Sep 11, 2024

Senior Security Engineer

  • Stellar Development Foundation
  • San Francisco, California, United States
Full time Security Engineer

Job Description

Interested in working on cutting-edge blockchain technology and creating equitable access to the global financial system? Since 2014, the mission-driven team at the Stellar Development Foundation (SDF) has helped fuel the tremendous growth of the Stellar blockchain network, an open-source platform that operates at high-scale today. Recently, the Stellar network saw a significant upgrade in the form of Soroban, a new Smart Contracts platform. Developers and companies around the world are already building on Soroban, and the SDF team is expanding to support the rapidly growing and changing Stellar ecosystem.

SDF is looking for an experienced Security Engineer who will work closely with our engineering and product teams as well as third-party groups to ensure the Stellar ecosystem is secure.

In this role you will: 

  • Lead efforts to improve our security vulnerability management programs both proactively (audits, etc) and reactively (bug bounties, etc)
  • Establish a security framework (processes, training, etc) with engineering teams to incorporate security during all phases of application development lifecycle.
  • Build a strong "security minded" community for the long term. Expanding our security framework to the broader community as to help secure the Stellar Ecosystem.
  • Identify gaps in tools and automation in the Stellar Ecosystem, and help close those gaps by leveraging all SDF resources available (legal, business partnerships, grants, or developed in house).

You have: 

  • 5+ years of experience on a SecOps, AppSec team and/or Software development team.
  • Strong understanding of security libraries and common security flaws.
  • Hands on development experience with various languages. Being able to understand and work with a new language is a plus. 
  • A strong track record working in a collaborative environment
  • Experience consulting with external vendors
  • Experience with MITRE, NIST, OWASP frameworks
  • Experience with common security / pen testing tools, nmap, Burp Suite
  • Experience with automated security scanners: Nessus, Qualys, Snyk
  • A strong understanding of OSI protocols such as TCP/IP, UDP, HTTP, HTTPS
  • A good understanding of Cloud Infrastructure access controls and best practices.
  • A good understanding of Linux
  • Experience performing security testing using fuzzing techniques 

Nice to have:

  • Experience working on open source projects
  • Active participation in the crypto community
  • Experience with infrastructure solutions like Docker, Kubernetes
  • Experience in developing smart contracts
  • Experience applying formal methods of verifying blockchain systems

We offer competitive pay with a base salary range for this position of $150,000 - $200,000 depending on job-related knowledge, skills, experience, and location. In addition, we offer lumen-denominated grants along with the following perks and benefits:

USA Benefits/Perks:

  • Competitive health, dental & vision coverage with most plans covered at 100% for the employee + any dependants
  • Flexible time off + 15 company holidays including a company-wide holiday break
  • Up to 12 weeks of paid parental leave for both non-birthing and birthing parents, as well as up to 14 weeks of paid pregnancy leave for birthing parents
  • Gym reimbursement ($80 per month)
  • Life & ADD (up to $50K)
  • Short & Long term disability
  • 401K with 4% match
  • Health & Dependent Care FSA Accounts
  • Commuter benefits with $250/month employer contribution
  • Health Savings Account (HSA) with monthly employer contribution
  • Family building benefits through Kindbody
  • Wellbeing benefits (One Medical, Rightway, Headspace)
  • L&D budget of $1,500/year
  • Daily lunch and snacks in office
  • Company retreats
 
About Stellar
 
Stellar is more than a blockchain. Powered by a decentralized, fast, scalable, and uniquely sustainable network made for financial products and services and a thriving and passionate ecosystem that includes a non-profit organization driven by a mission, Stellar is paving the path to unlock the world’s economic potential through blockchain technology. Built with speed and low costs in mind, the Stellar network provides builders and financial institutions worldwide a platform to issue assets, and to send and convert currencies in real time creating real world utility. Founded in 2014, the Stellar Development Foundation (SDF) supports the continued development and growth of the Stellar network and also serves the ecosystem of NGOs, corporations, universities, small businesses, governments, and solo entrepreneurs building on the Stellar network through tooling, funding and strategic collaborations. Together, Stellar is where blockchain meets the real world.
 
About the Stellar Development Foundation
 
The Stellar Development Foundation (SDF) is a non-profit organization focused on working with and supporting changemakers to create equitable access to the global financial system through blockchain technology. SDF provides grants, investments, funding, and other awards to builders and organizations. SDF also develops resources and tooling on the Stellar network to help unlock real world utility. As a nonprofit foundation, SDF puts the health of the Stellar network and the Stellar ecosystem and its mission above all else.
 
We look forward to hearing from you!
 
Privacy Policy
 
By submitting your application, you are agreeing to our use and processing of your data in accordance with our Privacy Policy.
 
SDF is committed to diversity in its workforce and is proud to be an equal opportunity employer. SDF does not make hiring or employment decisions on the basis of race, color, religion, creed, gender, national origin, age, disability, veteran status, marital status, pregnancy, sex, gender expression or identity, sexual orientation, citizenship, or any other basis protected by applicable local, state or federal law.