Logo
Stellar Development Foundation

Staff Security Engineer

Stellar Development Foundation, San Francisco, California, United States, 94199


Stellar Development Foundation

Stellar Network: Discover an open-source blockchain platform equipped for DeFi with a secure smart contract platform, fast and affordable payments and enterprise-grade asset tokenization. Join our vibrant ecosystem of developers, entrepreneurs,...

View all jobs at Stellar Development Foundation

Interested in working on cutting-edge blockchain technology and creating equitable access to the global financial system? Since 2014, the mission-driven team at the Stellar Development Foundation (SDF) has helped fuel the tremendous growth of the Stellar blockchain network, an open-source platform that operates at high-scale today. Recently, the Stellar network saw a significant upgrade in the form of Soroban, a new Smart Contracts platform. Developers and companies around the world are already building on Soroban, and the SDF team is expanding to support the rapidly growing and changing Stellar ecosystem.SDF is looking for an experienced Security Engineer who will work closely with our engineering and product teams as well as third-party groups to ensure the Stellar ecosystem is secure.In this role you will:Lead efforts to improve our security vulnerability management programs both proactively (audits, etc) and reactively (bug bounties, etc)Establish a security framework (processes, training, etc) with engineering teams to incorporate security during all phases of application development lifecycle.Build a strong "security minded" community for the long term. Expanding our security framework to the broader community as to help secure the Stellar Ecosystem.Identify gaps in tools and automation in the Stellar Ecosystem, and help close those gaps by leveraging all SDF resources available (legal, business partnerships, grants, or developed in house).You have:8+ years of experience on a SecOps, AppSec team and/or Software development team.Strong understanding of security libraries and common security flaws.Hands on development experience with various languages. Being able to understand and work with a new language is a plus.A strong track record working in a collaborative environmentExperience consulting with external vendorsExperience with MITRE, NIST, OWASP frameworksExperience with common security / pen testing tools, nmap, Burp SuiteExperience with automated security scanners: Nessus, Qualys, SnykA strong understanding of OSI protocols such as TCP/IP, UDP, HTTP, HTTPSA good understanding of Cloud Infrastructure access controls and best practices.A good understanding of LinuxExperience performing security testing using fuzzing techniquesNice to have:Experience working on open source projectsActive participation in the crypto communityExperience with infrastructure solutions like Docker, KubernetesExperience applying formal methods of verifying blockchain systemsWe offer competitive pay with a base salary

range for this position of $195,000 - $245,000 depending on job-related knowledge, skills, experience, and location. In addition, we offer lumen-denominated grants along with the following perks and benefits:Competitive health, dental & vision coverage with most plans covered at 100% for the employee + any dependantsFlexible time off + 15 company holidays including a company-wide holiday breakUp to 12 weeks of paid parental leave for both non-birthing and birthing parents, as well as up to 14 weeks of paid pregnancy leave for birthing parentsGym reimbursement ($80 per month)Life & ADD (up to $50K)Short & Long term disability401K with 4% matchHealth & Dependent Care FSA AccountsCommuter benefits with $250/month employer contributionHealth Savings Account (HSA) with monthly employer contributionFamily building benefits through KindbodyL&D budget of $1,500/yearDaily lunch and snacks in officeCompany retreatsInterested in working on cutting-edge blockchain technology and creating equitable access to the global financial system? Since 2014, the mission-driven team at the Stellar Development Foundation (SDF) has helped fuel the tremendous growth of the Stellar blockchain network, an open-source platform that operates at high-scale today. Recently, the Stellar network saw a significant upgrade in the form of Soroban, a new Smart Contracts platform. Developers and companies around the world are already building on Soroban, and the SDF team is expanding to support the rapidly growing and changing Stellar ecosystem.SDF is looking for an experienced Security Engineer who will work closely with our engineering and product teams as well as third-party groups to ensure the Stellar ecosystem is secure.In this role you will:Lead efforts to improve our security vulnerability management programs both proactively (audits, etc) and reactively (bug bounties, etc)Establish a security framework (processes, training, etc) with engineering teams to incorporate security during all phases of application development lifecycle.Build a strong "security minded" community for the long term. Expanding our security framework to the broader community as to help secure the Stellar Ecosystem.Identify gaps in tools and automation in the Stellar Ecosystem, and help close those gaps by leveraging all SDF resources available (legal, business partnerships, grants, or developed in house).You have:8+ years of experience on a SecOps, AppSec team and/or Software development team.Strong understanding of security libraries and common security flaws.Hands on development experience with various languages. Being able to understand and work with a new language is a plus.A strong track record working in a collaborative environmentExperience consulting with external vendorsExperience with MITRE, NIST, OWASP frameworksExperience with common security / pen testing tools, nmap, Burp SuiteExperience with automated security scanners: Nessus, Qualys, SnykA strong understanding of OSI protocols such as TCP/IP, UDP, HTTP, HTTPSA good understanding of Cloud Infrastructure access controls and best practices.A good understanding of LinuxExperience performing security testing using fuzzing techniquesNice to have:Experience working on open source projectsActive participation in the crypto communityExperience with infrastructure solutions like Docker, KubernetesExperience in developing smart contractsExperience applying formal methods of verifying blockchain systemsWe offer competitive pay with a base salary

range for this position of $195,000 - $245,000 depending on job-related knowledge, skills, experience, and location. In addition, we offer lumen-denominated grants along with the following perks and benefits:USA Benefits/Perks:Competitive health, dental & vision coverage with most plans covered at 100% for the employee + any dependantsFlexible time off + 15 company holidays including a company-wide holiday breakUp to 12 weeks of paid parental leave for both non-birthing and birthing parents, as well as up to 14 weeks of paid pregnancy leave for birthing parentsGym reimbursement ($80 per month)Life & ADD (up to $50K)Short & Long term disability401K with 4% matchHealth & Dependent Care FSA AccountsCommuter benefits with $250/month employer contributionHealth Savings Account (HSA) with monthly employer contributionFamily building benefits through KindbodyWellbeing benefits (One Medical, Rightway, Headspace)L&D budget of $1,500/yearDaily lunch and snacks in officeCompany retreatsAbout Stellar Stellar is more than a blockchain. Powered by a decentralized, fast, scalable, and uniquely sustainable network made for financial products and services and a thriving and passionate ecosystem that includes a non-profit organization driven by a mission, Stellar is paving the path to unlock the world’s economic potential through blockchain technology. Built with speed and low costs in mind, the Stellar network provides builders and financial institutions worldwide a platform to issue assets, and to send and convert currencies in real time creating real world utility. Founded in 2014, the Stellar Development Foundation (SDF) supports the continued development and growth of the Stellar network and also serves the ecosystem of NGOs, corporations, universities, small businesses, governments, and solo entrepreneurs building on the Stellar network through tooling, funding and strategic collaborations. Together, Stellar is where blockchain meets the real world. About the Stellar Development Foundation The Stellar Development Foundation (SDF) is a non-profit organization focused on working with and supporting changemakers to create equitable access to the global financial system through blockchain technology. SDF provides grants, investments, funding, and other awards to builders and organizations. SDF also develops resources and tooling on the Stellar network to help unlock real world utility. As a nonprofit foundation, SDF puts the health of the Stellar network and the Stellar ecosystem and its mission above all else.We look forward to hearing from you! Privacy Policy By submitting your application, you are agreeing to our use and processing of your data in accordance with our Privacy Policy . SDF is committed to diversity in its workforce and is proud to be an equal opportunity employer. SDF does not make hiring or employment decisions on the basis of race, color, religion, creed, gender, national origin, age, disability, veteran status, marital status, pregnancy, sex, gender expression or identity, sexual orientation, citizenship, or any other basis protected by applicable local, state or federal law.

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.

#J-18808-Ljbffr