Senior Security Engineer, Product
New
J
JitoBlockchain security
Location: USA; Secondary Locations: Europe; Workplace: RemoteFull-TimeSenior
Salary$180K - $200K; $180K – $200K • Offers Equity
Apply NowOpens the employer's application page
Job Details
- Experience
- 5+ years of professional experience, with a meaningful portion in software engineering before moving into security
- Required Skills
- PythonC++GoRust
Requirements
- Have 5+ years of professional experience, including a meaningful portion in software engineering before moving into security.
- Bring a software engineering background and experience building production systems.
- Demonstrate product or application security experience; infrastructure or compliance work alone is not sufficient.
- Be proficient in at least one systems or backend language: Rust preferred, or Go, C++, or Python.
- Be fluent in threat modeling, secure design review, whitebox code review, and vulnerability testing.
- Have a track record of building security tooling or automation from scratch.
- Have experience running or contributing to a bug bounty program, or a clear view of how to run one.
- Have a genuine interest in AI security, including adversarial testing of agent controls.
- Have strong written communication skills.
- Be comfortable taking high ownership and working autonomously on a small team.
- Have experience in web3, crypto, or DeFi.
- Smart contract or onchain security experience, particularly on Solana or another SVM chain, is a plus.
Responsibilities
- Conduct threat modeling, secure design reviews, whitebox code reviews, and vulnerability testing across products and protocols.
- Harden deployments across product lines, including the jito-solana deploy process.
- Run ongoing internal audits of Jito products.
- Set up onchain monitoring tooling and build detections for probing and attacks.
- Operate bug bounty processes, including triage, severity assessment, remediation tracking, and escalation.
- Drive auditor findings through review, prioritization, assignment, tracking, and closure.
- Build AI-assisted security testing and continuous scanning, including testing the security surface of agents and AI tooling in codebases.
- Address high-impact key and asset risks, including key hygiene, hot wallets, engineering keys, multisigs, and security councils.
View Full Description & ApplyYou'll be redirected to the employer's site