Senior Security Engineer

Reposted 2 Days Ago
Be an Early Applicant
New York, NY, USA
In-Office
130K-160K Annually
Senior level
Artificial Intelligence • Blockchain
The Role
Lead design and deployment of enterprise security solutions, define and enforce security policies, manage vulnerability lifecycle and incident response, conduct threat modeling and security assessments, perform forensic investigations, guide secure development with static/dynamic analysis, and architect internal security tooling and detection capabilities.
Summary Generated by Built In
About the Company
Born from groundbreaking research at Columbia University and Yale University, CertiK is a leading Web3 security company focused on securing blockchain protocols, smart contracts, and decentralized applications through cutting-edge security research, formal verification, and AI-powered technology. Founded in 2017 and headquartered in New York City, CertiK provides end-to-end security solutions including smart contract audits, penetration testing, on-chain monitoring, incident response, and compliance services for some of the largest projects in the digital asset ecosystem.

Today, CertiK supports thousands of enterprise clients and Web3 projects globally, with a distributed international team spanning North America, Asia, and Europe. The company is backed by leading investors including Coatue, Goldman Sachs, Insight Partners, and Sequoia Capital, and has been recognized by organizations such as the World Economic Forum and CB Insights for its contributions to blockchain security innovation.

 
About the Role

The primary responsibility of this role is for CertiK’s security-related services. Intersecting cybersecurity and blockchain, CertiK’s security offerings include security consulting, security reviews, security auditing of smart contracts and blockchains, verification of smart contracts, penetration testing, and more. We are looking to hire someone with a passion for application security and penetration testing. This is a fun and challenging full-time position. If you are excited about hacking, threat modeling, scanning, auditing, designing, and enhancing the security of applications across the board then you will thrive in this role. While you work with clients, we will also provide you with plenty of opportunities to get involved with research and development efforts to help us raise the standards of blockchain security.

Responsibilities

  • Lead design/deployment of enterprise-grade security solutions to safeguard internal networks/applications/infrastructure, ensuring confidentiality/integrity/availability of mission-critical systems & data
  • Define/enforce organization-wide security policies/standards; own end-to-end vulnerability management lifecycle & lead cross-functional incident response with engineering/IT/compliance teams
  • Oversee real-time threat detection/response operations; conduct forensic investigations & drive root cause analysis for high-impact security incidents to inform long-term defense strategies
  • Manage/execute comprehensive security assessments across internal/third-party systems, including architecture reviews/endpoint security evaluations/infrastructure hardening initiatives
  • Guide secure development practices by applying advanced static/dynamic analysis to identify vulnerabilities & deliver remediation guidance to engineering teams
  • Conduct threat modeling/risk analysis for high-value systems to proactively identify/mitigate attack vectors & influence system/product architecture
  • Architect/maintain internal security tooling to expand detection coverage, streamline response workflows & enhance operational visibility
  •  

Requirements

  • Master’s degree in Computer Science, Software Engineering, Security Informatics, or related field.
  • Expertise in threat modeling/architectural risk assessment using structured methodologies (e.g., STRIDE/DREAD)
  • Advanced knowledge of SSDLC, including static/dynamic analysis/QA practices & end-to-end vulnerability lifecycle management (tracking/remediation coordination/verification)
  • Strong ability to conduct comprehensive security assessments across network infrastructure/application architecture/system configurations
  • Familiarity with cloud environments (AWS/Azure/GCP) & CI/CD deployment workflows; Proficiency in Java/Python with applied skills in secure coding/debugging/symbolic execution & internal tooling/automation scripting

Target annual salary compensation for this role performed is $130,000 to $160,000. The exact compensation at which this job is filled will be determined by the skills and experience of qualified candidates.


CertiK is proud to offer medical, vision, and dental insurance, 401(k) plan with company matching, life and accidental death and dismemberment insurance, HSA (with high deductible plan), FSA, and other benefits to all full-time employees, along with flexible paid time off and holidays. CertiK also offers a variable commission program for business development sales roles.
 
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.
 
CertiK is proud to be an equal opportunity employer. We will not discriminate against any applicant or employee on the basis of age, race, color, creed, religion, sex, sexual orientation, gender, gender identity or expression, medical condition, national origin, ancestry, citizenship, marital status or civil partnership/union status, physical or mental disability, pregnancy, childbirth, genetic information, military and veteran status, or any other basis prohibited by applicable federal, state or local law.
 
CertiK will consider for employment qualified applicants with criminal histories in a manner consistent with local and federal requirements.
https://www.eeoc.gov/sites/default/files/migrated_files/employers/poster_screen_reader_optimized.pdf
 
All CertiK employees are expected to actively support diversity on their teams, and in the Company.

Skills Required

  • Master's degree in Computer Science, Software Engineering, Security Informatics, or related field
  • Expertise in threat modeling and architectural risk assessment (e.g., STRIDE/DREAD)
  • Advanced knowledge of SSDLC, including static and dynamic analysis and vulnerability lifecycle management
  • Ability to conduct comprehensive security assessments across network infrastructure, application architecture, and system configurations
  • Familiarity with cloud environments (AWS, Azure, GCP) and CI/CD deployment workflows
  • Proficiency in Java and Python, including secure coding, debugging, symbolic execution, and automation scripting
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
133 Employees
Year Founded: 2018

What We Do

Founded in 2018 by professors of Yale University and Columbia University, CertiK is a pioneer in blockchain security, utilizing best-in-class AI technology to secure and monitor blockchain protocols and smart contracts. CertiK’s mission is to secure the cyber world. Starting with blockchain, CertiK applies cutting-edge innovations from academia into enterprise, enabling mission-critical applications to be built with security and correctness. CertiK is one of the fastest growing and most trusted companies in blockchain security and has become a true market leader. To date, we have collectively worked with over 1300 enterprise clients, helped secure over $90 billion worth of digital assets, and detected over 23,000 vulnerabilities in blockchain code. Our clients include leading projects such as Aave, Polygon, Binance Smart Chain, Terra, Yearn, and Chiliz. Our Q1 2021 revenues have more than quadrupled the revenue of the full 2020 year. Since Q1 2020, our team size has more than doubled, and this rate of growth will continue in 2021, creating a highly effective, remote-friendly culture with talents located worldwide. CertiK just raised over $60 million in Series B and B+ funding rounds in 2021. Our investors include top VCs like Tiger Global, Coatue Management, Shunwei Capital and Hillhouse Capital as well as industry leaders like Coinbase Ventures and Binance.

Similar Jobs

Crexi Logo Crexi

Senior Security Engineer

Real Estate • Sales • Software • PropTech
Easy Apply
Remote or Hybrid
United States
400 Employees
167K-227K Annually

Braze Logo Braze

Senior Security Engineer

Marketing Tech • Mobile • Software
Easy Apply
Hybrid
New York City, NY, USA
2000 Employees
149K-261K Annually
In-Office or Remote
50 Locations
17989 Employees
103K-165K Annually

Braze Logo Braze

Senior Security Engineer

Marketing Tech • Mobile • Software
Easy Apply
Hybrid
New York City, NY, USA
2000 Employees
129K-200K Annually

Similar Companies Hiring

Legora Thumbnail
Artificial Intelligence • Legal Tech • Software
New York, New York
700 Employees
Hanover Park Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
42 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account