Lead Security Engineer

Paxos Labs provides enterprise infrastructure for platform-native onchain financial products. Its solutions help platforms issue branded stablecoins, move stablecoins across chains, and activate yield on digital asset balances.

Recently funded5 current maintainersTeam intelligence

Maintainer signals as of 8/23/2026

Distributed

Funding history

About Paxos Labs

Paxos Labs offers a configurable, compliance-focused stack for embedding digital asset utility and monetization into platforms. Its products include Mint for issuing and managing branded stablecoins, Transit for stablecoin conversion and cross-chain movement with automated routing and compliance screening, and Earn for yield programs on stablecoin balances through DeFi strategies or institutional lending. Paxos Labs also presents USDG0 as a flagship stablecoin fully backed by USDG, a regulated asset issued by Paxos. The organization serves enterprise platforms, users, treasuries, institutional counterparties, integrating wallets, and partners.

View jobs by Paxos Labs

Skills

Candidate Availability

Required and preferred rules are kept separate and reflect the wording in the original posting.

About the Role

You will elevate security across cloud infrastructure, operations, and smart contracts for a company building onchain financial products. The role includes internal audits, threat modeling, security tooling, incident response, training, and collaboration with smart contract and infrastructure teams.

Requirements

  • Deep knowledge of cloud infrastructure and web2 security practices.
  • Deep knowledge of cybersecurity standards and social engineering defenses.
  • Experience building full-stack applications.
  • Deep knowledge of EVM security tooling, testing, and best practices.
  • Deep knowledge of common hacks and exploits in DeFi protocols.
  • Deep knowledge of financial attack vectors in DeFi protocols.
  • Experience with CTFs, bug bounties, or whitehat activities.

Responsibilities

  • Conduct internal audits of cloud platform security across Azure and AWS.
  • Implement best practices for key management, network security, and monitoring.
  • Create threat models for first-party and third-party software, research vulnerabilities, and patch them.
  • Collaborate with infrastructure engineers to detect, fix, and prevent exploits using reusable tools and processes.
  • Develop incident response tooling and standard operating procedures.
  • Conduct incident response training simulating hacks, alerts, and social engineering vectors.
  • Secure non-code-related attack vectors in collaboration with technical and non-technical staff.
  • Audit smart contract protocols and establish secure operational practices.
  • Build full-stack tools to mitigate exploits and financial risks.
  • Detect malicious mempool transactions and automate pauses across smart contracts on multiple chains.
  • Define invariants and detect violations in real time.
  • Integrate third-party security software where necessary.

Benefits

  • Opportunity to build innovative crypto solutions for traditional enterprises.
  • Work on projects with tangible impact on the global financial landscape.
  • Continuous learning and professional development.
  • Competitive salary and participation in ownership structures.
  • Fast-paced, agile team environment.