Lead Security Engineer (Web3)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Lead Security Engineer (Web3): Defining and executing comprehensive security strategies for both internal operations and the broader Solana ecosystem with an accent on smart contract audit governance and institutional-grade security standards. Focus on building open-source security frameworks, designing reference architectures, and mitigating supply-chain risks for decentralized systems.
Company
The is a non-profit organization dedicated to the adoption, decentralization, and security of the high-performance Solana blockchain network.
What you will do
- Own the security strategy and execution for Foundation onchain programs and the wider Solana ecosystem.
- Design and socialize open-source security frameworks, reference architectures, and tooling.
- Manage internal security audits and ensure continuous readiness for institutional-grade requirements.
- Publish security advisories and guidance grounded in real-world data to improve ecosystem-wide posture.
- Lead threat modeling exercises and develop comprehensive disaster recovery playbooks.
- Establish and maintain relationships with security researchers, audit firms, and bug bounty platforms.
Requirements
- 3+ years of full-time software engineering experience.
- Deep hands-on experience with the Solana programming model and network upgrade mechanisms.
- Expertise in securing decentralized systems including low-level network design and state machine security.
- Demonstrable experience publishing security content, frameworks, or advisories.
- Familiarity with incident response and post-mortem analysis in crypto or Web3 environments.
- Technical background in smart contract audit governance and mitigation strategies.
Culture & Benefits
- Remote-first work environment within a globally distributed ecosystem.
- Opportunity to influence the security standards of a major layer-1 blockchain.
- Contribution to open-source initiatives and ecosystem-wide security improvements.
- Collaborative environment with leading security researchers and audit firms.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →