Principal Security Engineer, Security
Circle operates as a pivotal financial technology company within the realm of the emerging internet of money. Enabling value to traverse the digital landscape globally, quickly, and cost-effectively, Circle spearheads revolutionary developments in payments and markets. Embracing innovation, Circle's infrastructure embodies transformative possibilities that foster economic growth and inclusion on a global scale. Operating within strong legal frameworks, Circle emphasizes agility and efficiency in all endeavors while espousing core values such as Multistakeholder, Mindfulness, Driven by Excellence, and High Integrity. An advocate of diversity and dynamism, Circle nurtures a collaborative and adaptable work environment that encourages original thinking and empowerment across the organization.
Job Responsibilities:
Circle is searching for an enthusiastic Principal Security Engineer specializing in Product and Blockchain Security to lead the implementation of technical strategies, tools, research initiatives, and operational processes. Collaborating with various teams, including Engineering, Infrastructure, and IT units, the incumbent will contribute to safeguarding cloud operations, software development, and device fleets.
Key Responsibilities:
- Partner with product management and software engineering teams throughout SDLC stages to ensure secure application design and implementation.
- Conduct security assessments on web2 and web3 applications, employing both automated tools and manual testing methods, and oversee issue resolution.
- Propose coding modifications to rectify vulnerabilities and enhance security measures.
- Enable security test automation within CI/CD pipelines.
- Develop secure coding standards and training materials guided by insights from Circle's operational environment.
- Research and integrate insights on blockchain-specific vulnerabilities into Circle's security protocols.
- Act as an escalation point for investigating security alerts and addressing potential incidents.
- Manage third-party vendors for conducting penetration tests and related security projects.
- Drive ongoing enhancements of the application security program.
- Support various security team initiatives such as threat analysis, vulnerability assessments, and audits.
Desired Qualifications:
- Possess 7+ years of cybersecurity experience, with a minimum of 4 years in a leadership role focused on cybersecurity projects and resolutions.
- Display zeal for securing and fortifying software solutions.
- Expertise in recognizing common attack methods and executing penetration tests.
- Familiarity with AWS and GCP deployment environments, alongside proficiency in blockchain technologies like Ethereum, Bitcoin, and Solana.
- Profound understanding of public and private key cryptography.
- Capable of working independently, demonstrating ingenuity as a problem-solver.
- Credited with successful collaboration among globally dispersed teams.
- Experience in financial services or financial technology is advantageous.
- Hold a Bachelor's degree in relevant fields; equivalent experience is also considered.
- Relevant certifications such as CISSP, CEH will be advantageous but not required.
- Proficiency in languages like Solidity, Rust, Go, Move, JSON, and Python is highly beneficial.
- Prior experience in remote work environments is preferred.
Additional Information:
- This position is eligible for day-one PERM sponsorship for qualifying candidates.
- The salary range starts at $200,000 and goes up to $257,500.
- Annual Bonus Target: 17.5%
- Benefits include Equity offerings, Medical, Dental, Vision, and 401(k) plans, along with discretionary vacation policy, paid sick leave, and annual paid holidays in the U.S.
- Circle is staunchly committed to equal employment opportunities, valuing diversity and inclusivity without discrimination based on race, religion, gender, age, or disability status. Circles participates in the E-Verify Program as legally mandated in specific locations.