Create New Account
Sign up to continue searching for suitable jobs in Web 3.0

OR
Terms of Use
Already have an account?

Log In to Your Account
Log in to continue searching for suitable jobs in Web 3.0

OR
Don’t have an account?
Block
Staff Product Security Engineer
atĀ Block
2 days ago | 20 views | Be the first one to apply

Staff Product Security Engineer

Full-time
Australia

About the company

Block is one company built from many blocks, all united by the same purpose of economic empowerment. The blocks that form our foundational teams — People, Finance, Counsel, Hardware, Information Security, Platform Infrastructure Engineering, and more — provide support and guidance at the corporate level. They work across business groups and around the globe, spanning time zones and disciplines to develop inclusive People policies, forecast finances, give legal counsel, safeguard systems, nurture new initiatives, and more. Every challenge creates possibilities, and we need different perspectives to see them all. Bring yours to Block.

Job Summary

You Will

šŸ“Build and maintain security tools: Develop and mature internal security services that protect source code, automate vulnerability detection, and support secure SDLC practices. šŸ“Contribute to AI-based solutions: Work on AI initiatives for vulnerability detection and remediation, including integrations with LLMs across a range of providers. Our contributions extend to experimental tools that push traditional security boundaries, such as Block's open-source Codename Goose. šŸ“Lead security engineering initiatives: We are a cross functional team and often collaborate with domain specific engineering functions such as CI/CD teams, directly consult with product teams, participate in audits alongside our GRC team, and help respond to security incidents where appropriate. šŸ“Mentor and elevate: Foster a culture of mentorship and knowledge sharing within a senior team distributed across the US, Canada, and Australia. šŸ“Contribute to vulnerability management: Identify and submit vulnerabilities, support priority remediation, and engage with the broader vulnerability management program. šŸ“Operate across products: Apply your expertise to secure a variety of products and services within Block's portfolio, including complex distributed systems.

##You Have šŸ“Familiarity with SAST tooling: At Block we make heavy use of SAST tools to help prevent bad patterns at scale. We are heavy users of CodeQL and Semgrep but built our code-security program to allow for tooling flexibility. šŸ“Deep knowledge in vulnerability mechanics and mitigation strategies: We believe that looking at security through an offensive lens allows us to provide better guidance and tooling for our partner teams. šŸ“The role does not primarily involve pentesting but an offensive security mindset can help improve the quality of our detection and remediation efforts. šŸ“AI and automation interest: ProdSecEng has a culture of building and automating security. We love using the best tools for the job and have a passion for leveraging emerging technologies such as AI to better protect our customers. šŸ“Strong engineering skills: Comfortable writing secure code, reviewing code for security issues, automating workflows, and working within (and securing) GitHub-based environments is vital.

Looking for your next challenge? The world of crypto offers exciting roles in blockchain development, web3 innovations, and remote opportunities.

Similar jobs

1 day ago | 12 views | Be the first one to apply
Full-time
Phoenix
1 day ago | 11 views | 1 applications
Full-time
Remote
$146,000 To $166,000 per year
1 day ago | 6 views | Be the first one to apply
Full-time
Remote, United States
$287,000 To $300,000 per year
1 day ago | 11 views | Be the first one to apply
Full-time
Remote, United States
$122,000 To $150,000 per year
1 day ago | 11 views | Be the first one to apply
Full-time
San Jose, North America
$240,000 To $360,000 per year