Phantom

Staff Application Security Engineer (Security)

Remote

Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Cryptocurrency, Fintech, SoftwareIndustries

Requirements

Candidates should have at least 7 years of experience in offensive security techniques, particularly focusing on blockchain technology and cryptography. A strong understanding of security risks, vulnerabilities, and concepts in web and mobile applications is essential. Proficiency in code review for JavaScript and Typescript, along with a solid grasp of application security threats and offensive security techniques, is required. Strong analytical and problem-solving skills, as well as good verbal and written communication skills, are necessary.

Responsibilities

The Security Engineer will perform regular security assessments on new projects, infrastructure, and code. They will identify and mitigate security vulnerabilities in code, systems, and networks through manual testing, automated tools, threat modeling, and threat intelligence. Keeping up to date with the latest offensive security techniques, application security threats, and best practices in the blockchain space is crucial, along with recommending improvements to security posture. The role includes writing detailed reports of findings and presenting them to management and technical teams, as well as collaborating with development teams to implement secure coding practices and ensure the integrity of cryptographic functions. Participation in incident response and management activities, along with leading large cross-team projects, is also expected.

Skills

Application Security
Security Assessments
Vulnerability Identification
Vulnerability Mitigation
Manual Testing
Automated Tools
Threat Modeling
Threat Intelligence
Offensive Security Techniques
Blockchain Security
Software Development Lifecycle
Reporting
Communication

Phantom

Multi-chain crypto wallet for digital assets

About Phantom

Phantom.app offers a multi-chain cryptocurrency wallet that allows users to manage various digital assets across different blockchain networks without needing multiple wallets. The wallet is designed for both experienced investors and beginners, featuring a user-friendly interface that simplifies the complexities of cryptocurrency management. Users can store, stake, and earn rewards on their tokens, and benefit from a fast, low-cost token swapping feature for trading digital assets. A key aspect of Phantom.app is its integration with major NFT marketplaces, enabling users to showcase, monitor, and sell their NFT collections easily. Security is emphasized through a self-custodial model, giving users full control over their funds, along with scam detection features and the option to connect a Ledger device for added protection. Phantom.app aims to provide a seamless and secure platform for cryptocurrency management, catering to the needs of a diverse clientele.

San Francisco, CaliforniaHeadquarters
2021Year Founded
$115.3MTotal Funding
SERIES_BCompany Stage
Crypto & Web3Industries
201-500Employees

Benefits

Competitive salary and equity.
Comprehensive insurance (medical/dental/vision) — 100% covered.
Stipend for your ideal remote / WFH set-up: laptop, headphones, and any other work gear you may need.
Flexible hours and a long-standing, supportive remote environment.
Monthly co-working space and mobile phone expense.
Unlimited vacation: Take time when you need it (and we really mean it).

Risks

Increased competition from Best Wallet with a superior user interface.
Rapid user growth may strain infrastructure and customer support.
Decision not to launch a token could lead to user dissatisfaction.

Differentiation

Phantom offers a multi-chain wallet supporting Solana, Ethereum, Polygon, and Bitcoin.
The wallet integrates with major NFT marketplaces for easy NFT management and transactions.
Phantom prioritizes security with self-custodial features and scam detection capabilities.

Upsides

Phantom's user base tripled to 3.2 million MAUs by January 2024.
Partnership with Transak enhances seamless digital asset purchases for users.
Integration with dYdX facilitates significant trading volume, boosting platform activity.

Land your dream remote job 3x faster with AI