Search...

Senior Application Security Engineer

Skills

About the Role

You will perform end-to-end security reviews across smart contracts, backend services, and front-end surfaces, producing high-quality written findings. You will design and maintain AI-powered code reviewers and an agentic security CI/CD pipeline that runs against pull requests and release candidates. You will triage bug bounty submissions, reproduce valid findings, assign severity, and route confirmed issues to engineering with actionable context. You will review proposed fixes, close resolved findings, and push for root-cause remediation. You will embed across engineering workflows from planning to post-launch and lead the AI security practice by building and sharing custom prompt chains, CI integrations, and tooling.

Requirements

  • Full-stack security fluency across Solidity, Go, TypeScript, and Python
  • Production experience auditing or building secure Solidity and deep familiarity with EVM internals
  • Proven experience building AI security workflows, custom prompt chains, and CI integrations (e.g., Claude Code, Codex)
  • Experience making security decisions under real-time pressure in Web3 environments
  • Public portfolio demonstrating security work such as audit reports, bug bounty writeups, research posts, or open-source tooling
  • Experience running or contributing to a structured bug bounty program
  • Exposure to payments protocols, stablecoin infrastructure, or regulated fintech environments
  • Prior experience building security tooling with real engineering adoption

Responsibilities

  • Own end-to-end security reviews across smart contracts, backend services, and frontend surfaces
  • Build and ship an agentic security CI/CD pipeline that autonomously reviews PRs and release candidates
  • Design and maintain AI-powered code reviewers tuned to specific vulnerability classes and surfaces
  • Triage and manage the bug bounty program, reproduce findings, assign severity, and route issues
  • Review and verify remediation, closing resolved findings and ensuring root-cause fixes
  • Embed across engineering teams at planning, design, feature freeze, and post-launch stages
  • Lead the AI security practice by building prompt chains, workflows, and integrations and sharing them

Benefits

  • Remote first global workforce
  • Medical insurance
  • Dental insurance
  • Vision insurance
  • Company matching 401k with 3% match
  • $1,500 home office setup allowance
  • $200 annual AI allowance
  • $75 monthly internet or phone reimbursement
  • Flexible time off
  • Company issued laptop
  • Egg freezing and employee wellness benefits