Security Engineer

ether.fi helps users stake ETH, BTC, and stablecoins while earning rewards and maintaining full control through liquid restaking tokens integrated across DeFi protocols.

Series A0 current maintainers0 active leadsTeam intelligence

Maintainer signals as of 9/2/2026

Strathvale House, 4th Floor, 90 North Church Street George Town, Grand Cayman, , Cayman Islands, KY1 9012, Cayman Islands
About ether.fi

ether.fi provides decentralized liquid staking and restaking for Ethereum, Bitcoin, and stablecoins. Users deposit assets to receive liquid tokens (eETH, weETH, eBTC, eUSD) that earn staking rewards, restaking yields, and loyalty points while remaining composable across DeFi protocols. The platform integrates with EigenLayer, Symbiotic, and Karak for restaking, uses distributed validator technology through SSV Network, and offers automated DeFi strategy vaults plus a crypto-native credit card.

View jobs by ether.fi

Skills

About the Role

You will operate security defenses end to end by monitoring alerts triaging incidents and managing endpoint security. You will own identity workflows and the bug bounty program audit and harden CI/CD pipelines manage dependency vulnerabilities and strengthen cloud infrastructure. You will also guide threat modeling and security tooling improvements.

Requirements

  • 5–8+ years of experience in software and security engineering
  • Meaningful experience in DevSecOps or security operations
  • Strong software engineering fundamentals and coding ability
  • Hands-on CI/CD pipeline hardening experience with GitHub Actions CircleCI or similar
  • Cloud infrastructure experience with AWS GCP or equivalent
  • Proficiency with endpoint security tooling such as CrowdStrike or equivalent EDR
  • Experience managing identity and access workflows
  • Strong written and verbal communication skills
  • Traditional software engineering experience is a plus
  • Experience at a DeFi protocol crypto exchange or blockchain infrastructure company is a plus
  • CTF or security competition experience is a plus
  • Contributions to open-source security tooling are a plus

Responsibilities

  • Monitor alert triage and respond to security incidents
  • Manage endpoint security detections and investigations
  • Lead identity lifecycle management and access provisioning
  • Own bug bounty submission triage reproduction and response
  • Track vulnerabilities through remediation
  • Develop tooling and processes for vulnerability management
  • Audit and harden CI/CD pipelines
  • Manage dependency security across repositories
  • Establish security standards across the SDLC
  • Review and harden cloud environments
  • Contribute to threat modeling
  • Manage external security vendors and tooling