with current AI and agentic tools, and a view on how they change engineering work.
Bachelor's degree in Computer Science or equivalent professional experience.
Strong plus if you have
Direct experience with MiCA, DORA, SOC 2, PSD2/SCA, BSA/OFAC, or equivalent frameworks.
Experience with stablecoins, wallet infrastructure, or blockchain payment rails.
Experience with card rails: issuing, processing, tokenization, or scheme fraud programs.
Experience building a compliance or risk function's engineering side from an early stage.
Prior work at a crypto-native, fintech, or payments engineering team.
How to succeed in this role
A successful Engineering Manager for this horizontal will:
Move from a regulatory gap analysis in the morning to a domain model review in the afternoon without losing altitude on either.
Build services other teams choose to adopt, rather than controls other teams route around.
Give Compliance and Legal a straight answer on what is possible, and give Engineering a straight answer on what is required.
Make the team's work legible: clear designs, clear decisions, clear status.
Hire well, and develop the people already here.
This role is not a fit for someone who:
Treats compliance as paperwork that happens after the product is built.
Manages from a distance and loses technical depth.
Needs a large team before they are effective. This role starts lean and grows.