Senior Security Engineer
New York, New York
Investors = Insight Partners, Sequoia, Tiger Global, Coatue Management, Lightspeed, Advent International, SoftBank, Hillhouse Capital, Goldman Sachs, Coinbase Ventures, Binance, Shunwei Capital, IDG Capital, Wing, Legend Star, Danhua Capital and other investors.
About the RoleThe primary responsibility of this role is for CertiK’s security-related services. Intersecting cybersecurity and blockchain, CertiK’s security offerings include security consulting, security reviews, security auditing of smart contracts and blockchains, verification of smart contracts, penetration testing, and more.
Responsibilities
- Design/implement robust security solutions, monitor security threats & safeguard sensitive data to ensure security of CertiK's networks/systems
- Research/develop tools to detect smart contracts security vulnerabilities & enhance audit productivity using formal verification/static analysis/fuzzing methods
- Establish/enforce security policies, manage security vulnerabilities & responses to incidents
- Review source code/security design, conduct threat modeling & provide direct guidance to software development teams
- Create Blockchain security vulnerability database based on common attack vectors/historical hacks
- Analyze abnormal transactions, explore possible impacts on Blockchain projects (DeFi ecosystems) & build corresponding detectors
- Conduct penetration tests on web/mobile (Android & iOS) & perform external/internal network security assessment
- Monitor security breaches, defend systems from cyberattacks & provide technical consulting services in cybersecurity
Requirements
- MS in Security Informatics/Cybersecurity or a related field
- In-depth knowledge of solidity/smart contract/Blockchain technology
- Expertise in binary, threat modeling & security review for programs written in Solidity/JavaScript/Python/C/C++/PHP/Go/Rust
- Familiar with cloud platforms (AWS/Azure/GCP)
- Advanced development/scripting skills in Python/JavaScript
#LI-Remote#blockchain#startups#hiring
CertiK accepts applications for this position on an ongoing basis. CertiK is proud to offer medical, vision, and dental insurance, 401(k) plan with company matching, life and accidental death and dismemberment insurance, HSA (with high deductible plan), FSA, and other benefits to all full-time employees, along with flexible paid time off and holidays. CertiK also offers a variable commission program for business development sales roles. In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire. CertiK is proud to be an equal opportunity employer. We will not discriminate against any applicant or employee on the basis of age, race, color, creed, religion, sex, sexual orientation, gender, gender identity or expression, medical condition, national origin, ancestry, citizenship, marital status or civil partnership/union status, physical or mental disability, pregnancy, childbirth, genetic information, military and veteran status, or any other basis prohibited by applicable federal, state or local law. CertiK will consider for employment qualified applicants with criminal histories in a manner consistent with local and federal requirements.https://www.eeoc.gov/sites/default/files/migrated_files/employers/poster_screen_reader_optimized.pdf All CertiK employees are expected to actively support diversity on their teams, and in the Company. Apply
Job Profile
401k plan with company matching 401k with matching Dental Insurance Flexible paid time off Holidays Life Insurance Medical Insurance Medical, vision, and dental insurance Variable commission program Vision Insurance
Tasks- Conduct penetration tests
- Conduct security audits
- Design/implement security solutions
- Develop tools for vulnerability detection
- Establish security policies
- Monitor security breaches
- Monitor security threats
- Research
- Review source code
- Technology
AI Technology AWS Azure Blockchain Blockchain Security Business Development C C++ Compliance Cybersecurity DeFi Development Formal Verification Fuzzing GCP Go Javascript Penetration Testing PHP Python Rust Scripting Security auditing Security consulting Security review Smart Contracts Solidity Static Analysis Threat modeling Web3
EducationMS MS in Cybersecurity MS in Security Informatics Related Field
TimezonesAmerica/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9