Job Closed

This listing is no longer active.

Veda Labs. logo
Veda Labs.

An AI platform for retailers and other businesses to navigate through the COVID Era with it's superior technology.

Smart Contract Security Engineer

Security EngineerSecurity EngineerOtherRemoteSeniorTeam 11-50Since 2019H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

93 days ago

Salary

0

Seniority

Senior

Bachelor Degree3 yrs expEnglishOracle DatabaseSolidityHashiCorp Vault

Job Description

Smart Contract Security Engineer

Veda Labs.

• Lead end-to-end security audits of Veda's smart contract systems, with focus on the BoringVault architecture, cross-chain bridge integrations, and complex DeFi composability patterns • Identify novel attack vectors in vault accounting logic, share pricing mechanisms, and multi-strategy capital allocation systems • Partner with external audit firms to coordinate comprehensive reviews and effectively address findings • Evolve Veda's smart contract security standards, testing methodologies, and deployment practices • Mentor smart contract engineers on secure coding patterns, gas optimization trade-offs, and defense-in-depth strategies • Serve as the security subject matter expert in architecture discussions and design reviews • Build and maintain custom security tools including fuzzing harnesses, invariant testing frameworks, and symbolic execution pipelines • Research emerging attack patterns in DeFi and translate findings into defensive measures • Contribute to Veda's security knowledge base through internal documentation and post-mortems • Design and implement real-time monitoring systems for on-chain anomaly detection • Lead on-chain security incident response when needed, including root cause analysis and remediation • Maintain security runbooks and escalation procedures for the engineering team

Job Requirements

  • EVM Expertise: Deep understanding of EVM architecture, opcode-level behavior, gas mechanics, and storage patterns.
  • Solidity Mastery: 3+ years writing and auditing production Solidity code, with strong instincts for identifying subtle vulnerabilities in complex contract systems
  • DeFi Security Experience: Proven track record conducting security audits or vulnerability research in DeFi protocols. You understand composability risks, oracle dependencies, and economic attack vectors
  • Audit Methodology: Experience performing comprehensive smart contract audits from threat modeling through remediation validation
  • Security Tooling: Hands-on experience with tools like Foundry, Echidna, Slither, Manticore, or similar frameworks for testing and analysis
  • Communication: Exceptional written communication skills. You can translate complex technical vulnerabilities into clear, actionable guidance for both technical and non-technical stakeholders
  • Proven Security Track Record: Professional experience at a tier-1 audit firm, security role at a leading DeFi protocol, or top placements in competitive audit contests
  • Familiarity with MEV infrastructure, mempool analysis, and transaction ordering dependencies
  • Understanding of cross-chain security challenges including bridge architecture, message verification, and multi-chain state synchronization
  • Track record of discovering high-severity vulnerabilities in production DeFi protocols
  • Active participation in security communities (competitive CTFs, bug bounties, or published research)
  • Experience with symbolic execution and formal verification methods
  • Experience with non-EVM environments (Solana, Move)

Benefits

  • Health Coverage
  • Flexible Time Off
  • Remote-First by Design
  • Parental Leave
  • Learning & Development

Related Categories

Related Job Pages

More Security Engineer Jobs

• The Security Manager safeguards the confidentiality, integrity, and availability of our systems, data, facilities, and medical operations. • This role leads security governance, risk management, and compliance efforts; oversees security operations and incident response; and partners with IT, Clinical Operations, Privacy, and Compliance to ensure our organization meets regulatory requirements (e.g., HIPAA Security Rule) and industry frameworks (e.g., SOC 2, HITRUST). • Accountable for proactive risk reduction, rapid detection and response to threats, and building a strong security culture across the company. • Work closely with our engineering team and third-party security partners to define secure coding standards, validate security controls, and coordinate penetration testing and remediation for a modern cloud-native stack built on Azure, .NET Minimal APIs, Blazor WASM, MAUI, and PostgreSQL.

United States
Job Closed
GenLogs logo

Head of Information Security

GenLogs

The Truck Intelligence Platform

OtherRemoteTeam 51-200Since 2023H1B No Sponsor

• Own the Security Program — End to End • Design and own GenLogs’ company-wide information security strategy • Define the security roadmap under constrained resources • Set enforceable security requirements across engineering, operations, and corporate IT • Maintain independence from DevOps while collaborating closely with them • Serve as the final authority on security risk acceptance • Identify and Protect Existential Assets (Day-Zero Focus) • Own IAM strategy across all systems • Enforce least-privilege, role-based access, MFA, and privileged access reviews • Define what incident response looks like before it happens • Build and maintain a phased execution plan • Own SOC 2 end-to-end • Ensure compliance does not degrade operational velocity • Brief the C-suite clearly on risk tradeoffs and consequences • Position GenLogs for more sensitive enterprise and government work

United States
Job Closed
itD logo

Security Engineer

itD

Formerly known as iTalent Digital. We are a different kind of global software development and technology consultancy.

OtherRemoteTeam 501-1,000Since 2005H1B No Sponsor

• Own and drive remediation of security vulnerability tickets across commercial and regulated environments • Coordinate closely with vulnerability management and site reliability engineering teams to ensure timely remediation within SLA • Analyze vulnerability trends to identify process gaps and recommend improvements to triage and remediation workflows • Track remediation progress and provide weekly status updates to management, including risk identification and mitigation plans • Collect and maintain remediation evidence to support compliance audits and regulatory requirements (e.g., PCI, SOC 2, C5) • Support secure operations across cloud and Linux-based infrastructure environments

Arizona
Job Closed
itD logo

Security & Legal Compliance Specialist

itD

Formerly known as iTalent Digital. We are a different kind of global software development and technology consultancy.

OtherRemoteTeam 501-1,000Since 2005H1B No Sponsor

• Analyze existing legal security commitments and compare them against actual product security practices to identify gaps and risks. • Conduct interviews with legal, security, and product stakeholders to document current security posture and contractual commitments across products. • Develop and maintain a comprehensive matrix mapping product security controls to contract terms, legal exhibits, and public-facing statements. • Draft and propose updates to security-related contract language, including security exhibits, standard customer terms, and negotiation fallback positions. • Partner cross-functionally with legal, product, and security teams to align public website security content with verified security practices. • Translate technical security controls and practices into clear, defensible legal language suitable for customer contracts and public documentation. • Create and manage a project plan with real-time progress tracking, weekly status reports for stakeholders, monthly leadership briefings, and an end-of-project executive summary with findings and recommendations.

Arizona
Job Closed