TL;DR
KMS Security Engineer (Security): Responsible for identifying, exploiting, and mitigating security vulnerabilities in software applications, with an accent on key management for wallet infrastructure and blockchain technology. Focus on performing regular security assessments, implementing secure coding practices, and participating in incident response for crypto assets.
Location: Remote (US)
Salary: $250,000–$285,000
Company
hirify.global is a modern money app offering a secure and intuitive experience for managing, spending, and growing crypto assets, supporting multiple blockchains like Solana, Ethereum, Polygon, and Bitcoin.
What you will do
- Own and manage critical security infrastructure and services, particularly key management for wallet systems.
- Conduct regular security assessments on new projects, infrastructure, and code.
- Identify and mitigate security vulnerabilities using manual testing, automated tools, and threat modeling.
- Stay updated on offensive security techniques and blockchain security best practices.
- Collaborate with development teams to integrate security throughout the SDLC and ensure the integrity of cryptographic functions.
- Participate in incident response and management activities.
Requirements
- 7+ years of experience in offensive security techniques, with a focus on blockchain technology and cryptography.
- Experience working with Key Management Services.
- Strong understanding of security risks, vulnerabilities, and concepts in web and mobile applications.
- Proficiency in code review for JavaScript & TypeScript.
- Ability to write Proof of Concepts (PoCs) and ensure that patch code meets repository standards.
- Good verbal and written communication skills.
Nice to have
- Experience working as a security software engineer at crypto companies.
- Experience developing key management solutions.
- Experience working with HSM, trust computing, or TEEs (AWS Nitro Enclave or Intel SGX).
Culture & Benefits
- Competitive salary and equity.
- Comprehensive medical, dental, and vision insurance (100% covered).
- Stipend for your ideal remote set-up.
- Flexible hours and a supportive remote environment.
- Unlimited vacation.
- 401(k) retirement plan.
- Monthly wellness benefit.
- Weekly meal benefit.
- Global off-sites.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →