Post a job

Security Auditor

Thesis logo

Location
AD, AG + 105 more
Thesis

Job Description

About Thesis Defense

Thesis Defense serves as the auditing services arm within Thesis, Inc., the venture studio behind tBTC, Fold, Taho, Etcher, and Embody. Our team of senior security and cryptography auditors has extensive experience in the decentralized technology space. In addition, the Thesis Defense team has a demonstrated track record in a variety of languages and technologies, including, but not limited to, smart contracts, cryptographic protocols including zk-cryptography, dApps including wallets and browser extensions, and bridges. Thesis Defense has extensive experience conducting security audits across a number of ecosystems, including, but not limited to, Ethereum, Zcash, Aleo, Mina, Cosmos, and Bitcoin.
As a security auditing team, we are at the forefront of the rapidly evolving crypto and decentralized tech space. Our team of skilled security auditors is responsible for assessing whether projects adhere to security due diligence protocols and best practices, and helping them improve their security in order to minimize the potential for vulnerabilities, broaden their adoption, and improve the overall security of the crypto ecosystem.

About the Role

Thesis Defense is seeking 3 - 4 skilled experienced Security Auditors with various backgrounds and areas of expertise to join our team.
Security Auditors are responsible for conducting comprehensive and rigorous security audits of both on-chain and off-chain technologies and protocols, including smart contracts, decentralized applications (dApps) like wallets and browser extensions, bridges, cryptographic protocols, consensus mechanisms, digital assets, and more. This role involves analyzing and assessing the security measures of decentralized systems, identifying vulnerabilities, and recommending solutions to minimize the potential attack surface and improve a project’s overall security posture.
The ideal candidate should possess deep knowledge of security vulnerabilities in their particular technology / language of expertise, security principles, and the latest in security threats targeting the crypto and web3 ecosystem. This role demands a proactive approach to identifying and mitigating security risks and providing insight into measures to protect data against unauthorized access or breaches in a landscape where innovation and security are paramount.

What You'll Do

  • Conduct thorough, in-depth security audits across various systems, networks, and applications to identify vulnerabilities and risks.
  • Analyze and evaluate cryptographic protocols and encryption techniques used to ensure they meet the highest security standards.
  • Develop and implement robust security policies and procedures tailored to the unique challenges of each project being audited.
  • Collaborate with development teams to integrate security practices into the development lifecycle.
  • Prepare detailed audit reports, documenting audit findings, implications, providing clear and actionable recommendations for addressing identified security issues.
  • Stay abreast of emerging security threats, vulnerabilities, and controls in the crypto space, continuously adapting audit strategies to mitigate new risks.
  • Provide expert guidance on regulatory compliance and best practices related to security and privacy standards.
  • Facilitate security training sessions for technical and non-technical team members to foster a culture of security awareness.
  • (Optional) Perform penetration testing and vulnerability assessments on a wide range of crypto projects and technologies.

Requirements

  • Proven experience in security auditing, with a deep understanding of blockchain technology, smart contracts, and decentralized systems.
  • Professional security certifications specific to blockchain technology are highly desirable.
  • Working knowledge / expertise of one or more of the following programming languages used in blockchain development, such as Solidity, TypeScript / JavaScript, Go, or Rust is essential.
  • Ability to understand complex concepts including source code, system components and their interactions, and the business logic of a protocol.
  • Ability to formulate attack vectors and identify security vulnerabilities.
  • Excellent analytical, problem-solving, and communication skills, capable of conveying complex security concepts to diverse audiences.
  • Effective communication and reporting skills, capable of explaining technical details and recommendations to non-technical stakeholders.
  • Detail-oriented with a proactive approach to problem-solving.
  • A commitment to continuous learning and staying current with the evolving landscape of security threats and defenses.
  • An exceptional team player that works and collaborates well with a team on each project.
  • Prior experience working in a fully remote, geographically-distributed workplaces.

Location

  • All Thesis Defense roles are remote-first, with a preference for Europe Americas (CET +/- 5) time zones to accommodate project needs and collaboration.
  • Occasional travel may be required for team meetings, security conferences, and industry events.

Number of Positions

We are seeking 3 - 4 Security Auditors who are available immediately, or as soon as possible, for full-time engagements on the Thesis Defense team.

Salary

We offer competitive salaries, variable with experience and a number of other factors.

Benefits

At Thesis, we work in a fun, fast-paced environment that operates by collaborating both remotely and in person when we can. We offer a competitive salary, full health benefits, opportunity for equity and a number of other perks.

Our Cultural Tenets

We Believe in Freedom and Autonomy
We Have Inquisitive Minds
We Are Obsessed with Communication
We Are Proudly Offbeat
We Care About Each Other
We Are Driven

Advice from our career coach

As a Security Auditor at Thesis Defense, applicants must have a deep understanding of blockchain technology, smart contracts, and decentralized systems. To stand out as a candidate, here are some key tips:

  • Highlight your experience in security auditing and knowledge of blockchain technology.
  • Showcase any professional security certifications specific to blockchain technology.
  • Demonstrate expertise in programming languages used in blockchain development, such as Solidity, TypeScript / JavaScript, Go, or Rust.
  • Emphasize your ability to analyze and assess security measures, identify vulnerabilities, and recommend solutions.
  • Illustrate your excellent analytical, problem-solving, and communication skills, particularly in conveying complex security concepts to diverse audiences.
  • Express your commitment to continuous learning and staying current with the evolving landscape of security threats and defenses.
  • Highlight your experience working in fully remote, geographically-distributed workplaces.
  • Be prepared to discuss your proactive approach to problem-solving, your detail-oriented nature, and your ability to work well in a team.
  • Consider mentioning any prior experience with penetration testing and vulnerability assessments, as it may be an added advantage.

Apply for this job

Expired?

Please let Thesis know you found this job with RemoteJobs.org. This helps us grow!

About the job

May 22, 2024

Full-time

  1. AD Andorra
  2. AG Antigua & Barbuda
  3. AI Anguilla
  4. AL Albania
  5. AR Argentina
  6. AT Austria
  7. AW Aruba
  8. AX Åland Islands
  9. BA Bosnia & Herzegovina
  10. BB Barbados
  11. BE Belgium
  12. BG Bulgaria
  13. BL St. Barthélemy
  14. BM Bermuda
  15. BO Bolivia
  16. BQ Caribbean Netherlands
  17. BR Brazil
  18. BS Bahamas
  19. BY Belarus
  20. BZ Belize
  21. CA Canada
  22. CH Switzerland
  23. CL Chile
  24. CO Colombia
  25. CR Costa Rica
  26. CU Cuba
  27. CW Curaçao
  28. CZ Czechia
  29. DE Germany
  30. DK Denmark
  31. DM Dominica
  32. DO Dominican Republic
  33. EC Ecuador
  34. EE Estonia
  35. ES Spain
  36. FI Finland
  37. FK Falkland Islands
  38. FO Faroe Islands
  39. FR France
  40. GB United Kingdom
  41. GD Grenada
  42. GF French Guiana
  43. GG Guernsey
  44. GI Gibraltar
  45. GL Greenland
  46. GP Guadeloupe
  47. GR Greece
  48. GS South Georgia & South Sandwich Islands
  49. GT Guatemala
  50. GY Guyana
  51. HN Honduras
  52. HR Croatia
  53. HT Haiti
  54. HU Hungary
  55. IE Ireland
  56. IM Isle of Man
  57. IS Iceland
  58. IT Italy
  59. JE Jersey
  60. JM Jamaica
  61. KN St. Kitts & Nevis
  62. KY Cayman Islands
  63. LC St. Lucia
  64. LI Liechtenstein
  65. LT Lithuania
  66. LU Luxembourg
  67. LV Latvia
  68. MC Monaco
  69. MD Moldova
  70. ME Montenegro
  71. MF St. Martin
  72. MK North Macedonia
  73. MQ Martinique
  74. MS Montserrat
  75. MT Malta
  76. MX Mexico
  77. NI Nicaragua
  78. NL Netherlands
  79. NO Norway
  80. PA Panama
  81. PE Peru
  82. PL Poland
  83. PM St. Pierre & Miquelon
  84. PR Puerto Rico
  85. PT Portugal
  86. PY Paraguay
  87. RO Romania
  88. RS Serbia
  89. SE Sweden
  90. SI Slovenia
  91. SJ Svalbard & Jan Mayen
  92. SK Slovakia
  93. SM San Marino
  94. SR Suriname
  95. SV El Salvador
  96. SX Sint Maarten
  97. TC Turks & Caicos Islands
  98. TT Trinidad & Tobago
  99. UA Ukraine
  100. UM U.S. Outlying Islands
  101. US United States
  102. UY Uruguay
  103. VA Vatican City
  104. VC St. Vincent & Grenadines
  105. VE Venezuela
  106. VG British Virgin Islands
  107. VI U.S. Virgin Islands

More remote jobs at Thesis

RemoteJobs.org mascot