Senior Security Engineer
Devise and implement systems security policies and procedures, secure public-facing services, perform penetration testing and source code security reviews, and collaborate across functional teams to apply security best practices.
Responsibilities
- Design and deploy active fuzzing, black-box and white-box testing, and penetration testing infrastructure for open source and production systems
- Perform security audits and review internal production systems and open source software interacting with Bitcoin and Lightning
- Provide mentorship and guidance to teammates
- Create global security policies, standards, guidelines, and procedures
- Oversee security aspects of software release processes and infrastructure
- Determine security team requirements for future growth
- Develop and ensure responsiveness of security incident management processes
- Perform risk management assessments
Requirements
- At least 5 years of systems security experience
- Ability to work with a high-impact, fast-moving startup team
- Extensive knowledge of operating system and computer architecture internals
- Strong understanding of cryptography, protocol design, and adversarial analysis
- Experience reverse engineering and exploiting cryptographic protocol systems
- Professional software development experience in Go, Rust, C/C++, and/or Java
- Experience in security incident response
- Experience in security code review and vulnerability triaging
- Prior experience running an open source-facing bug bounty program
- 2+ years of management experience or experience as a senior decision maker
- Experience working with remote teams
- Experience with Kubernetes and AWS infrastructure
- Working knowledge of Bitcoin and Lightning design principles