Senior Security Engineer
Remote
Full Time Senior-level / Expert USD 200K - 230K
Phantom
Your trusted companion for NFTs & DeFi on Solana, Ethereum, & PolygonPhantom is revolutionizing the way millions of people interact with the crypto ecosystem. Our self-custodial wallet offers a seamless, unified experience for managing accounts and tokens across Solana, Bitcoin, Ethereum, and Polygon, empowering users with a single, convenient solution. By integrating cutting-edge security features and launching innovative tools for an enhanced personalized user experience, Phantom is able to provide a next-generation, safe and easy to use self-custodial wallet for everyone. This strategy has allowed Phantom to achieve significant milestones including surpassing 7 million MAU’s, reaching #1 in the Google play store finance category, and consistently trending as a Top 50 app across all categories, right next to X, PayPal, Coinbase, and ChatGPT.
ResponsibilitiesSecurity is core to the product and the reason why millions of people trust Phantom to securely store their crypto assets. As a Security Engineer, you will be responsible for identifying, exploiting and mitigating security vulnerability risks in our software applications, as well as conducting security assessments and investigations. You will work closely with development teams to ensure that security is integrated throughout the software development lifecycle. Join us on our mission to make the digital economy safe and easy to use for everyone.
- Perform regular security assessments on new projects, infrastructure and code.
- Identify and mitigate security vulnerabilities in code, systems and networks through manual testing, automated tools, threat modeling and threat intelligence.
- Keep up to date with the latest offensive security techniques, application security threats, and best practices in the blockchain space, and recommend improvements to security posture
- Write detailed reports of your findings and present them to management and technical teams, and help to prevent real-world attacks.
- Work with development teams to implement secure coding practices and to ensure the integrity of cryptographic functions.
- Collaborate with other teams such as development and platform to ensure that security is integrated throughout the organization.
- Participate in incident response and incident management activities.
- Leading large cross-team projects.
- 7+ years of experience in offensive security techniques, with a focus on blockchain technology and cryptography.
- Strong understanding of security risks, vulnerabilities and concepts in web and mobile applications.
- Proficient in code review for JavaScript & Typescript with a strong understanding of application security threats and offensive security techniques.
- Write PoC’s to prove vulnerabilities, review and ensure that patch code meets the standards set by the repository owners and maintainers.
- Strong analytical and problem-solving skills.
- Good verbal and written communication skills.
We are a team of experienced builders in the blockchain and crypto industry. Our journey began from users seeking an easy, seamless path to accessing the crypto ecosystem. This passion fueled our exponential growth, allowing us to onboard over 7M+ active users in just over three years; with our user base growing weekly. Our dedication to a secure and seamless user experience has made us the leading wallet on Solana as well as our multi-chain approach enhances our platform's versatility, meeting the needs of a diverse and growing user base. By staying at the forefront of technology and user expectations, we continue to innovate and set industry standards on self-custodial crypto wallets.
There has never been a better time to work in crypto to help shape the future of innovation with a focus around the wallet experience!
- First impressions matter: Wallets are responsible for a users first impression with crypto and onboarding new users into crypto. By ensuring that a user has a great first-time experience with crypto, we can help supercharge the growth of the entire ecosystem.
- Make crypto easier to navigate: There is no easy way for a user to discover and navigate all that crypto has to offer. Wallets have a unique opportunity to help users not only onboard to crypto but also stay retained by exploring new things to do.
- We live in a multi-chain world: We currently support Solana, Ethereum, Polygon and Bitcoin with more networks to come in the new future. We are focused on creating a unified, multi-chain crypto experience for users.
Benefits
- Competitive salary and equity
- Comprehensive insurance (medical/dental/vision) — 100% covered
- Stipend for your ideal remote set-up
- Flexible hours and a supportive remote environment
- Unlimited vacation: Take time when you need it (and we really mean it!)
- 401(k) retirement plan
- Monthly wellness benefit
- Weekly meal benefit
- Global off-sites
We strongly encourage candidates of all different backgrounds to apply. We believe that our work is stronger with a variety of perspectives, and we’re eager to further diversify our company. If you have a background that you feel would make an impact at Phantom, please consider applying. We’re committed to building an inclusive, supportive place for you to do the best work of your career.
The target base salary for this role will range between $200,000 to $230,000 with the addition of equity and benefits. This is determined by a few factors including your skillset, prior relevant experience, quality of interviews and market factors (such as location) at the point in time of offer.
Tags: Application security Blockchain ChatGPT Crypto Cryptography Finance Incident response JavaScript Offensive security SDLC Security assessment Strategy Threat intelligence TypeScript Vulnerabilities
Perks/benefits: Career development Competitive pay Equity / stock options Flex hours Flex vacation Health care Team events Unlimited paid time off Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.