Figment powers the future of Web3 through industry-leading blockchain infrastructure. As the leading provider of staking solutions, we help 500+ institutional clients optimize their crypto rewards, including top exchanges, asset managers, wallets, foundations, custodians, and major token holders. Our clients trust Figment for a comprehensive suite of services, including reward optimization, cutting-edge API development, detailed rewards reporting, seamless partner integrations, governance support, and slashing protection. Backed by a team of passionate and intelligent Figmates, with a 100% remote-first global presence across 12 countries, our company is on a mission to accelerate the adoption, growth, and long-term success of the Web3 ecosystem. We’re building the infrastructure that will power the decentralized future. As a fast-growing tech company, we’re looking for builders and innovators—people who thrive in the face of uncertainty and are motivated to make an impact. We are also looking for true teammates - people who are genuine, humble, and driven to level up together.
Senior Red Team Operator
Location
Worldwide
Posted
5 days ago
Salary
$165K - $180K / year
Seniority
Senior
Job Description
Senior Red Team Operator
Figment
Role Description As a senior member of the Figment Security Team, you'll plan and run full-scope adversary emulation across all of Figment's products and platforms, from conventional cloud and application infrastructure to build pipelines and crypto systems. You'll own engagements end-to-end: evaluating environments to find vulnerabilities, building the attack scenarios to prove them out, and seeing your findings drive real fixes. This role is as much about partnership as it is about offense. You'll work directly with stakeholders and the blue team to communicate findings clearly, recommend practical mitigations, and help strengthen our overall security posture. How you will make an impact - Plan and execute red team engagements, pentests, and ad-hoc assessments against cloud, development pipelines, web and application layers, source code, and more. - Apply attacker tactics, techniques, and procedures safely within Figment environments, including detection-evasion work. - Produce clear reports and presentations tailored to both technical and executive audiences. - Partner with stakeholders, including technical staff, leadership, and legal counsel, to translate findings into risk-appropriate, actionable recommendations. - Collaborate with the blue team to suggest mitigations, validate fixes, and improve defensive coverage. - Mentor blue team members and lead cross-team exercises such as purple teaming. - Support incident response with offensive security technical expertise and contribute to post-incident action plans. - Build and improve red team tooling, scripts, infrastructure, methodologies, and documentation. Qualifications - Experience with and strong understanding of cloud platforms, CI/CD pipelines, and supply chains. - Demonstrated use of AI tools to accelerate offensive work (LLM-assisted code review, payload generation, recon, report drafting), with sound judgment about where they help versus where manual testing is required. - Offensive expertise in container orchestration: attacking and escaping Docker and Kubernetes (container breakout, RBAC abuse, misconfiguration exploitation). - Experience performing API and web application assessments. - Experience performing source code review for security flaws. - Experience building automations that chain red team tooling together, cutting manual effort across recon, exploitation, and reporting. - Strong written and verbal communication conveying findings, risk, and remediation to engineers, stakeholders, and executives. Bonus if you have - Industry certifications such as OSCP/OSCE, OSEP, OSWE, GPEN, GCPN, GWAPT, or GXPN. - Solid understanding and experience working with GitHub and GitHub Actions. - Programming skills as well as the ability to read and assess applications written in multiple languages such as Go, Rust, and Ruby. - Understanding of security risks for blockchain and crypto. Benefits - 100% remote-first environment. - 4 weeks of PTO that kick in day one, with an additional 1 week of flex days. - Extended company-paid health benefits that kick in day one. - Best-in-class parental leave and flexible arrangements. - A home office stipend to create a space that you enjoy working in. - Monthly Wi-Fi reimbursement. - A yearly Learning & Development budget. - 401K (US) or RRSP match (Canada). - Stock Options in the company. - Annual on-site company gatherings and retreats to inspire team bonding, collaboration, and fun! Compensation - The US base salary range for this position is USD $165,000 - $180,000. - The CAD base salary range for this position is CAD $165,000 - $180,000. - This range reflects base salary only, and does not include additional compensation, sales incentives or benefits. Interview process - During your first Recruiter Call, you will be provided with more information about Figment, the position and what to expect for the rest of the interview process. - We aim for the entire process to take around 2–4 weeks from initial screen to offer.
Related Guides
Related Categories
Related Job Pages
More QA Engineer Jobs
Software Quality Engineer, Tech & Data Team
Thomann.ioWe are creating the most inspiring shopping experience for musicians
• Develop and enforce quality standards and goals across our software systems, services, and applications. • Design, build, and maintain an efficient automated testing environment while continuously educating the software engineering team on best practices. • Collaborate closely with Software Engineers, System Architects, Organizational Developer, UI/UX Designers, and product owners to deliver a high-quality product. • Advocate for a strong testing mindset throughout the organization to ensure quality remains a top priority. • Work with the support team to assess, evaluate, and prioritize incoming issues based on their severity and potential impact.
Freelance Software Tester, Magenta TV
TestlioWe power remote, flexible, on-demand QA, QE, and DX for AMEX, Viacom, Microsoft, Netflix, SAP, and more. #WeAreHiring
• Participate in our client's project, testing their app to ensure the highest possible quality. • Your work will help them improve their services for users throughout Poland. • Create an account on our platform to receive testing tasks. • Use our website for defect tracking and receive materials for testing.
• Validate data accuracy, completeness, and consistency across multiple systems. • Perform data quality testing for ETL/ELT pipelines and reporting solutions. • Write complex SQL queries for data validation and reconciliation. • Analyze and troubleshoot data discrepancies between source and target systems. • Review and debug Python-based data pipeline code. • Collaborate with engineers and stakeholders to maintain data integrity.
Senior QA Manager – Mobile Games
SOFTGAMESWe are an instant gaming company. We develop casual, truly social games that can be played instantly across all devices.
• Own QA for one of our largest live mobile games across iOS and Android • Ensure high-quality releases through effective test planning, execution, regression testing, and staged rollout support • Define practical QA coverage for devices, OS versions, store builds, SDKs, ads, IAPs, analytics, and remote config • Identify, prioritize, and document issues with clear, actionable bug reports • Drive QA automation and continuously improve testing efficiency and coverage • Collaborate closely with developers, product managers, and external QA partners • Monitor live quality, investigate crashes, ANRs, performance issues, and prevent regressions • Provide clear release readiness assessments and go/no-go recommendations • Maintain test documentation, release reports, and changelogs in Jira & Confluence • Champion a quality-first mindset across the team


