Asymmetric Research:
Asymmetric Research ("AR") is a boutique security venture focused on deep partnerships with L1/L2 blockchains and DeFi protocols in an effort to keep them safe. We specialize in four core domains of web3 security: research, engineering, incident response, and infrastructure services. We help teams fortify their smart contracts, infrastructure, and security postures against emerging threats through deep, long-term partnerships.
Culture:
AR is a fully remote organization with deep open source roots. Members of our team have shaped security programs at organizations like Google, Netflix, Mozilla, Stripe, and Jump Crypto. We pride ourselves on maintaining the highest levels of confidentiality, integrity, and professionalism.
Responsibilities:
We’re looking for an Application Security Engineer who thrives in high-stakes environments. In this role, you’ll work hands-on with top DeFi teams and external audit firms. You’ll develop custom tooling, monitoring systems, and security frameworks. As a company, we aim to be where you'll do the best work of your career. Tackle complex security challenges supported by an integrity-driven team that values deep technical expertise and relentless curiosity.
Design and implement security and defense-in-depth controls to prevent and limit vulnerabilities.
Develop security tooling and developer workflows to aid in the early detection of vulnerabilities.
Collaborate with core contributors to conduct internal security audits of off-chain infrastructure.
Harden CI/CD pipelines and constrain the attack surface of off-chain components.
Collaborate with core contributors to reduce supply-chain risk.
Triage and respond to potential security incidents across all parts of the stack.
Work in a diverse decentralized team environment with web3 professionals.
Clearly communicate security risks and solutions.
Adhere to the highest standards of integrity, trust, and professionalism.
Requirements:
Strong desire to understand how things work and the ability to quickly absorb new information.
Familiarity and practical experience with Application Security Testing (AST) tools.
Proven experience as a consultant, engineer, or auditor, ideally working on/with web applications.
Prior experience working with open source development practices.
Willingness and aptitude to work with and write in multiple languages, mainly Go, Rust, Python, and JavaScript.
Experience with reverse engineering and/or fuzzing.
Experience with code reviews.
Benefits:
25 days paid vacation
Office and equipment stipend
Pension / 401K programs
Life insurance
Premium healthcare
Competitive base salary
Lucrative bonus programs
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Asymmetric Research is on the lookout for a passionate Application Security Engineer to join our innovative team! At Asymmetric Research, we pride ourselves on creating deep partnerships with L1 and L2 blockchains and DeFi protocols, ensuring their security and integrity. In this exciting role, you'll dive into the world of web3 security, collaborating directly with some of the brightest minds in the industry. You'll tackle complex security challenges, designing and implementing security controls to defend against vulnerabilities. With the flexibility of a fully remote position, you'll be part of a vibrant, open-source culture, contributing to impactful security programs and working alongside core teams on security audits. If you have a keen mind for Application Security Testing and a love for learning, this position offers the chance to elevate your career to new heights! Enjoy a rewarding work environment where your skills in Go, Rust, Python, and JavaScript can really shine, all while also enjoying benefits like 25 days of paid vacation, competitive salaries, and more. Join us and make your mark in the world of DeFi security!
Subscribe to Rise newsletter