About the company
Phantom makes it safe & easy for you to store, buy, send, receive, swap tokens and collect NFTs on the Solana blockchain.
Job Summary
Responsibilities
šSecurity is core to the product and the reason why millions of people trust Phantom to securely store their crypto assets. As a Security Engineer, you will be responsible for identifying, exploiting and mitigating security vulnerability risks in our software applications, as well as conducting security assessments and investigations. You will work closely with development teams to ensure that security is integrated throughout the software development lifecycle. Join us on our mission to make the digital economy safe and easy to use for everyone. šPerform regular security assessments on new projects, infrastructure and code. šIdentity and mitigate security vulnerabilities in code, systems and networks through manual testing, automated tools, threat modeling and threat intelligence. šKeep up to date with the latest offensive security techniques, application security threats, and best practices in the blockchain space, and recommend improvements to security posture šWrite detailed reports of your findings and present them to management and technical teams, and help to prevent real-world attacks. šWork with development teams to implement secure coding practices and to ensure the integrity of cryptographic functions. šCollaborate with other teams such as development and platform to ensure that security is integrated throughout the organization. šParticipate in incident response and incident management activities. šLeading large cross-team projects.
Qualifications
š7+ years of experience in offensive security techniques, with a focus on blockchain technology and cryptography. šStrong understanding of security risks, vulnerabilities and concepts in web and mobile applications. šProficient in code review for JavaScript & Typescript with a strong understanding of application security threats and offensive security techniques. šWrite PoCĆ¢ĀĀs to prove vulnerabilities, review and ensure that patch code meets the standards set by the repository owners and maintainers. šStrong analytical and problem-solving skills. šGood verbal and written communication skills.