Product Security Engineer

🕒 2 dias atrás

🇩🇪 Alemanha – Remoto

💵 $75.000 - $85.000 / ano

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of MLabs

MLabs

51 - 200 funcionários

A MLabs Consulting ajuda a configurar especificações de projetos, implementar, gerenciar e manter projetos técnicos para IA, Fintech, Tecnologia da Informação e mais. Somos especializados em programação funcional, compiladores, IA, DevOps e desenvolvimento full-stack.

Descrição

• Conduct end-to-end security assessments of blockchain-based systems, spanning cryptographic primitive design, protocol architecture, smart contract implementation, and deployed infrastructure. • Own threat modeling and security architecture reviews across all product phases. • Identify real-world vulnerabilities through rigorous hands-on code reviews, adversarial testing, and the development of proof-of-concept exploits for native services, EVM-compatible contracts, cross-chain bridges, and consensus-layer components. • Partner directly with core engineering teams to translate complex cryptographic and protocol-level risks into prioritized, actionable remediation workflows. • Define and enforce security gates prior to production deployment. • Build, scale, and improve security tooling, fuzzing infrastructure, and CI/CD security automation to maximize security coverage efficiently. • Track emerging blockchain and Web3 attack patterns, map them to the internal codebase, and drive proactive mitigation strategies.

🎯 Requisitos

• Proven track record of hands-on vulnerability discovery and security testing across blockchain protocols, smart contracts, nodes, and APIs, with a demonstrated ability to identify deep architectural bugs beyond automated scanning. • Strong threat modeling and security architecture review experience applied directly to distributed cryptographic systems. • Direct experience assessing cross-chain protocols, threshold signature schemes, or other cryptographic systems with complex trust assumptions, including the auditing or breaking of cross-chain bridges. • Deep working knowledge of applied cryptography (e.g., BLS signatures, pairing-based schemes, polynomial commitments, and Fiat-Shamir constructions) and the ability to reason about cryptographic failure modes in production environments. • Ability to analyze trust model tradeoffs, including state proof, multisig, and oracle attestation models, and evaluate their impact on the broader attack surface. • Mastery of blockchain security and secure coding practices across both EVM-compatible and non-EVM chains. • Proficiency with security testing tooling, including static analysis, dynamic analysis, and fuzzing, alongside experience developing custom fuzzing harnesses or security test infrastructure. • Strong ability to read, review, and audit cryptographic code written in Rust and/or Java. • Clear understanding of memory safety, constant-time correctness, secret handling, and the unique security risks at JNI boundaries. • Experience designing and operating grammar-aware fuzzing campaigns against gRPC, JSON-RPC, or protocol-level endpoints. • Experience building classifier pipelines to isolate security signals from noise, or building custom security automation tooling. • Prior security work focused on Ethereum consensus clients or production threshold signature systems. • Experience integrating AI-assisted workflows into security review and triage processes.

🏖️ Benefícios

• Competitive salary and compensation package. • Opportunity to work at the forefront of enterprise Web3 infrastructure and cryptographic innovation. • Collaborative, high-caliber engineering environment focused on solving complex, large-scale distributed systems challenges. • Flexible working arrangements and comprehensive professional growth opportunities.

Candidatar-se

Vagas Similares

🕒 3 dias atrás

Avnet

10.000+ funcionários

🤝 B2B

🔧 Hardware

☁️ SaaS

Business Information Security Officer serving as a strategic partner and managing cybersecurity at Avnet. Advising business units on risk management, compliance, and security measures.

🇩🇪 Alemanha – Remoto

⏰ Tempo Integral

🟠 Sênior

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Junho 6

WBS

201 - 500

Trainer for security expertise remotely at WBS TRAINING. Focusing on competency development for course participants with a strong educational approach.

🇩🇪 Alemanha – Remoto

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇩🇪 Alemão obrigatório

🕒 Junho 6

WBS Training

1 - 10

📚 Educação

💸 Finanças

🤝 B2B

WBS TRAINING seeks a passionate instructor for competency development in security and education. Responsible for online lessons and curriculum design in a remote setup.

🇩🇪 Alemanha – Remoto

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Junho 4

Palo Alto Networks

10.000+ funcionários

🔒 Cibersegurança

🏢 Corporativo

Technical advisor focusing on CyberArk PAM solutions for customers in EMEA. Building relationships and guiding customers on security best practices.

🇩🇪 Alemanha – Remoto

💰 $1.000.000 Seed Round - Morta Security em 2013-02

⏰ Tempo Integral

🟡 Pleno

🟠 Sênior

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇩🇪 Alemão obrigatório

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Maio 29

CrowdStrike

5001 - 10000

🔒 Cibersegurança

☁️ SaaS

🤖 Inteligência Artificial

CrowdStrike's Sr. Security Researcher II developing automated solutions for data processing and vulnerability research in cybersecurity. Collaborating with teams to publish research findings.

🗣️🇺🇸🇬🇧 Inglês obrigatório