Senior Security Engineer
About the Company
CertiK specializes in blockchain security with advanced AI technology to safeguard blockchain protocols and smart contracts. Its founders are esteemed professors originating from Yale and Columbia Universities, working towards securing the web3 environment. The company integrates academic innovations into enterprise solutions, ensuring safety and accuracy for critical applications.
About the Role
The main duty of this position involves overseeing CertiK’s security services. Focusing on the intersection of cybersecurity and blockchain, CertiK's security services incorporate activities such as security consulting, evaluations, smart contract and blockchain auditing, smart contract verification, penetration testing, and more.
Responsibilities
- Develop and implement strong security solutions, monitor security risks, and protect sensitive data to ensure CertiK's systems and networks are secure.
- Collaborate with security teams to design tools that detect vulnerabilities in smart contracts and enhance audit efficiency using various methods like formal verification, static analysis, and fuzzing.
- Define and enforce security policies, handle vulnerabilities, and respond to security incidents with effective procedures.
- Review source code and security designs, perform threat assessments, and offer direct guidance to software development teams.
- Establish a database of blockchain security vulnerabilities based on historical attacks and common vectors.
- Analyze abnormal blockchain transactions, assess their potential impacts on projects in the DeFi realm, and develop corresponding detection mechanisms.
- Conduct security tests on web, mobile (Android and iOS), and handle external and internal network assessments.
- Proactively monitor and safeguard against cyberattacks, while also providing cybersecurity guidance and technical support.
Requirements
- Hold a Master's degree in Security Informatics, Cybersecurity, or related fields.
- Possess deep familiarity with solidity, smart contracts, and blockchain technology.
- Expertise in threat modeling, binary code review, and security assessment for languages like Solidity, JavaScript, Python, C, C++, PHP, Go, and Rust.
- Well-versed in cloud platforms, including AWS, Azure, and GCP.
- Strong proficiency in Python and JavaScript for development and scripting tasks.
Compensation
The expected salary range for this role in the U.S. is $120,000 to $190,000 annually. The final offer will be based on the skills and experience of the selected candidates.
CertiK accepts applications on a rolling basis.
CertiK ensures equal employment opportunities and encourages diversity within their teams.