4 months ago
Remote, WorldwideMid Level
Responsibilities
- Analyze novel and recurring security issues through design reviews, code audits, and penetration tests
- Design and build security tools, mitigations, frameworks, and hardening strategies for vulnerability prevention and detection
- Review and develop secure operational practices and provide security guidance to engineers
- Respond to and triage bug bounty reports
- Lead security initiatives that improve the resilience and trustworthiness of Aptos core infrastructure and products
Requirements
- B.S. or M.S. in Computer Science, a related technical field, or equivalent experience
- At least 3 years of experience in vulnerability research and exploitation
- Experience with native development practices and common vulnerability patterns, including Rust or C
- Experience with automated security analysis tooling and frameworks, including fuzzing and static analysis
- Preferred contributions to the security community through public research, blogging, or conference talks
- Preferred experience with virtual machines or complex runtime environments such as MoveVM, EVM, WASM, or LLVM-based runtimes, including security models, sandboxing, and execution isolation
- Preferred familiarity with smart contract programming languages, security tools and frameworks, and formal verification
Benefits
- 100% medical, dental, and vision insurance premium coverage for employees and dependents in the US
- Equipment of choice
- Flexible vacation time, 11 holidays, and floating company days off
- Protocol token grants
- 401k matching for US employees
- Fun and inclusive in-person and digital events
