Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Engineer image - Rise Careers
Job details

Security Engineer

About Us

Parity is one of the world's most experienced core blockchain infrastructure companies, having built and pioneered some of the most advanced technologies in the blockchain sector. Parity was founded by Dr. Gavin Wood, co-founder and former CTO of Ethereum, the primary engineer behind the Ethereum Virtual Machine (EVM), inventor of the Solidity programming language, and primary author of the Ethereum Yellow Paper.

Parity has built clients for Ethereum, Bitcoin, and Zcash and has pioneered a completely new, next-generation blockchain protocol with Polkadot and the framework it’s built with, Substrate. Parity builds the open-source technologies needed to power an unstoppable, decentralised web—known as Web3—and helps developers and organisations implement and build upon the Web3 tech stack.

People in Our Collective Are

Highly motivated to contribute to Parity’s mission and be part of something bigger

  • Excited to work on projects that are groundbreaking and complex

  • Autonomous workers that self-initiate, but also collaborate well with others

  • Taking maximum accountability and having minimum ego at work

  • Comfortable with chaos and adapting to the ever-changing Web3 space

Continuously educating themselves about Parity and the wider ecosystem

About the team:

The AppSec team is pivotal in helping us secure our ecosystem. We are part of the Security team with a mission of reducing the impact of threats to Parity and its products, bolstering their resilience against potential cyber threats.

Parity has many products: blockchain clients written in Rust, mobile apps written in platform-native languages, browser-based tools and extensions written in JavaScript. We also maintain some crypto and networking libraries (mostly in Rust) and a blockchain framework used by several hundreds of third-party teams. All of this code needs to be consistently secured

About the position:

This is a crucial role where you will bring your technical abilities to recognise and reduce risk to the ecosystem and be able to effectively influence a wide group of stakeholders.

It is a unique opportunity to help secure an innovative organisation where feedback is direct and honest and understands that a check box approach doesn’t get results.

About you:

You should be able to demonstrate : 

  • Strong knowledge of secure coding practices

  • Risk based approach and pragmatism in order to enhance level of security in partnership with different stakeholders

  • Familiarity with security frameworks and approaches such as SAST, DAST, fuzzing, property-based testing, symbolic execution, network simulation …

  • Have experience in threat modelling, red/blue teaming, working with best in class independent security teams and turning their findings into actual deployed fixes in our codebase (as well as implementing lessons learned)

  • An ability to work with a diverse set of stakeholders to valorise security and influence best practices.

  • Advanced skills in analysing and mitigating cyber security threats  

  • Understanding of web3 application architecture - ideally including cryptography, decentralised networking, blockchain consensus, hardware key management solutions

  • Proficiency with security tools and technologies, also ability to create own tools when it is needed

  • Proficiency in multiple programming languages - ideally RUST and Typescriypt

  • A focus on outcomes (rather than activities) and delivering against outcomes with limited interference day to day 

  • Ideally live within 2 hours of UTC+0, but exceptional candidates outside of this timezone will also be considered.

About working for us:

  • Competitive remuneration packages based on iterative market research, including tokens (where legally possible)

  • “Future of work” environment that’s remote-first and self-initiating with flexible hours

  • Team mates that are genuinely excited about their impact and projects

  • Access to the brightest minds in this space to learn about Web3 and develop your skills and knowledge while on the job

  • Becoming part of the wider ecosystem (career and networking opportunities)

  • Team and company-wide retreats

  • Work laptop

Those joining our collective as an employee in Germany, Portugal, Switzerland and the U.K. also enjoy benefits such as health care, parental leave, PTO (28 days per year), local team events, yearly L&D budget, and language classes.

Parity is an Equal Opportunity Employer. We welcome diversity in our global team and care about everyone in our collective feeling included and welcome.

View our Applicant Notice to see how we use your data.

Is this position not quite your match? Browse our other open roles.

Average salary estimate

$100000 / YEARLY (est.)
min
max
$80000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security Engineer, Parity

Join Parity as a Security Engineer and become a key player in securing our cutting-edge blockchain infrastructure! At Parity, we pride ourselves on pushing the boundaries of technology, thanks to our impressive team and our visionary founder, Dr. Gavin Wood. Our mission is to empower a decentralized web—Web3—and as a Security Engineer, you will play a vital role in protecting our complex ecosystem of blockchain clients, mobile applications, and sophisticated tools. In this pivotal position, you will leverage your deep knowledge of secure coding practices and risk management to enhance our security measures and mitigate cyber threats while collaborating with various stakeholders. We're not just looking for someone to check boxes; we want innovative solutions and a pragmatic approach to security challenges. Your expertise in threat modeling and advanced cyber threat analysis will help us maintain the integrity of our comprehensive codebase. We value flexibility and autonomy—this is a remote-first role, allowing you to thrive in a dynamic environment. If you're excited about working on groundbreaking projects and tackling complex security issues, Parity is the perfect place for you to grow your skills in a collaborative, inclusive community. Plus, with our competitive remuneration packages and learning opportunities, you can focus on what matters most—making a significant impact in the world of Web3!

Frequently Asked Questions (FAQs) for Security Engineer Role at Parity
What are the main responsibilities of a Security Engineer at Parity?

As a Security Engineer at Parity, your primary responsibilities will include identifying and mitigating security risks, collaborating with various teams to implement secure coding practices, and enhancing security frameworks tailored specifically for our extensive suite of blockchain products. You'll also work on threat modeling and incident response, ensuring our ecosystem remains resilient against cyber threats.

Join Rise to see the full answer
What qualifications are required for the Security Engineer role at Parity?

To excel as a Security Engineer at Parity, candidates should possess a strong knowledge of secure coding practices, proficiency in programming languages like Rust and TypeScript, and experience with security tools and frameworks such as SAST and DAST. Familiarity with web3 application architecture and how to analyze cyber threats is also critical for this role.

Join Rise to see the full answer
How does Parity support professional growth for Security Engineers?

At Parity, we believe in continuous learning and development. Security Engineers can access some of the brightest minds in the Web3 space, attend team and company-wide retreats, and utilize their yearly learning and development budget to enhance their skill set. Our remote-first work environment also allows you to focus on personal growth at your own pace.

Join Rise to see the full answer
What kind of team culture can Security Engineers expect at Parity?

Parity fosters a culture of collaboration and accountability. As a Security Engineer, you will be part of a motivated team that values input and feedback, encouraging open discussions on security practices and innovative solutions. You will also have the support of colleagues dedicated to making a significant impact in the realm of blockchain technology.

Join Rise to see the full answer
What is the work environment like for a Security Engineer at Parity?

At Parity, we are committed to creating a flexible and remote-first work environment. Security Engineers enjoy autonomy while collaboratively tackling challenges in the ever-evolving Web3 landscape. With a focus on outcomes rather than micromanagement, you will be empowered to take charge of your work and drive meaningful results for our security initiatives.

Join Rise to see the full answer
Common Interview Questions for Security Engineer
How do you approach secure coding practices as a Security Engineer?

In answering this question, emphasize your familiarity with secure coding standards and frameworks. Discuss specific methodologies you've implemented in your previous roles, such as regular code reviews and incorporating automated security testing tools into the development process. Provide examples of how these practices have mitigated risks in past projects.

Join Rise to see the full answer
Can you explain your experience with threat modeling?

When answering, detail your previous involvement in threat modeling processes. Describe techniques you use, such as STRIDE or PASTA, and how they've helped identify vulnerabilities early in development. Highlight specific instances where your threat modeling led to effective risk mitigation strategies.

Join Rise to see the full answer
What tools and technologies do you commonly use to enhance cybersecurity?

Share a comprehensive list of tools you've used in the past, such as static and dynamic analysis tools, penetration testing suites, and logging systems. Discuss how these tools helped you in identifying weaknesses and improving the overall security posture of your projects. Mention any proprietary tools you've developed to address unique challenges.

Join Rise to see the full answer
Describe a situation where you had to influence stakeholders regarding security best practices.

Provide a specific example where you successfully communicated security vulnerabilities to stakeholders. Discuss how you framed the conversation around risk and business impact, ultimately persuading them to prioritize security interventions. Highlight your ability to balance technical jargon with clear, relatable insights.

Join Rise to see the full answer
What strategies do you employ for vulnerability management?

In your response, discuss your approach to vulnerability management, including regular audits and assessments. Highlight how you prioritize issues based on risk and how you collaborate across teams to ensure timely remediation of vulnerabilities, emphasizing communication skills and project management experience.

Join Rise to see the full answer
How do you keep up with the latest trends in cybersecurity, especially in the context of blockchain and Web3?

Mention your commitment to continuous learning via webinars, workshops, industry conferences, and pertinent publications. Explain how you integrate this knowledge into your work and adjust security strategies to address new threats, especially within the evolving Web3 landscape.

Join Rise to see the full answer
Have you ever worked with external security teams, and what was your role?

Detail your experience collaborating with external security teams, emphasizing your role as a liaison for security findings. Discuss how you communicated issues and worked collaboratively to implement fixes, as well as how lessons learned from these interactions influenced your internal security practices.

Join Rise to see the full answer
What role does risk assessment play in your work as a Security Engineer?

Explain the importance of risk assessment in shaping security protocols and software development lifecycles. Discuss how you conduct risk assessments and outwardly communicate findings to help your team prioritize security work effectively.

Join Rise to see the full answer
How do you assess the security of a blockchain application?

Discuss your methodology for assessing blockchain application security, which may include reviewing smart contract code, analyzing consensus mechanisms, and validating cryptographic protocols. Highlight your hands-on experience with tools and techniques used in blockchain security testing.

Join Rise to see the full answer
What do you consider the most significant cybersecurity challenge you have faced?

Share a specific cybersecurity challenge you've encountered, detailing how you addressed it and the lessons learned from the experience. Highlight your thought process and problem-solving skills, along with how this experience has shaped your approach to future security challenges.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 20 hours ago
Photo of the Rise User
Posted 17 hours ago
Photo of the Rise User
NBCUniversal Hybrid Universal City Plaza, Los Angeles, CA, United States
Posted 13 days ago
Photo of the Rise User
Mission Driven
Social Impact Driven
Passion for Exploration
Reward & Recognition
Photo of the Rise User
Posted 5 days ago
Posted 9 days ago

Parity Technologies is a core blockchain infrastructure company. It is creating an open-source creative commons that will enable people to create better institutions through technology. This started with work building Ethereum. Today, Parity is fo...

9 jobs
MATCH
Calculating your matching score...
FUNDING
DEPARTMENTS
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
January 10, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!