Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Application Security Engineer image - Rise Careers
Job details

Application Security Engineer

Asymmetric Research:

Asymmetric Research ("AR") is a boutique security venture focused on deep partnerships with L1/L2 blockchains and DeFi protocols in an effort to keep them safe. We specialize in four core domains of web3 security: research, engineering, incident response, and infrastructure services. We help teams fortify their smart contracts, infrastructure, and security postures against emerging threats through deep, long-term partnerships.

Culture:

AR is a fully remote organization with deep open source roots. Members of our team have shaped security programs at organizations like Google, Netflix, Mozilla, Stripe, and Jump Crypto. We pride ourselves on maintaining the highest levels of confidentiality, integrity, and professionalism.

Responsibilities:

We’re looking for an Application Security Engineer who thrives in high-stakes environments. In this role, you’ll work hands-on with top DeFi teams and external audit firms. You’ll develop custom tooling, monitoring systems, and security frameworks. As a company, we aim to be where you'll do the best work of your career. Tackle complex security challenges supported by an integrity-driven team that values deep technical expertise and relentless curiosity.

  • Design and implement security and defense-in-depth controls to prevent and limit vulnerabilities.

  • Develop security tooling and developer workflows to aid in the early detection of vulnerabilities.

  • Collaborate with core contributors to conduct internal security audits of off-chain infrastructure.

  • Harden CI/CD pipelines and constrain the attack surface of off-chain components.

  • Collaborate with core contributors to reduce supply-chain risk.

  • Triage and respond to potential security incidents across all parts of the stack.

  • Work in a diverse decentralized team environment with web3 professionals.

  • Clearly communicate security risks and solutions.

  • Adhere to the highest standards of integrity, trust, and professionalism.

Requirements:

  • Strong desire to understand how things work and the ability to quickly absorb new information.

  • Familiarity and practical experience with Application Security Testing (AST) tools.

  • Proven experience as a consultant, engineer, or auditor, ideally working on/with web applications.

  • Prior experience working with open source development practices.

  • Willingness and aptitude to work with and write in multiple languages, mainly Go, Rust, Python, and JavaScript.

  • Experience with reverse engineering and/or fuzzing.

  • Experience with code reviews.

Benefits:

  • 25 days paid vacation

  • Office and equipment stipend

  • Pension / 401K programs

  • Life insurance

  • Premium healthcare

  • Competitive base salary

  • Lucrative bonus programs

Average salary estimate

$125000 / YEARLY (est.)
min
max
$100000K
$150000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Application Security Engineer, asymmetric.re

Asymmetric Research is on the lookout for a passionate Application Security Engineer to join our innovative team! At Asymmetric Research, we pride ourselves on creating deep partnerships with L1 and L2 blockchains and DeFi protocols, ensuring their security and integrity. In this exciting role, you'll dive into the world of web3 security, collaborating directly with some of the brightest minds in the industry. You'll tackle complex security challenges, designing and implementing security controls to defend against vulnerabilities. With the flexibility of a fully remote position, you'll be part of a vibrant, open-source culture, contributing to impactful security programs and working alongside core teams on security audits. If you have a keen mind for Application Security Testing and a love for learning, this position offers the chance to elevate your career to new heights! Enjoy a rewarding work environment where your skills in Go, Rust, Python, and JavaScript can really shine, all while also enjoying benefits like 25 days of paid vacation, competitive salaries, and more. Join us and make your mark in the world of DeFi security!

Frequently Asked Questions (FAQs) for Application Security Engineer Role at asymmetric.re
What are the responsibilities of an Application Security Engineer at Asymmetric Research?

As an Application Security Engineer at Asymmetric Research, you will have a variety of responsibilities that include designing and implementing defense-in-depth security controls, developing security tooling and workflows for early vulnerability detection, and collaborating with both internal teams and external audit firms. You will also need to harden CI/CD pipelines, reduce supply-chain risks, and respond to potential security incidents across all components. Overall, your work will be crucial in securing blockchain applications and infrastructure.

Join Rise to see the full answer
What qualifications do I need to become an Application Security Engineer at Asymmetric Research?

To qualify for the Application Security Engineer position at Asymmetric Research, you should possess experience in Application Security Testing (AST) tools and demonstrate a strong desire to understand how systems work. Proven experience with web applications as a consultant, engineer, or auditor is essential. Familiarity with open-source development practices and proficiency in programming languages like Go, Rust, Python, and JavaScript will be critical. Skills in reverse engineering, fuzzing, and conducting code reviews are also highly desirable.

Join Rise to see the full answer
What is the work environment like for an Application Security Engineer at Asymmetric Research?

The work environment at Asymmetric Research is fully remote and thrives on collaboration among a diverse team of web3 professionals. You'll be part of a company that values integrity, trust, and professionalism while encouraging continuous learning and sharing of knowledge. This culture is nurtured by our strong open-source roots, meaning you'll often engage with exciting cutting-edge security challenges in the blockchain domain!

Join Rise to see the full answer
What kind of benefits can I expect as an Application Security Engineer at Asymmetric Research?

As a member of the Asymmetric Research team, you'll enjoy competitive benefits including 25 days of paid vacation, office and equipment stipends, and a robust pension/401K program. Premium healthcare, life insurance, and lucrative bonus programs are also part of the package, making this position not only rewarding in terms of professional growth but also in maintaining a healthy work-life balance.

Join Rise to see the full answer
How can I prepare to apply for the Application Security Engineer position at Asymmetric Research?

To prepare for your application for the Application Security Engineer role at Asymmetric Research, start by brushing up on your technical skills related to application security, programming languages like Go and Rust, and familiarize yourself with AST tools. Show your commitment to continuous learning by keeping up with the latest in web3 security practices. Tailor your resume to highlight your relevant experience, and practice articulating your knowledge and passion for security during interviews.

Join Rise to see the full answer
Common Interview Questions for Application Security Engineer
Can you explain a recent security challenge you faced and how you addressed it?

This question allows you to showcase your problem-solving skills and technical expertise. Be specific about the challenge, the methods you used to identify vulnerabilities, and how you implemented solutions. Highlight teamwork and communication with stakeholders to illustrate your collaborative approach.

Join Rise to see the full answer
What are defense-in-depth strategies in application security?

When answering this question, break down the concept of defense-in-depth, explaining how multiple layers of security controls protect an application. Examples include secure coding practices, regular security testing, and continuous monitoring. Emphasize the importance of each layer working together to mitigate risks effectively.

Join Rise to see the full answer
Describe your experience with Application Security Testing (AST) tools.

Be prepared to discuss specific AST tools you have used, detailing your experience with them. Highlight how these tools have played a role in detecting vulnerabilities and improving application security in past projects, showcasing your technical acumen and understanding of their importance in the development lifecycle.

Join Rise to see the full answer
How do you approach security audits and assessments?

Outline your methodology for conducting security audits, which may include reviewing code repositories, performing penetration tests, and evaluating compliance with security protocols. Talk about your communication strategies with teams to ensure that identified risks are prioritized and addressed effectively.

Join Rise to see the full answer
What programming languages are you proficient in and how have you used them in security contexts?

Mention your experience with relevant languages such as Go, Rust, Python, and JavaScript. Provide examples of how you've utilized these languages for building security tools, scripting automated tests, or reviewing code to identify security flaws, demonstrating your versatility as a developer.

Join Rise to see the full answer
Explain the concept of vulnerability management.

Discuss the vulnerability lifecycle, including identification, prioritization, remediation, and continuous monitoring. Highlight your experience with vulnerability management tools and how you ensure that the software remains secure over time, reflecting your proactive approach to security.

Join Rise to see the full answer
What strategies do you implement to harden CI/CD pipelines?

Showcase your understanding of CI/CD security practices, such as implementing automated security checks, using approved libraries, and ensuring code integrity. Explain how you integrate security at each stage of the CI/CD process to minimize risks and maintain secure code deployments.

Join Rise to see the full answer
How do you stay current with security trends and emerging threats?

Share your methods for continuous learning—whether through attending conferences, reading industry publications, or participating in online communities. Emphasize your passion for security and the importance of staying informed to effectively tackle new challenges as they arise in the rapidly changing tech landscape.

Join Rise to see the full answer
Discuss a time you had to communicate complex security risks to non-technical stakeholders.

Provide an anecdote showing your ability to translate technical jargon into understandable terms for stakeholders. Highlight how you guided non-technical team members through the risks and mitigations, ensuring everyone is on the same page regarding security posture and risks involved.

Join Rise to see the full answer
What excites you most about working in application security?

This is an open-ended question that allows you to express your passion for the field. Discuss your interest in solving complex problems, your commitment to improving security for users, and the thrill of working with advanced technologies and methodologies in an ever-evolving landscape.

Join Rise to see the full answer
Similar Jobs
asymmetric.re Remote No location specified
Posted 13 days ago
asymmetric.re Remote No location specified
Posted 13 days ago
Photo of the Rise User
Second Order Effects Hybrid El Segundo, California
Posted 8 days ago
Photo of the Rise User
Posted 10 days ago
Photo of the Rise User
Posted 11 days ago
Photo of the Rise User
McWane, Inc. Hybrid Exeter, CA 93221, USA
Posted 10 days ago
Posted 5 days ago
Photo of the Rise User
Smiths Group Hybrid 2202 Lakeside Blvd, Edgewood, MD 21040, USA
Posted 14 days ago
Posted 9 days ago
Photo of the Rise User
Smiths Group Hybrid Vía Dr. Gustavo Baz 309, La Loma, 54060 Tlalnepantla, Méx., Mexico
Posted 8 days ago
MATCH
VIEW MATCH
FUNDING
DEPARTMENTS
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
March 27, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
6 people applied to Google Cloud Engineer at Miratech
Photo of the Rise User
Someone from OH, Akron just viewed Grad Intern - No Work Experience at Walmart
Photo of the Rise User
Someone from OH, Columbus just viewed Race & Sportsbook Office Manager at Westgate Resorts
S
Someone from OH, Akron just viewed Client Service Representative at Shine Productions
Photo of the Rise User
Someone from OH, Columbus just viewed Technical Support Specialist at Samsara
Photo of the Rise User
75 people applied to Electrical Apprentice at Aerotek
Photo of the Rise User
Someone from OH, Canton just viewed Full Stack Web Developer at Abnormal Security
Photo of the Rise User
Someone from OH, Canton just viewed Frontend Engineer, UX at Chainlink Labs
Photo of the Rise User
18 people applied to Internship summer 2025 at Boeing
R
Someone from OH, Toledo just viewed Global Marketing Intern at Reebok International, Ltd
Photo of the Rise User
Someone from OH, Toledo just viewed Intern, Corporate Communications at E.L.F. BEAUTY
Photo of the Rise User
Someone from OH, Cincinnati just viewed Immigration - E2 Visa at Upwork
Photo of the Rise User
Someone from OH, Dayton just viewed Senior Director - Brand & Marketing Content at Cielo
Photo of the Rise User
Someone from OH, Cleveland just viewed Scheduling Coordinator at Window Nation
T
Someone from OH, Columbus just viewed Power BI Developer - Remote at Two95 International Inc.
Photo of the Rise User
Someone from OH, Dayton just viewed Front Desk Clerk at Marriott International
Photo of the Rise User
Someone from OH, Hilliard just viewed Junior Digital Analyst at Jellyfish
Photo of the Rise User
Someone from OH, Hilliard just viewed Junior Digital Data Analyst at AECOM
Photo of the Rise User
Someone from OH, Columbus just viewed Data Analyst/R Programmer at Peet's
Photo of the Rise User
Someone from OH, Grandview Heights just viewed Service Drive Greeter at Jeff Wyler Automotive Family
Photo of the Rise User
Someone from OH, Washington Court House just viewed Administration and Clerical at Walmart
Photo of the Rise User
34 people applied to REMOTE Sr Piping Designer at Kelly