Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Security Engineer image - Rise Careers
Job details

Senior Security Engineer

Phantom is revolutionizing the way millions of people interact with the crypto ecosystem. Our self-custodial wallet offers a seamless, unified experience for managing accounts and tokens across Solana, Bitcoin, Ethereum, and Polygon, empowering users with a single, convenient solution. By integrating cutting-edge security features and launching innovative tools for an enhanced personalized user experience, Phantom is able to provide a next-generation, safe and easy to use self-custodial wallet for everyone. This strategy has allowed Phantom to achieve significant milestones including surpassing 7 million MAU’s, reaching #1 in the Google play store finance category, and consistently trending as a Top 50 app across all categories, right next to X, PayPal, Coinbase, and ChatGPT.

Responsibilities

Security is core to the product and the reason why millions of people trust Phantom to securely store their crypto assets. As a Security Engineer, you will be responsible for identifying, exploiting and mitigating security vulnerability risks in our software applications, as well as conducting security assessments and investigations. You will work closely with development teams to ensure that security is integrated throughout the software development lifecycle. Join us on our mission to make the digital economy safe and easy to use for everyone.

  • Perform regular security assessments on new projects, infrastructure and code.

  • Identify and mitigate security vulnerabilities in code, systems and networks through manual testing, automated tools, threat modeling and threat intelligence.

  • Keep up to date with the latest offensive security techniques, application security threats,  and best practices in the blockchain space, and recommend improvements to security posture

  • Write detailed reports of your findings and present them to management and technical teams, and help to prevent real-world attacks.

  • Work with development teams to implement secure coding practices and to ensure the integrity of cryptographic functions.

  • Collaborate with other teams such as development and platform to ensure that security is integrated throughout the organization.

  • Participate in incident response and incident management activities.

  • Leading large cross-team projects.

Qualifications

  • 7+ years of experience in offensive security techniques, with a focus on blockchain technology and cryptography.

  • Strong understanding of security risks, vulnerabilities and concepts in web and mobile applications.

  • Proficient in code review for JavaScript & Typescript with a strong understanding of application security threats and offensive security techniques.

  • Write PoC’s to prove vulnerabilities, review and ensure that patch code meets the standards set by the repository owners and maintainers.

  • Strong analytical and problem-solving skills.

  • Good verbal and written communication skills.

Why Work with Us

Opportunity

We are a team of experienced builders in the blockchain and crypto industry. Our journey began from users seeking an easy, seamless path to accessing the crypto ecosystem. This passion fueled our exponential growth, allowing us to onboard over 7M+ active users in just over three years; with our user base growing weekly. Our dedication to a secure and seamless user experience has made us the leading wallet on Solana as well as our multi-chain approach enhances our platform's versatility, meeting the needs of a diverse and growing user base. By staying at the forefront of technology and user expectations, we continue to innovate and set industry standards on self-custodial crypto wallets.

There has never been a better time to work in crypto to help shape the future of innovation with a focus around the wallet experience!

  • First impressions matter: Wallets are responsible for a users first impression with crypto and onboarding new users into crypto. By ensuring that a user has a great first-time experience with crypto, we can help supercharge the growth of the entire ecosystem.

  • Make crypto easier to navigate: There is no easy way for a user to discover and navigate all that crypto has to offer. Wallets have a unique opportunity to help users not only onboard to crypto but also stay retained by exploring new things to do.

  • We live in a multi-chain world: We currently support Solana, Ethereum, Polygon and Bitcoin with more networks to come in the new future. We are focused on creating a unified, multi-chain crypto experience for users.

Benefits

  • Competitive salary and equity

  • Comprehensive insurance (medical/dental/vision) — 100% covered

  • Stipend for your ideal remote set-up

  • Flexible hours and a supportive remote environment

  • Unlimited vacation: Take time when you need it (and we really mean it!)

  • 401(k) retirement plan

  • Monthly wellness benefit

  • Weekly meal benefit

  • Global off-sites

We strongly encourage candidates of all different backgrounds to apply. We believe that our work is stronger with a variety of perspectives, and we’re eager to further diversify our company. If you have a background that you feel would make an impact at Phantom, please consider applying. We’re committed to building an inclusive, supportive place for you to do the best work of your career.

The target base salary for this role will range between $200,000 to $230,000 with the addition of equity and benefits. This is determined by a few factors including your skillset, prior relevant experience, quality of interviews and market factors (such as location) at the point in time of offer.

Phantom Glassdoor Company Review
3.8 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Phantom DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Phantom
Phantom CEO photo
Unknown name
Approve of CEO

Average salary estimate

$215000 / YEARLY (est.)
min
max
$200000K
$230000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Security Engineer, Phantom

Phantom is on the hunt for a passionate and experienced Senior Security Engineer to join our innovative team. If you love the challenge of securing cutting-edge technology in the rapidly evolving crypto world, this role is perfect for you! At Phantom, we revolutionize how millions manage their crypto assets through our self-custodial wallet, and security is at the heart of everything we do. As a Senior Security Engineer, your main mission will be to identify and mitigate security vulnerabilities in software applications, ensuring our users’ trust remains unshaken. Your day-to-day will involve conducting thorough security assessments across projects, leveraging offensive security techniques, and collaborating closely with development teams to embed security practices throughout the entire software development lifecycle. Imagine utilizing your 7+ years of expertise in blockchain technology and cryptography to not only protect our products but also to make meaningful improvements over time! You’ll write detailed reports that ensure management and technical teams are always informed and ready to act. Join us, and be part of a game-changing team dedicated to fostering a safe digital economy. With flexible hours, unlimited vacation, and a supportive remote environment, you’ll find Phantom is not just a workplace, but a thriving community that values your contributions and encourages professional growth.

Frequently Asked Questions (FAQs) for Senior Security Engineer Role at Phantom
What are the key responsibilities of a Senior Security Engineer at Phantom?

As a Senior Security Engineer at Phantom, your key responsibilities include conducting regular security assessments on new projects and code, identifying and mitigating vulnerabilities in various systems, and maintaining a robust security posture through threat intelligence and modeling. You will also collaborate with development teams, lead incident response activities, and present your findings to improve our security protocols.

Join Rise to see the full answer
What qualifications do I need to become a Senior Security Engineer at Phantom?

To qualify for the Senior Security Engineer position at Phantom, you should have over 7 years of experience in offensive security techniques with a focus on blockchain technology and cryptography. Proficiency in code review for JavaScript and TypeScript, strong analytical skills, and effective communication are essential. An understanding of application security threats and incident management will also be beneficial.

Join Rise to see the full answer
How does Phantom prioritize security in its software development process?

Phantom prioritizes security by integrating it throughout the software development lifecycle. This means conducting regular assessments, embedding secure coding practices, and leveraging manual testing and automated tools to identify vulnerabilities early. Collaboration among teams is a vital aspect to ensure that security remains a top concern at every stage of product development.

Join Rise to see the full answer
What is Phantom's approach to incident response for security breaches?

At Phantom, the incident response process is structured and collaborative. The Senior Security Engineer plays a crucial role by leading incident management activities, identifying root causes, and implementing solutions to prevent future breaches. Regular training and drills are also part of our commitment to prepare the team for real-world situations.

Join Rise to see the full answer
What opportunities for growth can a Senior Security Engineer expect at Phantom?

As a Senior Security Engineer at Phantom, the opportunities for growth are significant. You will have the chance to lead cross-team projects, mentor junior staff, and contribute to high-impact decisions that shape the security of our wallet. Additionally, the flexible and encouraging work environment allows for continued learning and professional development.

Join Rise to see the full answer
Common Interview Questions for Senior Security Engineer
What offensive security techniques have you utilized in past projects?

When answering this question, focus on specific techniques like penetration testing, vulnerability assessments, and red teaming. Share examples of how you have applied these techniques to identify and mitigate security risks and emphasize your experience with blockchain technology.

Join Rise to see the full answer
How do you stay updated with the latest security threats and trends?

Discuss the resources you rely on such as security blogs, forums, and conferences. Emphasizing your proactive approach towards learning and how you share knowledge with your team can show your commitment to maintaining high security standards.

Join Rise to see the full answer
Can you explain a project where you identified and resolved a significant security vulnerability?

Choose a project that had a measurable impact on security. Detail the vulnerability, your approach to rectifying it, and the outcome. This not only shows your problem-solving skills but also your ability to communicate complex issues effectively.

Join Rise to see the full answer
What tools and methodologies do you use for code reviews?

Mention specific tools you have used like SonarQube or Checkmarx, and describe your process for code reviews. Talk about your focus on identifying application security vulnerabilities and how you ensure compliance with security best practices.

Join Rise to see the full answer
How do you approach teamwork when working with cross-functional departments?

Emphasize your collaborative nature by sharing an example of a successful cross-team project. Discuss how you effectively communicate security needs and engage team members from different functions to achieve a common security objective.

Join Rise to see the full answer
What is your experience with incident response and management?

Discuss specific incidents you managed, your role in the response, and the lessons learned. Highlight any frameworks or methodologies you follow and the importance of comprehensive post-incident reviews.

Join Rise to see the full answer
How do you ensure the integrity of cryptographic functions in applications?

Talk about your knowledge of cryptography and its implementation in applications. Explain how you assess and validate cryptographic protocols and update them in accordance with security standards.

Join Rise to see the full answer
What recommendations would you make to improve our current security posture?

Prepare to discuss insights based on your research on Phantom’s existing security measures. Suggest realistic improvements or innovations, backed by industry best practices, to underline your proactive mindset.

Join Rise to see the full answer
How do you handle pressure when faced with a security incident?

Share strategies for maintaining composure under pressure, such as prioritization, communication, and focusing on team coordination during incidents. Discuss any past experiences where you successfully managed stress in critical situations.

Join Rise to see the full answer
What motivates you to work as a Senior Security Engineer in the crypto industry?

Express your passion for technology, security, and the potential of blockchain. Share your vision of how a secure crypto ecosystem benefits users and the exciting challenges it brings, reinforcing your commitment to the role.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Phantom Remote No location specified
Posted 7 hours ago
Photo of the Rise User
Phantom Remote No location specified
Posted 3 hours ago
Photo of the Rise User
Posted 3 days ago
Posted 10 days ago
Photo of the Rise User
Posted 7 days ago
Photo of the Rise User
Posted 10 days ago
Photo of the Rise User
Posted 6 days ago
Customer-Centric
Startup Mindset
Collaboration over Competition
Family Medical Leave
Maternity Leave
Paternity Leave
Flex-Friendly
Social Gatherings
Pet Friendly
Fitness Stipend
Medical Insurance
Dental Insurance
Vision Insurance
Life insurance
Disability Insurance
Learning & Development
Bias Training
Equity
Employee Resource Groups
Unlimited Vacation
Paid Time-Off
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
December 19, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!