About the company
Kiln is the leading enterprise-grade staking platform, enabling institutional customers to stake assets, and to whitelabel staking functionality into their offering. Our platform is API-first and enables fully automated validators, rewards, and data and commission management. With over $4+ billion crypto assets being programmatically staked, Kiln has a particularly strong track record on Ethereum as we run over 4% of the network; this includes 30,000+ validators with 0 slashing events. The team is made up of over 52 ecosystem enthusiasts formerly at Google, Circle, Ledger, Chainalysis, and other leading technology and cryptocurrency companies. Join Kiln and help us make the web more secure, stable, decentralized, and fair!
Job Summary
Responsibilities:
📍Protect Kiln’s production protocols accros Kiln Onchain (dedicated staking and liquid staking protocols), Kiln DeFi (ERC-4626 vaults built on top of lending and RWA protocols), and Railnet (vault and validator infrastructure). 📍Design and execute smart contract security testing, including invariants, fuzzing, and exploratory formal verification. 📍Perform internal smart contract security audits and provide clear, actionable remediation guidance. 📍Own security sign-off for smart contract releases and act as a key decision-maker on security trade-offs. 📍Contribute to protocol-level threat modelling, including economic, governance, and composability risks. 📍Build and maintain smart contract security tooling: contract inventory, governance automation, monitoring, and alerting in production. 📍Continuously improve Kiln’s smart contract security framework: aligned with business growth, protocol complexity, and compliance requirements. 📍Act as the primary point of contact for smart contract security at Kiln, coordinating with external auditors and supporting security certifications. 📍Partner closely with Protocol, EVM, Infrastructure, and Product teams to embed security into design reviews, CI/CD, testing, and release workflows. 📍Stack: 📍Smart Contracts (EVM): Solidity, Vyper, Foundry, Certora 📍Software: Python, Golang 📍Infrastructure: AWS, Kubernetes, Web3Signer, Hashicorp Vault, Prometheus
Requirements
📍5+ years of engineering experience in Web3, with smart contracts running in production. 📍Strong hands-on experience with smart contract security, including audits, reviews, or protocol design. 📍Solid understanding of protocol-level threat models, including MEV and oracle manipulation, governance and economic attacks, and composability or systemic risk.
Looking for your next challenge? The world of crypto offers exciting roles in blockchain development, web3 innovations, and remote opportunities.





