Product Security Engineer

Security EngineerSecurity EngineerFull TimeRemote

Location

United States

Posted

57 days ago

Salary

Not specified

Vulnerability ResearchExploitationNative DevelopmentRustCFuzzingStatic AnalysisCode AuditingPenetration TestingBug Triage

Job Description

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more.

Role Description

At Aptos Labs we’re pioneering the future of web3 and need a passionate Product Security Engineer to help secure our core technologies. In this role, you’ll be at the forefront of safeguarding our Aptos core infrastructure and Aptos Labs products. Your proactive approach will help us identify and mitigate emerging threats, ensuring our systems remain resilient and trustworthy. You will work closely with our developers, influence security best practices, and lead initiatives that shape the future of web3 security.

Responsibilities

  • Analyze and assess novel and recurring security issues via design reviews, code audits, and penetration tests.
  • Design and build security tools, and develop mitigations, frameworks, and hardening strategies tailored for vulnerability prevention and detection.
  • Review and develop secure operational practices, and provide security guidance for engineers.
  • Respond to and triage reports from bug bounty programs.

Qualifications

  • B.S. or M.S. in Computer Science, a related technical field, or equivalent experience.
  • 3+ years of experience in vulnerability research and exploitation.
  • Experience with native development practices and common vulnerability patterns (e.g., Rust, C, etc.).
  • Experience with automated security analysis tooling and frameworks (fuzzing, static analysis, etc.).

Preferred Qualifications

  • Contributions to the security community (public research, blogging, talks in relevant conferences, etc.).
  • Experience with virtual machines or complex runtime environments, such as MoveVM (extra bonus), EVM, WASM, or LLVM-based runtimes, including their security models, sandboxing, and execution isolation.
  • Familiarity with smart contract programming languages (extra bonus for Move), security tools, and frameworks, including formal verification.

Benefits

  • 100% insurance premium coverage for medical, dental, and vision for you and your dependents (US Employees).
  • Equipment of your choice.
  • Flexible vacation time, 11 holidays, and floating company days off.
  • Competitive Salary.
  • Protocol Token Grants.
  • 401k matching (US Employees).
  • Fun and inclusive in-person and digital events.

Job Requirements

  • B.S. or M.S. in Computer Science, a related technical field, or equivalent experience.
  • 3+ years of experience in vulnerability research and exploitation.
  • Experience with native development practices and common vulnerability patterns (e.g., Rust, C, etc.).
  • Experience with automated security analysis tooling and frameworks (fuzzing, static analysis, etc.).
  • Preferred Qualifications
  • Contributions to the security community (public research, blogging, talks in relevant conferences, etc.).
  • Experience with virtual machines or complex runtime environments, such as MoveVM (extra bonus), EVM, WASM, or LLVM-based runtimes, including their security models, sandboxing, and execution isolation.
  • Familiarity with smart contract programming languages (extra bonus for Move), security tools, and frameworks, including formal verification.

Benefits

  • 100% insurance premium coverage for medical, dental, and vision for you and your dependents (US Employees).
  • Equipment of your choice.
  • Flexible vacation time, 11 holidays, and floating company days off.
  • Competitive Salary.
  • Protocol Token Grants.
  • 401k matching (US Employees).
  • Fun and inclusive in-person and digital events.

Related Categories

Related Job Pages

More Security Engineer Jobs

Managed Security Services Sales Specialist

Arctiq

Architecting intelligent IT solutions in Enterprise Security, Modern Infrastructure & Platform Engineering.

Security Engineer58 days ago
Full TimeRemoteTeam 201-500H1B No Sponsor

Managed Security Services Sales Specialist for Arctiq driving new revenue growth

CloudCyber SecuritySplunk
District of Columbia + 1 moreAll locations: District of Columbia, Washington
$150K / year
Security Engineer58 days ago
Full TimeRemoteTeam 501-1,000Since 2015H1B Sponsor

Staff Engineer advancing security mission at Discord

AWSCloudDockerGoogle Cloud PlatformKubernetesPythonRustTerraform
California
$248K - $279K / year

IT Cybersecurity

ENG

BIM built for the Field

Security Engineer58 days ago
Full TimeRemoteTeam 501-1,000Since 1989H1B Sponsor

Semi Senior Cybersecurity Analyst protecting infrastructure and data

AWSAzureCloudCyber SecurityDNSFirewallsGoogle Cloud PlatformLinuxPythonSplunkTCP/IP
United States

Senior Security Engineer – Security Program Delivery

Aya Healthcare

We’re a $8+ billion, rapidly growing workforce solutions provider in the healthcare industry. We deliver tech-enabled services that help healthcare organizations meet and manage their contingent labor needs. We build and manage tech-enabled marketplaces for national and local healthcare talent and deliver contingent labor management solutions through our proprietary software platform. At Aya, we’re obsessed with creating exceptional experiences for our clients, clinicians, and employees. Our team members are responsible for incomparable customer experience, and we know that happy employees are critical to maintaining happy clients. We foster an entrepreneurial, high-energy, low-bureaucracy culture and value innovative thinking and creative problem solving.

Security Engineer58 days ago
Full TimeRemoteTeam 5,001-10,000Since 2001H1B Sponsor

Senior Security Engineer at Aya Healthcare driving security program delivery.

AzureCloudDockerFirewallsKubernetesSDLCTerraform
United States
$170K - $190K / year