TL;DR
Senior Offensive Security Engineer (Cybersecurity): Maintaining critical security systems within a crypto trading exchange, protecting vast amounts of crypto assets with minimal latency and absolute accuracy. Focus on penetration testing, red/purple team exercises, and security research to protect against real and continuous threats.
Location: Remote
Company
hirify.global is a globally leading exchange for crypto derivatives, offering traders a professional-grade trading platform.
What you will do
- Manage the bug bounty program, reviewing reports and cooperating with software engineering to fix bugs.
- Review outcomes of external penetration tests, replicating issues and working with engineering to fix findings.
- Conduct internal penetration tests on the software and infrastructure stack.
- Perform red and purple team exercises to test the monitoring systems.
- Conduct security research and threat intelligence, working with security response teams.
- Perform application security and code reviews, and provide internal training to engineers.
Requirements
- 5+ years of experience in Information Security.
- Proven expertise in offensive security through certifications, recognition, or referees.
- Strong communication skills and work ethic, contributing actively to the company.
Nice to have
- Experience with Kubernetes, Istio, Envoy, and the AWS cloud platform.
- Experience with GitHub CI/CD / Actions and/or ArgoCD.
- Experience with derivatives and cryptocurrency.
- Development expertise in Go.
Culture & Benefits
- Work from home to find the perfect balance between work, family, and personal life.
- Enjoy 25 days of annual leave, on top of public holidays, as well as maternity, paternity, and childcare leave.
- Comprehensive medical, dental, and vision policy for you and your dependents.
- Professional development allowance to support career advancement.
- Access to annual wellness benefits to cultivate physical and mental growth.
- Utilize the Beyond Border Remote Working policy to work away from your home country.
Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →