All remote jobs
Open role
Remote opportunity atCertiK

Blockchain Security Engineer – Senior Level (Solidity / Rust / Golang )

Review the role, location requirements, compensation details, and application process before deciding whether this opportunity fits your next career move.

Published
20Listing views
0Application actions
3 Oct 2026Apply before
Opportunity details

About this role.

AI Summary

CertiK seeks a senior blockchain security engineer to audit smart contracts, blockchain protocols, nodes, and decentralized applications. The role combines hands-on vulnerability assessment, client security consultation, independent research, and development of internal security tooling. Candidates need at least three years of relevant engineering or security experience and two years of blockchain experience across ecosystems such as EVM, Solana, Move, Cosmos, or SDKs. Strong threat-modeling, risk-analysis, and Rust, Go, Solidity, or Python skills are central to success in this US remote full-time position.

Role DNA

A quick view of the complexity, pace, ownership and collaboration implied by the job description.

Job Complexity

5/5
EasyHard

Pace & Pressure

4/5
RelaxedFast-paced

Autonomy Level

5/5
GuidedFull ownership

Communication Load

4/5
IndependentCollaborative
AI insightThis is a senior, highly specialized security role requiring deep knowledge of smart-contract and protocol attack surfaces, secure coding, and independent research. Engineers must identify subtle vulnerabilities while communicating practical remediation guidance to external Web3 teams.

Salary analysis

Estimated compensation compared with the broader US market for similar roles.

Estimated job medianMarket rate
$141,000
US market range$125k–$200k
AI insightThe disclosed US annual salary range is $102,000 to $180,000 USD, producing an offer median of $141,000 USD. A competitive US market range for a senior blockchain security engineer is approximately $125,000 to $200,000 annually, varying with auditing depth, protocol expertise, research accomplishments, and location.

Core skills

Skills and capabilities most closely associated with this opportunity.

Sample interview questions
How would you approach a security audit of a Solidity smart-contract protocol?

I would first establish the protocol’s intended invariants, trust boundaries, privileged roles, and asset flows. I would then review architecture and dependencies, perform manual code analysis for common and protocol-specific vulnerabilities, create adversarial test cases and fuzzing or invariant tests, and prioritize findings by exploitability and impact. Finally, I would provide reproducible proofs of concept and clear remediation recommendations, then validate fixes through a follow-up review.

Describe how you would threat-model a blockchain node or decentralized protocol.

I would identify assets, actors, entry points, trust assumptions, and dependencies such as peer-to-peer networking, RPC endpoints, consensus components, and key management. I would evaluate threats including denial of service, consensus manipulation, eclipse attacks, malformed-message handling, authorization failures, and dependency compromise. The resulting model would map mitigations to each risk and define tests or monitoring controls that verify those mitigations.

What security issues are especially important when auditing cross-chain bridges?

Bridges require close examination of validator or relayer trust models, message authenticity, replay protection, finality assumptions, signature verification, upgradeability, and withdrawal accounting. I would verify that messages cannot be forged, replayed, reordered unsafely, or processed before sufficient source-chain finality. I would also assess key compromise scenarios and ensure controls such as threshold signing, rate limits, pausability, and monitored anomaly detection are appropriate.

How do you balance independent security research with client-facing audit delivery?

I would maintain a structured workflow that protects client deadlines while reserving focused time for research that improves audit coverage and tooling. Research findings should be translated into reusable detection methods, testing patterns, or audit checklists whenever possible. For clients, I would communicate risks precisely, explain business impact without unnecessary alarm, and provide actionable remediation paths.

Give an example of how Rust or Go expertise can improve blockchain security work.

Rust and Go allow an auditor to understand and assess node implementations, SDK behavior, networking code, cryptographic integrations, and concurrency risks beyond smart contracts. I can use that expertise to build targeted test harnesses, static-analysis checks, fuzzers, or proof-of-concept exploits. It also helps distinguish application-layer issues from underlying protocol or client implementation weaknesses.

This analysis is generated from the job description. Salary estimates, role characteristics and sample answers are guidance, not employer-provided facts.

About the Role:

We are seeking a Senior Blockchain Security Engineer with a strong security mindset and deep technical expertise across smart contracts, blockchain nodes, and decentralized infrastructure. You will play a critical role in safeguarding Web3 projects by auditing code, building security tools, and driving research. If you have hands-on experience in Web3 and are passionate about advancing the security of decentralized technologies, we’d love to hear from you.

Responsibilities

  • Audit and review codebases for smart contracts, blockchain protocols, and decentralized applications (dApps) to identify and remediate vulnerabilities.
  • Work closely with external blockchain teams to enhance the security of their products by providing expert security consultation and implementing remediation strategies.
  • Conduct independent security research, explore new attack vectors, and deliver actionable insights.
  • Design, develop, and maintain internal security tools and frameworks to strengthen our security services.
  • Continuously improve internal processes, methodologies, and service offerings while ensuring high client satisfaction and long-term partnerships.

Requirements

  • Bachelor’s, Master’s, or PhD in Mathematics, Computer Science, or Information Security.
  • Minimum 3 years of professional experience as a Software Engineer, Security Engineer, or in a related role.
  • At least 2 years of hands-on experience with blockchain technologies, including: Smart contracts (EVM chains, Solana, Move, etc.), Blockchain protocols (nodes, SDKs, Cosmos, etc.)
  • Strong expertise in threat modeling, risk assessment, and security analysis.
  • Proficiency in one or more programming languages: Rust, Go, Solidity, Python, etc.
  • Passion for Cryptocurrency, DeFi, and Blockchain technologies.

Preferred Qualifications

  • Solid academic or practical background in Mathematics, Cryptography, or Cybersecurity.
  • Demonstrated experience conducting audits and collaborating with leading Web3 protocols.
  • Recognized achievements such as published CVEs, or strong placements in Attackathons, Bug Bounties, or Audit Contests.

Compensation

Additional Information

About the Company

CertiK is the largest blockchain security auditor and provides a comprehensive suite of tools to secure the industry at scale. To date, CertiK has worked with over 4,900 Enterprise clients, secured over $557 billion worth of digital assets, and has detected over 18,000 vulnerabilities in blockchain code. Our clients include leading projects such as OKX, Tether, Ripple, and Pancakeswap. Our investors include top VCs like Tiger Global, Coatue Management, Shunwei Capital and Hillhouse Capital as well as industry leaders like Coinbase Ventures and Binance.

Investors = Insight Partners, Sequoia, Tiger Global, Coatue Management, Lightspeed, Advent International, SoftBank, Hillhouse Capital, Goldman Sachs, Shunwei Capital, IDG Capital, Wing, Legend Star, Danhua Capital and other investors.

About You

You’re a self-starter. You believe in tackling the most important problems, even if they are the most difficult problems. You’re comfortable with the unknown and understand that startup life means that you’re going to be wearing multiple hats. And that’s what motivates you. You’re accountable and obsessed with improvement, both in yourself and in others. You’re up to the challenge of building a world-class company that aims to be the infrastructure for more secure software for all.

Compensation

Target annual salary for this role performed in the US is $102,000 – $180,000.

The exact compensation at which this job is filled will be determined by the skills and experience of qualified candidates.

CertiK is proud to offer medical, vision, and dental insurance, 401(k) plan with company matching, life and accidental death and dismemberment insurance, HSA (with high deductible plan), FSA, and other benefits to all full-time employees, along with flexible paid time off and holidays. CertiK also offers a variable commission program for business development sales roles.

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.

CertiK is proud to be an equal opportunity employer. We will not discriminate against any applicant or employee on the basis of age, race, color, creed, religion, sex, sexual orientation, gender, gender identity or expression, medical condition, national origin, ancestry, citizenship, marital status or civil partnership/union status, physical or mental disability, pregnancy, childbirth, genetic information, military and veteran status, or any other basis prohibited by applicable federal, state or local law.

CertiK will consider for employment qualified applicants with criminal histories in a manner consistent with local and federal requirements.

https://www.eeoc.gov/sites/default/files/migrated_files/employers/poster_screen_reader_optimized.pdf

All CertiK employees are expected to actively support diversity on their teams, and in the Company.

Apply now >

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

Next step

Apply now.

Follow the employer’s application method and review Jobicy’s safety guidance before sharing personal information.

Did you apply?Let us know, and we’ll help you track your application.

Continue on the employer website

Protect your personal information and never pay to secure an interview or job offer. View safety guidance.

Log in to save
One quick step before you apply

Create your free account, then apply.

Build a more organized job search on Jobicy and continue to the employer's application when you're ready.

  • Never lose a promising opportunitySave roles and return to them from your dashboard.
  • See your entire search at a glanceTrack applications, stages and next steps in one place.
  • Get matched with relevant remote jobsChoose the alerts and digests that work for you.
Applying is free. The employer's application opens in a new tab.
Add alert
Jobs Talent AI Tools Salaries
Menu