Job Description
As a Blockchain Security Engineer, you will be responsible for conducting comprehensive security audits across the entire blockchain business chain. Your role involves performing vulnerability scanning and simulated attack scenarios to identify potential risks and proactively driving remediation efforts with business teams.
Key Responsibilities
- Full-chain Security Audits: Conduct end-to-end security assessments and penetration testing for blockchain operations. Identify vulnerabilities through scanning and practical attack simulations, while actively promoting risk mitigation and system improvements.
- Smart Contract Security: Perform code security audits for smart contracts. Accurately detect logic flaws, improper access controls (privilege escalation), and other potential vulnerabilities to minimize financial risks and ensure secure on-chain operations.
- Infrastructure & Cloud Security: Participate in penetration testing and security hardening for cloud services and terminal environments. Manage daily configuration and optimization of security protection rules, handling routine security incidents and emergency issues.
Job Requirements
- Bachelor's degree or higher preferred, with computer science, information security or related majors being advantageous.
- 3-5 years of relevant work experience, particularly with practical expertise in information security or blockchain security domains.
- In-depth knowledge of blockchain infrastructure and smart contract technology; Familiarity with common Web3 attack vectors and corresponding defense strategies (Proficient with audit tools like Slither/Mythril/Echidna and environments like Foundry/Hardhat).
- Strong cybersecurity foundation with expertise in penetration testing, vulnerability discovery, network traffic analysis, and malware analysis (Skilled with industry tools including Burp Suite, Nmap, Wireshark, and IDA Pro).
- Understanding of cloud-native security architecture design and underlying technologies.
- Experience configuring AWS security components (KMS, ASM, IAM, CloudTrail) and using cloud audit tools like Prowler.
- Proven track record in large-scale security projects with independent troubleshooting capabilities; Hands-on experience in cloud security offensive/defensive operations.
Benefits
- Highly competitive compensation package
- Flat organizational structure with diverse, inclusive team culture
- Generous paid time off (annual/sick leave) with weekends guaranteed
- 100% global remote work flexibility
Apply directly at: https://davionlabs.bamboohr.com/careers/57?source=aWQ9MzM%3D