Senior Security Engineer
Lightning LabsVisit Lightning Labs website
Lightning Labs develops open-source software and non-custodial financial services that power faster, lower-cost Bitcoin payments over the Lightning Network.
Maintainer signals as of 9/25/2026
San Francisco, California, United States
Funding history
About Lightning Labs
Lightning Labs is a software company building infrastructure for the Bitcoin Lightning Network. Its product stack includes Lightning Network node software, Taproot Assets, liquidity marketplaces, and non-custodial on-chain/off-chain liquidity services for developers, businesses, and node operators.
Skills
About the Role
Devise and implement systems security policies and procedures, secure public-facing services, perform penetration testing and source code security reviews, and collaborate across functional teams to apply security best practices.
Requirements
- At least 5 years of systems security experience
- Ability to work with a high-impact, fast-moving startup team
- Extensive knowledge of operating system and computer architecture internals
- Strong understanding of cryptography, protocol design, and adversarial analysis
- Experience reverse engineering and exploiting cryptographic protocol systems
- Professional software development experience in Go, Rust, C/C++, and/or Java
- Experience in security incident response
- Experience in security code review and vulnerability triaging
- Prior experience running an open source-facing bug bounty program
- 2+ years of management experience or experience as a senior decision maker
- Experience working with remote teams
- Experience with Kubernetes and AWS infrastructure
- Working knowledge of Bitcoin and Lightning design principles
Responsibilities
- Design and deploy active fuzzing, black-box and white-box testing, and penetration testing infrastructure for open source and production systems
- Perform security audits and review internal production systems and open source software interacting with Bitcoin and Lightning
- Provide mentorship and guidance to teammates
- Create global security policies, standards, guidelines, and procedures
- Oversee security aspects of software release processes and infrastructure
- Determine security team requirements for future growth
- Develop and ensure responsiveness of security incident management processes
- Perform risk management assessments
