Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Engineer image - Rise Careers
Job details

Security Engineer

The Internet lacks a protocol for money. Lightspark is building the tools and services to make it happen. Lightspark builds enterprise-ready infrastructure for open payments for the Internet at scale using the Lightning Network. An always-on, low-cost, universal payment network will completely transform how money is moved, enabling businesses and developers to transform existing solutions and build new financial systems, services, and processes accessible to everyone, transcending geographical restraints. Lightspark is headquartered in Los Angeles, California, but serves the world.

At Lightspark, our goal is to build meaningful payment infrastructure by building upon and extending the capabilities and utility of Bitcoin. We are starting by diving deep into the Lightning network.

We are seeking an experienced and motivated Security Engineer to help secure our platform and system by building secure frameworks and tools, performing security reviews and audits, and working on detection and response. The Security Engineer will be responsible for proactively preventing security vulnerabilities as well as identifying, analyzing, and mitigating potential security threats to our engineering processes, products, and infrastructure. This role will work in many different areas of security simultaneously, so a broad understanding of different types of security engineering is necessary. The ideal candidate will have a strong background in software engineering, security best practices, and a passion for ensuring the safety and security of our systems and data.

WHAT YOU’LL BE DOING:

  • Build tools and systems to improve the security of our products and infrastructure by default.

  • Conduct security risk assessments and audits, ensuring compliance with industry standards and regulatory requirements, with a focus on code security.

  • Collaborate with cross-functional teams to design, develop, and implement secure engineering practices and solutions

  • Provide technical guidance and expertise to engineering teams on secure development practices and techniques, with a focus on blockchain/crypto security and code auditing and review.

  • Partner with Security Engineering leaders in development and delivery of security training and awareness programs for engineering staff, with a focus on secure coding practices and blockchain/crypto security.

  • Monitor and investigate security incidents, performing root cause analysis and developing remediation plans, with a focus on code vulnerabilities 

  • Stay current with emerging security threats, technologies, and best practices, making recommendations for continuous improvement of the company's security posture, especially in the blockchain and cryptocurrency space.

WHAT WE ARE LOOKING FOR:

  • Minimum of 2 years of experience in engineering security, including experience with secure software development, infrastructure security, and risk management, with a strong focus on code auditing and review.

  • Strong understanding of security concepts, principles, and best practices, including secure coding, encryption, authentication, and access control, with a focus on blockchain/crypto security.

  • Proficient in at least one programming or scripting language (e.g., Python, Java, C/C++, or similar)

  • Knowledge of common security vulnerabilities, attack vectors, and mitigation strategies, preferably with a focus on code vulnerabilities in the blockchain and cryptocurrency space.

  • Desire to learn and grow in a highly collaborative environment

  • A CS degree or equivalent is ideal but not required. We appreciate and acknowledge that some of the best talent comes from non-traditional backgrounds, especially in the security, blockchain, and cryptocurrency space.

  • Strong understanding of at least two of cloud/infrastructure security, application security, Mac/Linux security, and Cloud SaaS security.

  • Familiarity with industry standards and frameworks, such as ISO 27001, NIST, or OWASP, with a focus on their application in the blockchain and cryptocurrency space.

  • Excellent problem-solving, analytical, and communication skills, with the ability to work effectively in a collaborative team environment

Lightspark is on a mission to build an open payment protocol for the Internet at scale and therefore we’re committed to creating a more inclusive and diverse workplace to reflect the customers we serve. We welcome interest from individuals of all backgrounds and levels of experience who share our mission. We do not discriminate based on race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, disability status, or other applicable legally protected characteristics. 

We will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the State of California Fair Chance Initiative for Hiring.

Average salary estimate

$105000 / YEARLY (est.)
min
max
$90000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security Engineer, Lightspark

Lightspark, located in Culver City, California, is pioneering the future of open payments for the internet, utilizing the innovative Lightning Network. We're on a mission to build meaningful payment infrastructure, and we're looking for a passionate Security Engineer to join our dynamic team. In this role, you will actively shape the safety and security of our platform by developing secure frameworks, conducting comprehensive security reviews, and responding quickly to potential threats. You'll be collaborating with talented engineers to design and implement best practices in secure software development, focusing on the unique challenges of blockchain and cryptocurrency security. We’re seeking someone with a robust understanding of security principles, a knack for problem-solving, and an eagerness to keep up with ever-evolving security technologies. You should come equipped with at least two years of relevant experience in security engineering, demonstrating proficiency in secure coding and knowledge of common vulnerabilities, particularly within the blockchain context. At Lightspark, the environment is collaborative and inclusive, and we value diverse backgrounds and experiences. If you're excited about creating transformative financial systems and protecting cutting-edge technology, you could be a great fit for this role. Join us in turning the vision of universal, low-cost payment infrastructure into a reality that transcends geographic limitations.

Frequently Asked Questions (FAQs) for Security Engineer Role at Lightspark
What are the responsibilities of a Security Engineer at Lightspark?

As a Security Engineer at Lightspark, your main responsibilities will include developing secure frameworks, conducting risk assessments, collaborating with engineering teams to implement secure practices, providing training on security awareness, and monitoring security incidents. Your role is crucial in protecting our innovative tools and systems against vulnerabilities and threats, particularly in the blockchain and cryptocurrency arena.

Join Rise to see the full answer
What qualifications do I need to apply for the Security Engineer position at Lightspark?

To apply for the Security Engineer position at Lightspark, you should have a minimum of two years of experience in security engineering, focusing on secure software development and code auditing. A strong understanding of security concepts, proficiency in programming languages like Python or Java, and familiarity with security frameworks such as ISO 27001 or NIST are also essential. While a CS degree is ideal, we also encourage non-traditional backgrounds.

Join Rise to see the full answer
How can a Security Engineer contribute to Lightspark's mission?

A Security Engineer at Lightspark contributes significantly to our mission of building an open payment protocol by ensuring the integrity and security of our systems. By identifying and mitigating vulnerabilities and implementing robust security measures, you help create a safe environment for users to engage with our pioneering payment infrastructure, ultimately extending our reach and impact in the financial technology sector.

Join Rise to see the full answer
What is the work environment like for a Security Engineer at Lightspark?

The work environment at Lightspark for a Security Engineer is collaborative, dynamic, and focused on innovation. Our team encourages open communication and collective problem-solving, allowing you to continuously learn and grow in your role. We believe in creating a diverse and inclusive workplace to reflect the wide range of users we serve across the globe.

Join Rise to see the full answer
What specific security skills are emphasized for the Security Engineer role at Lightspark?

In the Security Engineer role at Lightspark, skills such as secure coding, understanding of encryption, authentication, access control, and risk management are highly valued. Additionally, having a keen awareness of security threats and vulnerabilities specifically related to blockchain and cryptocurrency is crucial for success in this position.

Join Rise to see the full answer
Common Interview Questions for Security Engineer
Can you describe your experience with secure coding practices?

When answering this question, share specific examples of secure coding practices you have implemented in previous projects. Discuss the programming languages you've used, the types of vulnerabilities you've encountered, and how your methods improved the security of the applications. Showing a solid understanding of secure coding principles will demonstrate your expertise.

Join Rise to see the full answer
How do you stay up-to-date with emerging security threats?

It’s important to convey your proactive approach to staying informed. Discuss resources such as industry publications, security blogs, or forums you follow, and mention any relevant conferences or training sessions you've attended. This shows your commitment to continuous learning in the ever-evolving security landscape.

Join Rise to see the full answer
What security frameworks or standards are you familiar with?

Mention specific security frameworks such as ISO 27001, NIST, OWASP, or others you have studied or implemented in your previous roles. Highlight how you applied these standards to secure systems, emphasizing the importance of compliance in your work as a Security Engineer.

Join Rise to see the full answer
Can you provide an example of a security incident you managed?

Be ready to share a detailed incident scenario, outlining the nature of the incident, how you responded, the analysis you conducted, and the remediation plan you implemented. Highlight your problem-solving skills and ability to work under pressure to resolve security issues.

Join Rise to see the full answer
What techniques do you use to assess system vulnerabilities?

Discuss various vulnerability assessment techniques you utilize, such as penetration testing, code reviews, and security audits. Explain how you prioritize risks and ensure a comprehensive approach to identifying weaknesses in the system you’re working on.

Join Rise to see the full answer
How do you educate teams about secure coding practices?

Illustrate your experience in conducting training sessions or workshops for development teams, focusing on secure coding practices. Mention the materials or frameworks you've utilized in educating others and the impact of your training on the security culture of your previous organizations.

Join Rise to see the full answer
What do you believe is the biggest current threat in cybersecurity?

Demonstrate your knowledge of current cybersecurity threats by discussing contemporary issues such as ransomware, phishing, or vulnerabilities specific to blockchain technology. Your answer should reflect a well-rounded understanding of the risks faced by modern businesses.

Join Rise to see the full answer
Describe your experience with incident response.

Share your process in incident response management, including preparation, detection, containment, eradication, and recovery. Highlight any frameworks or methodologies you follow and provide an example of how you've successfully navigated a security incident.

Join Rise to see the full answer
What programming languages are you fluent in, and how do they inform your security practices?

Combine your programming knowledge with security insights by discussing the relevance of languages like Python or Java in your security work. Describe projects where your coding skills allowed you to identify vulnerabilities or develop secure applications.

Join Rise to see the full answer
How do you handle conflicts with team members regarding security decisions?

Prepare to share a situation where you have navigated disagreements about security approaches. Emphasize the importance of open communication, data-driven decisions, and collaboration in arriving at a consensus, showing your ability to work effectively within a team.

Join Rise to see the full answer

Lightspark is created to explore, build and extend the capabilities and utility of Bitcoin.

4 jobs
MATCH
Calculating your matching score...
FUNDING
DEPARTMENTS
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
December 3, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!