Security Engineering Lead
About the Role
You will lead security and auditing efforts for the codebase. You will perform security audits, dive into complex distributed system code to identify vulnerabilities, coordinate with engineering teams to communicate findings and guide hardening, manage and review external audit work, and propose testing and engineering improvements to increase security and maintainability.
Requirements
- Solid grasp of software engineering principles, both low-level and high-level
- If focused on Rust: at least 1 year experience writing Rust, particularly with async Rust
- If focused on Solidity: multiple years experience writing smart contracts and experience with smart contract security audits or formal verification
- Experience as an engineer or software architect in a security-critical industry
- Ability to describe stakes, challenges faced in building secure software, and mitigation steps taken
- Experience as an auditor, pentester, or QA tester
- Well thought-out approach to testing software and designing it to be testable and auditable
- Ability to think adversarially and identify potential reliability or security vulnerabilities
- Experience in the design and/or testing of distributed systems
- Comfort diving into unknowns and asking questions
- Knowledge of testing and static analysis tools (e.g. Foundry, Slither) is a plus
- Blockchain knowledge/experience is preferred but not required
- Experience working on security-critical systems informing software design philosophy is preferred
Responsibilities
- Lead security audits of the codebase
- Organize and structure security and audit efforts
- Analyze and review complex distributed system code
- Coordinate with engineering teams to communicate findings and guide system hardening
- Manage and review external security audits
- Propose improvements to testing and engineering practices for security and maintainability
Benefits
- Fully remote with flexible hours
- Work alongside the brightest minds in the crypto space
- Equity package
- Regular team off-sites to international locations
- Unlimited vacation policy
- Top-tier health dental and vision coverage for US employees
