Consensys

Consensys

Consensys is a blockchain software company providing trusted web3 products. MetaMask, their flagship self-custodial wallet, serves over 100 million users for identity, asset management, and web3 exploration.

Internet Software & Services
251-1K
Founded 2014
$725M raised

Description

  • Determine the root cause and severity of vulnerabilities reported through the bug bounty platform.
  • Interface with ethical hackers, triage vulnerability reports, and guide engineering teams to resolution.
  • Document vulnerabilities clearly so engineering teams can act quickly.
  • Write code to support security engineering projects and fix vulnerabilities in MetaMask client applications.
  • Develop AI tooling to help determine and resolve vulnerabilities.
  • Assess security risks in applications and ensure remediation within established SLAs.
  • Support new feature development through design reviews, threat modeling, security testing, and code reviews.
  • Identify gaps in the secure software development lifecycle and lead efforts to address them.
  • Validate that security patches fully address reported vulnerabilities and check for bypasses.
  • Build automation, security controls, and developer education to prevent future vulnerabilities.

Requirements

  • 6+ years of experience building and securing software, including hands-on product or application security experience.
  • Experience securing modern backend systems, web applications, and APIs.
  • Experience performing threat modeling, security design reviews, and vulnerability assessment.
  • Experience securing JavaScript-based applications across web and/or mobile; Node.js, React, and React Native are preferred.
  • Strong coding skills with the ability to work directly with engineers to identify and fix vulnerabilities or build secure solutions.
  • Strong understanding of modern web and mobile security, including common attack vectors and mitigations.
  • Strong communication skills and the ability to influence engineering decisions in a remote environment.
  • Self-driven and proactive, with comfort operating in a high-autonomy, distributed team.
  • Alignment with Consensys’s mission and values.
  • Experience working as a software developer is preferred.
  • Familiarity with the Ethereum blockchain and decentralized applications is preferred.
  • Must be able to overlap with EU and US-Pacific time zones as needed.
  • Applicants must be willing to undergo background checks, including employment, education, and criminal record checks.

Benefits

  • US base salary range of $130,000 to $218,000, not including bonus, equity, or other benefits.
  • Remote-friendly work environment with distributed collaboration.
  • Opportunities for career growth and learning within MetaMask and Consensys.
  • High trust and autonomy in day-to-day work.
  • Exposure to new concepts, ideas, and frameworks across different projects.
  • Opportunity to contribute to products supporting one billion participants and 5 million developers.
  • Potential for bonus, equity, and other benefits.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Security Engineer II, Application Security (Remote Eligible)

Smartsheet 1K-5K Internet Software & Services

Smartsheet is hiring a Senior Security Engineer II to strengthen application security for its global SaaS platform by securing AI-integrated features, expanding security automation, and leading high-impact security reviews.

AWS Azure CI/CD GCP GitLab Go Java JavaScript LLM Penetration Testing Python Ruby TypeScript
10 hours, 38 minutes ago

Senior Application Security Engineer

e.l.f. Beauty 251-1K Consumer Goods

Senior Application Security Engineer role at a remote marketing and digital commerce company focused on securing applications across the software development lifecycle.

Agile AWS Azure CI/CD Cybersecurity DevSecOps GCP HTML JavaScript Penetration Testing Python REST API
2 days, 3 hours ago

Binance Accelerator Program - Blockchain / Smart Contract Security

Binance 5K-10K Capital Markets

Binance is seeking a Binance Accelerator Program participant to support smart contract and blockchain security work, including audits, vulnerability analysis, and risk detection across Web3 systems.

Blockchain Git Python VS Code
3 days, 7 hours ago

Senior Application Security Tester & AI Red Team Subject Matter Expert

Evolve Security Academy 11-50 Internet Software & Services

Evolve Security is seeking a senior offensive security specialist to lead complex web, API, and AI red team engagements while defining the firm’s testing methodology for LLM-enabled and agentic systems.

Bash GraphQL JavaScript JWT Metasploit Nmap OpenID Connect Penetration Testing Postman PowerShell Python REST API SAML SPA TypeScript
4 days, 16 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers