[Remote] Security Engineer, Blockchain at Trail of Bits

United States

Trail of Bits Logo
Not SpecifiedCompensation
Junior (1 to 2 years)Experience Level
Full TimeJob Type
UnknownVisa
CybersecurityIndustries

Requirements

  • Experience with Solidity security and understanding of the Ethereum Virtual Machine (EVM)
  • Familiarity with common smart contract vulnerabilities, reentrancy attacks, and DeFi security patterns
  • Knowledge of other ecosystems such as Move, Solana, Cosmos, and TON
  • Proficiency in at least one systems programming language (Go, Rust, C++, or similar)
  • Experience with automated tool review and analysis, including manual analysis and automated tools
  • Familiarity with blockchain infrastructure components and broader blockchain ecosystems
  • Experience with problem-solving and designing solutions for security vulnerabilities in blockchain systems
  • Knowledge of architectural risks and security issues in client implementations
  • Experience with research and development in blockchain security practices
  • Hands-on experience with L1/L2 networks, finality assumptions, and emerging blockchain architectures
  • Familiarity with rollups, bridges, and consensus protocols
  • Experience with tool development, including custom rule development and integration

Responsibilities

  • Collaborate with leading teams in the blockchain industry to review smart contracts, off-chain components, and blockchain infrastructure
  • Work with existing blockchain security tools using modern software engineering practices
  • Contribute to automated analysis tool integration and custom rule development
  • Build expertise in the blockchain security tooling ecosystem
  • Learn to design and implement solutions for security vulnerabilities in blockchain systems
  • Develop skills in identifying architectural risks and security issues in client implementations
  • Stay current with threats across diverse ecosystems including rollups, bridges, and consensus protocols
  • Build foundational knowledge in blockchain security practices through hands-on experience with L1/L2 networks, finality assumptions, and emerging blockchain architectures
  • Participate in research and development in blockchain security practices
  • Develop and maintain ongoing informational support through blogs, whitepapers, newsletters, meetups, and open-source tools

Skills

Key technologies and capabilities for this role

Blockchain SecuritySecurity Vulnerability AnalysisManual AnalysisAutomated ToolsSlitherEchidnaMedusa

Questions & Answers

Common questions about this position

What is the salary for this Security Engineer, Blockchain position?

The salary is $10,000.

Is this role remote or does it require office work?

The position is fully remote. Outside the United States, they can hire internationally in select countries.

What skills are required for the Security Engineer, Blockchain role?

The role requires skills in reviewing blockchain applications for security vulnerabilities using manual analysis and automated tools, with a focus on smart contract security, and experience with tools like Slither, Echidna, and Medusa.

What is the company culture like at Trail of Bits?

Trail of Bits fosters a culture of bold innovation in security research, practical solutions for emerging technologies, and community engagement through blogs, whitepapers, open-source tools, and meetups.

What makes a strong candidate for this blockchain security engineer role?

Strong candidates have expertise in blockchain security, particularly smart contract auditing, experience with security tools, and the ability to collaborate on code reviews and tool development under senior guidance.

Trail of Bits

Cybersecurity consulting and security research services

About Trail of Bits

Trail of Bits provides cybersecurity services focused on high-end security research and consulting for organizations facing complex security challenges. They specialize in areas such as reverse engineering, cryptography, virtualization, malware, and software exploits. Their services include security audits, secure deployment consulting, and developing solutions to address security vulnerabilities. The company caters to a diverse clientele, including major tech companies and government agencies, and generates revenue through consulting fees and training courses aimed at enhancing the skills of security teams. Trail of Bits distinguishes itself from competitors with its tailored consulting services and a strong emphasis on workplace culture, recognized as one of the best places to work. The goal of Trail of Bits is to help organizations effectively protect their systems and data from security threats.

New York City, New YorkHeadquarters
2012Year Founded
$5.2MTotal Funding
SEEDCompany Stage
Consulting, CybersecurityIndustries
51-200Employees

Risks

AI model unreliability in critical areas poses a risk for cybersecurity applications.
Emergence of pickle file attacks highlights vulnerabilities in machine learning models.
Focus on mobile security may divert resources from other critical cybersecurity areas.

Differentiation

Trail of Bits specializes in high-end security research and consulting services.
The company serves tech giants and government agencies with robust security measures.
Trail of Bits combines human intellect with computational power for meaningful security gains.

Upsides

Recognition as a leader in cybersecurity consulting boosts Trail of Bits' market credibility.
Partnerships with companies like Discord and Hugging Face expand their client base.
Involvement in iVerify's funding round shows strategic interest in mobile security.

Land your dream remote job 3x faster with AI