Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Engineer image - Rise Careers
Job details

Security Engineer

About Us

Parity is one of the world's most experienced core blockchain infrastructure companies, having built and pioneered some of the most advanced technologies in the blockchain sector. Parity was founded by Dr. Gavin Wood, co-founder and former CTO of Ethereum, the primary engineer behind the Ethereum Virtual Machine (EVM), inventor of the Solidity programming language, and primary author of the Ethereum Yellow Paper.

Parity has built clients for Ethereum, Bitcoin, and Zcash and has pioneered a completely new, next-generation blockchain protocol with Polkadot and the framework it’s built with, Substrate. Parity builds the open-source technologies needed to power an unstoppable, decentralised web—known as Web3—and helps developers and organisations implement and build upon the Web3 tech stack.

People in Our Collective Are

Highly motivated to contribute to Parity’s mission and be part of something bigger

  • Excited to work on projects that are groundbreaking and complex

  • Autonomous workers that self-initiate, but also collaborate well with others

  • Taking maximum accountability and having minimum ego at work

  • Comfortable with chaos and adapting to the ever-changing Web3 space

Continuously educating themselves about Parity and the wider ecosystem

About the team:

The AppSec team is pivotal in helping us secure our ecosystem. We are part of the Security team with a mission of reducing the impact of threats to Parity and its products, bolstering their resilience against potential cyber threats.

Parity has many products: blockchain clients written in Rust, mobile apps written in platform-native languages, browser-based tools and extensions written in JavaScript. We also maintain some crypto and networking libraries (mostly in Rust) and a blockchain framework used by several hundreds of third-party teams. All of this code needs to be consistently secured

About the position:

This is a crucial role where you will bring your technical abilities to recognise and reduce risk to the ecosystem and be able to effectively influence a wide group of stakeholders.

It is a unique opportunity to help secure an innovative organisation where feedback is direct and honest and understands that a check box approach doesn’t get results.

About you:

You should be able to demonstrate : 

  • Strong knowledge of secure coding practices

  • Risk based approach and pragmatism in order to enhance level of security in partnership with different stakeholders

  • Familiarity with security frameworks and approaches such as SAST, DAST, fuzzing, property-based testing, symbolic execution, network simulation …

  • Have experience in threat modelling, red/blue teaming, working with best in class independent security teams and turning their findings into actual deployed fixes in our codebase (as well as implementing lessons learned)

  • An ability to work with a diverse set of stakeholders to valorise security and influence best practices.

  • Advanced skills in analysing and mitigating cyber security threats  

  • Understanding of web3 application architecture - ideally including cryptography, decentralised networking, blockchain consensus, hardware key management solutions

  • Proficiency with security tools and technologies, also ability to create own tools when it is needed

  • Proficiency in multiple programming languages - ideally RUST and Typescriypt

  • A focus on outcomes (rather than activities) and delivering against outcomes with limited interference day to day 

  • Ideally live within 2 hours of UTC+0, but exceptional candidates outside of this timezone will also be considered.

About working for us:

  • Competitive remuneration packages based on iterative market research, including tokens (where legally possible)

  • “Future of work” environment that’s remote-first and self-initiating with flexible hours

  • Team mates that are genuinely excited about their impact and projects

  • Access to the brightest minds in this space to learn about Web3 and develop your skills and knowledge while on the job

  • Becoming part of the wider ecosystem (career and networking opportunities)

  • Team and company-wide retreats

  • Work laptop

Those joining our collective as an employee in Germany, Portugal, Switzerland and the U.K. also enjoy benefits such as health care, parental leave, PTO (28 days per year), local team events, yearly L&D budget, and language classes.

Parity is an Equal Opportunity Employer. We welcome diversity in our global team and care about everyone in our collective feeling included and welcome.

View our Applicant Notice to see how we use your data.

Is this position not quite your match? Browse our other open roles.

What You Should Know About Security Engineer, Parity

Are you a talented Security Engineer looking for an exciting opportunity to make a real impact in the world of blockchain? Join Parity, one of the foremost core blockchain infrastructure companies that's pioneering the future of Web3. As part of our AppSec team, you'll play a vital role in securing the vast array of technologies and products we develop, including blockchain clients, mobile applications, and various critical libraries. At Parity, we understand the importance of a risk-based approach to security, and we're looking for someone who can bring their expertise in secure coding practices and threat modeling to the table. You'll work closely with a range of stakeholders, utilizing your knowledge of security frameworks like SAST and DAST to bolster our resilience against cyber threats. The environment here is collaborative, fast-paced, and flexible, allowing you to thrive while contributing to groundbreaking projects. We value autonomy, creativity, and accountability, so you'll be encouraged to take initiative while also learning from the best minds in the industry. If you're ready to embark on a rewarding journey that blends innovation with security, we can't wait to see what you'll bring to our team at Parity!

Frequently Asked Questions (FAQs) for Security Engineer Role at Parity
What are the main responsibilities of a Security Engineer at Parity?

As a Security Engineer at Parity, you'll focus on reducing risks within our blockchain ecosystem by implementing secure coding practices, conducting threat modeling, and working closely with stakeholders to enhance overall security. You'll be tasked with analyzing security vulnerabilities across our products, and your role will evolve to include evaluating and integrating feedback from independent security teams, ultimately leading to the deployment of effective security solutions.

Join Rise to see the full answer
What qualifications are needed to apply for the Security Engineer position at Parity?

To be considered for the Security Engineer role at Parity, you should possess strong knowledge of secure coding practices, experience with various security frameworks, and advanced skills in analyzing cyber threats. Proficiency in programming languages like Rust and TypeScript is essential, along with a solid understanding of blockchain application architecture and decentralized networking.

Join Rise to see the full answer
How does Parity foster a collaborative environment for Security Engineers?

At Parity, we promote a culture of collaboration by valuing each team member's input and expertise. As a Security Engineer, you will work alongside diverse stakeholders, engage in honest feedback discussions, and actively involve others to influence best practices in security, ensuring a holistic approach to safeguarding our products.

Join Rise to see the full answer
What skills will I develop as a Security Engineer at Parity?

Joining Parity as a Security Engineer provides the opportunity to develop critical skills such as threat modeling, risk assessment, and the use of advanced security tools. You'll gain hands-on experience in securing decentralized technologies while collaborating with top experts in the Web3 space, enhancing both your technical and professional capabilities.

Join Rise to see the full answer
What benefits does Parity offer to its Security Engineers?

As a Security Engineer at Parity, you will receive a competitive remuneration package, flexible working hours in a remote-first environment, and access to continuous learning opportunities. Additionally, employees in specific regions enjoy benefits like healthcare, parental leave, and generous PTO, ensuring both personal and professional well-being.

Join Rise to see the full answer
Common Interview Questions for Security Engineer
What secure coding practices do you follow as a Security Engineer?

As a Security Engineer, it's vital to adhere to secure coding practices such as input validation, proper error handling, and using encryption wisely. Emphasize your familiarity with OWASP guidelines and any frameworks you might have applied in previous roles to ensure the integrity and confidentiality of sensitive data.

Join Rise to see the full answer
How do you approach threat modeling?

In threat modeling, I focus on identifying potential threats and vulnerabilities systematically. I usually begin with creating an architecture diagram and then apply methodologies like STRIDE or PASTA to analyze threats based on impacts and likelihood, ensuring that I address the most critical risks effectively.

Join Rise to see the full answer
Can you explain a time when you successfully mitigated a cyber threat?

I recall an instance where I identified a potential vulnerability in our application. By conducting a thorough security assessment and collaborating with the development team, I implemented necessary fixes and layers of security, such as multi-factor authentication, to effectively mitigate the risk and strengthen the application's defenses.

Join Rise to see the full answer
What experience do you have with using security tools?

I've worked extensively with tools such as SAST, DAST, and intrusion detection systems to assess security at different levels. I often tailor tools to the specific needs of the project, ensuring that vulnerabilities are identified and addressed proactively before deployment.

Join Rise to see the full answer
How do you prioritize security issues?

Prioritizing security issues involves assessing the severity and potential impact on the business. I analyze vulnerabilities based on their risk factors and consequences, allowing me to allocate resources efficiently and tackle the most critical issues first to ensure robust security for our ecosystem.

Join Rise to see the full answer
What programming languages are you proficient in that are relevant to the Security Engineer role?

I am proficient in several programming languages, including Rust and TypeScript, which are essential for developing secure code frameworks. My experience with multiple languages allows me to understand security vulnerabilities across different platforms and design effective mitigation strategies.

Join Rise to see the full answer
How do you stay updated on the latest security trends?

I prioritize continuous learning by attending security conferences, participating in online forums, and following reputable security blogs and researchers. Keeping abreast of emerging threats and solutions enables me to apply current best practices and innovative techniques to my work.

Join Rise to see the full answer
What methods do you use to engage stakeholders on security best practices?

Engaging stakeholders involves clear communication, education, and demonstrating the impact of security measures on overall business objectives. I often present findings and propose actionable insights that resonate with both technical and non-technical audiences, fostering a security-first culture.

Join Rise to see the full answer
How can you contribute to a culture of security at Parity?

I believe that fostering a culture of security begins with open communication and collaboration. By actively sharing knowledge, providing training sessions, and encouraging team discussions, I can help integrate security into every aspect of our development processes at Parity.

Join Rise to see the full answer
Can you describe your experience with decentralized applications and blockchain security?

My experience with decentralized applications includes understanding blockchain protocols, consensus mechanisms, and the unique security challenges they present. I have worked on securing smart contracts and developing measures to protect user data in decentralized environments, which is crucial for the growth and safety of blockchain technology.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Parity Remote No location specified
Posted 12 days ago
Photo of the Rise User
Posted 10 days ago
Photo of the Rise User
Posted 10 days ago
Photo of the Rise User
Christian Brothers Automotive Remote 17725 Katy Fwy, Houston, TX 77094, USA
Posted 12 days ago
PTE Consulting SpA Remote No location specified
Posted 10 days ago
Photo of the Rise User
Posted 9 days ago
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony

Parity Technologies is a core blockchain infrastructure company. It is creating an open-source creative commons that will enable people to create better institutions through technology. This started with work building Ethereum. Today, Parity is fo...

15 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
January 10, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!