TL;DR
Product Security Engineer (Web3): Owning and shaping product-level security across backend services, infrastructure, and deployment pipelines with an accent on threat modeling, security reviews, and systemic risk reduction. Focus on embedding security into engineering workflows, influencing architecture, and driving long-term improvements.
Location: Remote (Global) or from offices in Zagreb, Belgrade, and Novi Sad.
Company
hirify.global is one of the fastest-growing crypto wallets in the world, securing over $20 billion in digital assets and empowering users with full control over their assets in Web3.
What you will do
- Own product-level security across backend services, infrastructure, and CI/CD pipelines.
- Lead threat modeling and security reviews for new features and architectural changes.
- Identify high-impact, systemic security risks and drive preventive solutions.
- Partner with backend, infrastructure, and product teams to embed security into workflows.
- Translate audit findings into architectural, tooling, and process improvements.
- Improve security posture of cloud environments, service-to-service communication, and CI/CD.
- Act as a trusted security advisor for technical decision-making.
Requirements
- Extensive hands-on experience as a backend or platform engineer.
- Strong ability to read, write, and review production code across multiple backend languages.
- Experience designing, implementing, and operating backend APIs and event-driven systems.
- Practical experience securing cloud environments, Kubernetes, and containerized workloads.
- Solid understanding of secure API design, authentication, authorization, and TLS.
- Ability to reason about real-world attack surfaces and failure modes.
- Clear communication and collaboration skills to influence engineering practices.
- Full development lifecycle experience with embedded security.
Culture & Benefits
- Flexible work environment: remote or office, flexible work time, with no micromanagement.
- Individual education budget.
- Cool team buildings.
- Private health insurance.
- Opportunity to learn about Crypto from the team.
- Culture of curiosity, grit, accountability, and continuous learning.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →