Security Engineer (Web3)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Engineer (Web3): Maintain and improve custody systems for validator keys, operational keys, and on-chain operations with an accent on key generation, storage, access controls, and recovery procedures. Focus on hardening signing paths, building anti-scam tooling, conducting code reviews, and participating in incident response for blockchain infrastructure.
USA (Remote)
$140K – $190K
Company
creates foundational infrastructure to accelerate adoption of decentralized protocols based on blockchain technologies like Sui.
What you will do
- Maintain and improve custody systems for validator keys, operational keys, and on-chain objects, including key generation, storage, access controls, signing, rotation, and recovery.
- Harden end-to-end signing paths by reviewing and improving code, infrastructure, and operational practices for transaction authorization and submission.
- Build anti-scam and anti-abuse tooling to detect phishing, malicious dApps, drainer contracts, and partner with wallet teams on mitigations.
- Conduct code and design reviews for components handling sensitive keys or on-chain assets, focusing on cryptography, access control, and safety.
- Investigate and respond to security incidents related to custody or ecosystem abuse, driving fixes to prevent recurrence.
Requirements
- 3+ years of hands-on experience in security engineering, application security, or product security.
- Knowledge of key management in production, such as HSMs, cloud KMS, MPC, threshold signatures, hardware wallets, or similar.
- Proficiency in Rust, TypeScript, Python, or Move, with experience reviewing and writing security-sensitive code.
- Solid understanding of applied cryptography fundamentals and common misuses.
- Builder mentality: operate with ambiguity, dive into unfamiliar codebases, and ship fixes.
- Strong written and verbal communication to explain issues to engineers and stakeholders.
Nice to have
- Interest in web3; prior experience in crypto, fintech, or regulated environments.
Culture & Benefits
- Comprehensive health insurance including medical, dental, vision for you and dependents; HSAs and FSAs.
- 18 weeks paid parental leave.
- Wellbeing programs: family planning, mental health support, EAP, fitness/nutrition apps.
- Short/long-term disability, life, accident insurance, traveler insurance.
- 401(k), wellness stipend, flexible PTO, 11 paid holidays.
- Team offsites, annual retreat, complimentary privacy protection.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →