Cantina Triager

Posted 23 Days Ago
Be an Early Applicant
29 Locations
Remote
Junior
Security • Cybersecurity
Securing the world’s most important code for blockchain and financial systems.
The Role
As a Bug Bounty Triager, you'll review and validate vulnerability reports, assess their impact, communicate with researchers, and improve the bounty program.
Summary Generated by Built In
About Spearbit & Cantina:

Founded in 2021 by former Ethereum Foundation Solidity engineers, Spearbit tackles Web3 security challenges. Our founding team built the leading blockchain language and secured the largest smart contract, protecting over $160B in value.

We're building Cantina, the "GitHub for Security", connecting security researchers with projects needing expertise. Our Cantina security platform has powered major competitions and serves the leading projects in Web 3. It currently supports collaborative security reviews, public and private security competitions, bug bounty programs, incident response, and AI code analyzer.

Similar to how cloud-security startups emerged previously, Cantina aims to be the definitive code-security platform for the future.

The Opportunity: We’re looking for a Bug Bounty Triager to join our team. In this role, you’ll be the first line of defense in reviewing vulnerability submissions, ensuring both speed and technical accuracy. Your work will help maintain the integrity of Cantina’s bounty ecosystem, foster trust between projects and whitehats, and raise the bar for security practices across the industry.

What you'll do:
  • Review, reproduce, and validate incoming vulnerability reports across smart contracts, DeFi protocols, and blockchain systems.

  • Assess severity and impact in the context of each project’s unique architecture and threat model.

  • Communicate with researchers to clarify missing details and provide constructive feedback on invalid or incomplete submissions.

  • Write clear and concise summaries for each validated report, including reproduction steps, impact analysis, and recommended mitigations.

  • Partner with Cantina’s program managers to ensure smooth workflows between security researchers, project teams, and internal stakeholders.

  • Contribute to the design and continuous improvement of Cantina bounty programs, workflows, and tooling.

  • Support other Cantina Security services that require triaging expertise.

  • Serve as a trusted bridge between projects and whitehats, balancing fairness, transparency, and accuracy in outcomes.

What we’re looking for:
  • Strong foundation in smart contract security, including common vulnerability classes and exploitation techniques.

  • Ability to read and analyze Solidity and other EVM-compatible languages; familiarity with Rust-based blockchains (e.g., Solana, Substrate) or other blockchain infrastructure.

  • Experience reviewing code bases, identifying vulnerabilities, and reproducing exploits.

  • Understanding of DeFi mechanisms (e.g., AMMs, lending protocols, bridges) and ability to quickly learn new protocol designs.

  • Familiarity with vulnerability disclosure workflows and bug bounty ecosystems.

  • Excellent written communication: able to explain technical issues clearly, neutrally, and with professionalism to both security engineers and non-technical stakeholders.

  • Detail-oriented and organized, able to manage a steady flow of incoming reports while maintaining high accuracy.

Benefits
  • Competitive salary and performance-based compensation opportunities

  • Opportunity to work in an early-stage startup with a talented and passionate team

  • Exposure to high-profile clients in the blockchain and cryptocurrency industry

  • Comprehensive health, dental and vision benefits

  • 401k matching program

Join Spearbit and help us build the future of code security!

Top Skills

Blockchain Systems
Evm-Compatible Languages
Rust
Solidity
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Miami, Florida
124 Employees
Year Founded: 2023

What We Do

Cantina is the leading security platform connecting top researchers and purpose-built tools to protect critical code. Backed by Spearbit’s expert network, we help blockchain and financial teams scale security with high-impact solutions.

Similar Jobs

GitLab Logo GitLab

Architect

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
Remote
30 Locations
2500 Employees
158K-237K Annually

GitLab Logo GitLab

Back-end Engineer

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
In-Office or Remote
33 Locations
2500 Employees

Tulip Logo Tulip

Solutions Engineer

Enterprise Web • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
28 Locations
310 Employees

MacPaw Logo MacPaw

Growth Manager for CleanMyPhone

Information Technology • Security • Software • Cybersecurity • App development • Data Privacy
Remote or Hybrid
28 Locations
550 Employees

Similar Companies Hiring

Silverfort Thumbnail
Security • Sales • Information Technology • Cybersecurity • Automation
GB
507 Employees
Oso Thumbnail
Software • Security • Infrastructure as a Service (IaaS)
New York, New York
36 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account