HamburgerMenu
hirist

Job Description

Role Overview :

We are looking for a Security Engineer with expertise in Web3 and Web2 security to strengthen our application, cloud, and blockchain security posture. The ideal candidate will have hands-on experience in penetration testing, red teaming, cloud security, monitoring, and vulnerability management across modern application environments.

Key Responsibilities :

- Perform penetration testing on Web, Mobile, APIs, Smart Contracts, and blockchain-based applications.

- Conduct red team exercises and security assessments across diverse environments.

- Manage and validate bug bounty submissions and coordinate remediation efforts.

- Research emerging attack vectors, threats, and mitigation techniques.

- Assess and manage organizational attack surfaces and security risks.

- Develop security tools, scripts, and automation to improve overall security posture.

- Deploy and manage security monitoring and alerting solutions such as Prometheus, Grafana, and Wazuh.

- Support AWS cloud security and maintain secure infrastructure practices.

- Collaborate with engineering teams to prioritize and remediate vulnerabilities.

- Prepare clear vulnerability reports and security recommendations.

Required Skills & Experience :

- 4+ years of experience in Security Engineering, Application Security, or Offensive Security.

- Strong hands-on experience in Web, Mobile, and Web3 penetration testing.

- Knowledge of Smart Contract Security, Bitcoin Scripts, and blockchain security concepts.

- Good understanding of OWASP Top 10, SANS Top 25, NIST, and MITRE ATT&CK frameworks.

- Experience with monitoring and security tools such as Prometheus, Grafana, and Wazuh.

- Familiarity with AWS cloud services and cloud security best practices.

- Proficiency in Python, Go, Rust, or TypeScript for security automation.

- Strong understanding of networking, infrastructure, and application architecture.

- Bachelor's degree in Computer Science, Information Technology, or a related field.

Good to Have :

- Experience managing Bug Bounty Programs.

- Security certifications such as C-PENT, eJPT, PWPP, or GPEN.

- Experience with security automation and threat detection tooling.

- Exposure to leading security initiatives and mentoring team members.

Role Type :

Individual Contributor (IC) role with future opportunities to build and lead the security function.

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...