[![Image]() Meet Jobicy Copilot — free AI autofill for job applications + remote job alerts ›](#)   [All remote jobs](https://jobicy.com/jobs.md)Open role[![CertiK logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/03/Jobicy-210308091023-955845.jpg)](https://jobicy.com/company/certik.md)Remote opportunity at[CertiK](https://jobicy.com/company/certik.md)

# Blockchain Security Engineer – Senior Level (Solidity / Rust / Golang )

Review the role, location requirements, compensation details, and application process before deciding whether this opportunity fits your next career move.

[Apply for this job](#job-application)[View company](https://jobicy.com/company/certik.md)Share3 Sep 2026Published27Listing views1Application actions3 Oct 2026Apply before  Opportunity details

## About this role.

AI SummaryCertiK seeks a senior blockchain security engineer to audit smart contracts, blockchain protocols, nodes, and decentralized applications. The role combines hands-on vulnerability assessment, client security consultation, independent research, and development of internal security tooling. Candidates need at least three years of relevant engineering or security experience and two years of blockchain experience across ecosystems such as EVM, Solana, Move, Cosmos, or SDKs. Strong threat-modeling, risk-analysis, and Rust, Go, Solidity, or Python skills are central to success in this US remote full-time position.

## Role DNA

A quick view of the complexity, pace, ownership and collaboration implied by the job description.

### Job Complexity

5/5EasyHard

### Pace & Pressure

4/5RelaxedFast-paced

### Autonomy Level

5/5GuidedFull ownership

### Communication Load

4/5IndependentCollaborative

AI insightThis is a senior, highly specialized security role requiring deep knowledge of smart-contract and protocol attack surfaces, secure coding, and independent research. Engineers must identify subtle vulnerabilities while communicating practical remediation guidance to external Web3 teams.

## Salary analysis

Estimated compensation compared with the broader US market for similar roles.

Estimated job medianMarket rate$141,000US market range$125k–$200k0$220k

AI insightThe disclosed US annual salary range is $102,000 to $180,000 USD, producing an offer median of $141,000 USD. A competitive US market range for a senior blockchain security engineer is approximately $125,000 to $200,000 annually, varying with auditing depth, protocol expertise, research accomplishments, and location.

## Core skills

Skills and capabilities most closely associated with this opportunity.

[Blockchain Security](https://jobicy.com/jobs?search_keywords=Blockchain%20Security.md)[Smart Contract Auditing](https://jobicy.com/jobs?search_keywords=Smart%20Contract%20Auditing.md)[Solidity](https://jobicy.com/jobs?search_keywords=Solidity.md)[Rust](https://jobicy.com/jobs?search_keywords=Rust.md)[Golang](https://jobicy.com/jobs?search_keywords=Golang.md)[Threat Modeling](https://jobicy.com/jobs?search_keywords=Threat%20Modeling.md)[Security Research](https://jobicy.com/jobs?search_keywords=Security%20Research.md)[DeFi](https://jobicy.com/jobs?search_keywords=DeFi.md)[Cryptography](https://jobicy.com/jobs?search_keywords=Cryptography.md)

Sample interview questionsHow would you approach a security audit of a Solidity smart-contract protocol?I would first establish the protocol’s intended invariants, trust boundaries, privileged roles, and asset flows. I would then review architecture and dependencies, perform manual code analysis for common and protocol-specific vulnerabilities, create adversarial test cases and fuzzing or invariant tests, and prioritize findings by exploitability and impact. Finally, I would provide reproducible proofs of concept and clear remediation recommendations, then validate fixes through a follow-up review.

Describe how you would threat-model a blockchain node or decentralized protocol.

I would identify assets, actors, entry points, trust assumptions, and dependencies such as peer-to-peer networking, RPC endpoints, consensus components, and key management. I would evaluate threats including denial of service, consensus manipulation, eclipse attacks, malformed-message handling, authorization failures, and dependency compromise. The resulting model would map mitigations to each risk and define tests or monitoring controls that verify those mitigations.

What security issues are especially important when auditing cross-chain bridges?

Bridges require close examination of validator or relayer trust models, message authenticity, replay protection, finality assumptions, signature verification, upgradeability, and withdrawal accounting. I would verify that messages cannot be forged, replayed, reordered unsafely, or processed before sufficient source-chain finality. I would also assess key compromise scenarios and ensure controls such as threshold signing, rate limits, pausability, and monitored anomaly detection are appropriate.

How do you balance independent security research with client-facing audit delivery?

I would maintain a structured workflow that protects client deadlines while reserving focused time for research that improves audit coverage and tooling. Research findings should be translated into reusable detection methods, testing patterns, or audit checklists whenever possible. For clients, I would communicate risks precisely, explain business impact without unnecessary alarm, and provide actionable remediation paths.

Give an example of how Rust or Go expertise can improve blockchain security work.

Rust and Go allow an auditor to understand and assess node implementations, SDK behavior, networking code, cryptographic integrations, and concurrency risks beyond smart contracts. I can use that expertise to build targeted test harnesses, static-analysis checks, fuzzers, or proof-of-concept exploits. It also helps distinguish application-layer issues from underlying protocol or client implementation weaknesses.

About the Role:

We are seeking a Senior Blockchain Security Engineer with a strong security mindset and deep technical expertise across smart contracts, blockchain nodes, and decentralized infrastructure. You will play a critical role in safeguarding Web3 projects by auditing code, building security tools, and driving research. If you have hands-on experience in Web3 and are passionate about advancing the security of decentralized technologies, we’d love to hear from you.

### Responsibilities

* Audit and review codebases for smart contracts, blockchain protocols, and decentralized applications (dApps) to identify and remediate vulnerabilities.
* Work closely with external blockchain teams to enhance the security of their products by providing expert security consultation and implementing remediation strategies.
* Conduct independent security research, explore new attack vectors, and deliver actionable insights.
* Design, develop, and maintain internal security tools and frameworks to strengthen our security services.
* Continuously improve internal processes, methodologies, and service offerings while ensuring high client satisfaction and long-term partnerships.

### Requirements

* Bachelor’s, Master’s, or PhD in Mathematics, Computer Science, or Information Security.
* Minimum 3 years of professional experience as a Software Engineer, Security Engineer, or in a related role.
* At least 2 years of hands-on experience with blockchain technologies, including: Smart contracts (EVM chains, Solana, Move, etc.), Blockchain protocols (nodes, SDKs, Cosmos, etc.)
*  Strong expertise in threat modeling, risk assessment, and security analysis.
* Proficiency in one or more programming languages: Rust, Go, Solidity, Python, etc.
* Passion for Cryptocurrency, DeFi, and Blockchain technologies.

### Preferred Qualifications

* Solid academic or practical background in Mathematics, Cryptography, or Cybersecurity.
* Demonstrated experience conducting audits and collaborating with leading Web3 protocols.
* Recognized achievements such as published CVEs, or strong placements in Attackathons, Bug Bounties, or Audit Contests.

### Compensation

### Additional Information

About the Company

CertiK is the largest blockchain security auditor and provides a comprehensive suite of tools to secure the industry at scale. To date, CertiK has worked with over 4,900 Enterprise clients, secured over $557 billion worth of digital assets, and has detected over 18,000 vulnerabilities in blockchain code. Our clients include leading projects such as OKX, Tether, Ripple, and Pancakeswap. Our investors include top VCs like Tiger Global, Coatue Management, Shunwei Capital and Hillhouse Capital as well as industry leaders like Coinbase Ventures and Binance.

Investors = Insight Partners, Sequoia, Tiger Global, Coatue Management, Lightspeed, Advent International, SoftBank, Hillhouse Capital, Goldman Sachs, Shunwei Capital, IDG Capital, Wing, Legend Star, Danhua Capital and other investors.

About You

You’re a self-starter. You believe in tackling the most important problems, even if they are the most difficult problems. You’re comfortable with the unknown and understand that startup life means that you’re going to be wearing multiple hats. And that’s what motivates you. You’re accountable and obsessed with improvement, both in yourself and in others. You’re up to the challenge of building a world-class company that aims to be the infrastructure for more secure software for all.

Compensation

Target annual salary for this role performed in the US is $102,000 – $180,000.

The exact compensation at which this job is filled will be determined by the skills and experience of qualified candidates.

CertiK is proud to offer medical, vision, and dental insurance, 401(k) plan with company matching, life and accidental death and dismemberment insurance, HSA (with high deductible plan), FSA, and other benefits to all full-time employees, along with flexible paid time off and holidays. CertiK also offers a variable commission program for business development sales roles.

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.

CertiK is proud to be an equal opportunity employer. We will not discriminate against any applicant or employee on the basis of age, race, color, creed, religion, sex, sexual orientation, gender, gender identity or expression, medical condition, national origin, ancestry, citizenship, marital status or civil partnership/union status, physical or mental disability, pregnancy, childbirth, genetic information, military and veteran status, or any other basis prohibited by applicable federal, state or local law.

CertiK will consider for employment qualified applicants with criminal histories in a manner consistent with local and federal requirements.

[https://www.eeoc.gov/sites/default/files/migrated_files/employers/poster_screen_reader_optimized.pdf](https://www.eeoc.gov/sites/default/files/migrated_files/employers/poster_screen_reader_optimized.pdf)

All CertiK employees are expected to actively support diversity on their teams, and in the Company.

Show more

[Apply now >](https://jobicy.com/jobs/152447-blockchain-security-engineer-senior-level-solidity-rust-golang.md)

*

![Upload CV](data:image/svg+xml;base64,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)

### Upload your resume now

To unlock remote work opportunities and be discovered by global employers.

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

Next step

## Apply now.

Follow the employer’s application method and review Jobicy’s safety guidance before sharing personal information.

Keep exploring

## Related remote jobs.

Matched by job category10 related opportunities[Cybersecurity](https://jobicy.com/categories/cybersecurity.md) [Browse all jobs](https://jobicy.com/jobs.md)
*
![CertiK logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2021/03/Jobicy-210308091023-955845.jpg)
CertiK  Sep 3

### [Blockchain Security Expert – AI Track](https://jobicy.com/jobs/152451-blockchain-security-expert-ai-track.md)

About the Company CertiK is the largest blockchain security auditor and provides a comprehensive suite of tools to secure the industry at scale. To date, CertiK has worked with over…

*
![Keyfactor, Inc. logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/ba8ae349-221.png)
Keyfactor, Inc.  Sep 1

### [Information Security Engineer](https://jobicy.com/jobs/152303-information-security-engineer.md)

About Keyfactor Our mission is to securely connect the world: humans, machines, and AI. Keyfactor is the leader in trust infrastructure for AI and machines, helping the world’s largest enterprises…

*
![Karbon logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/13eaf3d2-221.png)
Karbon  Sep 1

### [Senior Security Engineer](https://jobicy.com/jobs/152293-senior-security-engineer-3.md)

About Karbon Karbon is the global leader in AI-powered practice management software for accounting firms. We provide an award-winning cloud platform that helps tens of thousands of accounting professionals work…

*
![Karbon logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/13eaf3d2-221.png)
Karbon  Sep 1

### [AppSec Engineer](https://jobicy.com/jobs/152273-appsec-engineer.md)

About Karbon Karbon is the global leader in AI-powered practice management software for accounting firms. We provide an award-winning cloud platform that helps tens of thousands of accounting professionals work…

*
![Reddit logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2020/10/Reddit.jpg)
Reddit  Aug 31

### [Staff Product Security Engineer](https://jobicy.com/jobs/152256-staff-product-security-engineer.md)

Reddit is a community of communities. It’s built on shared interests, passion, and trust, and is home to the most open and authentic conversations on the internet. Every day, Reddit…

*
![SWORD Health logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/5dda1790-221.jpg)
SWORD Health  Aug 31

### [Senior Security Operations Engineer](https://jobicy.com/jobs/152254-senior-security-operations-engineer-2.md)

At Sword, we’re building AI to heal billions and unlock humanity’s full potential. In doing so, we’re pioneering AI Care, a fundamentally new approach to healthcare built for medical reasoning,…

*
![Apollo.io logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2022/01/f3c639242c4d1f4cb9c0730ac3842a72.jpeg)
Apollo.io  Aug 31

### [Senior Application Security Engineer](https://jobicy.com/jobs/152253-senior-application-security-engineer-2.md)

Apollo.io is the leading go-to-market solution for revenue teams, trusted by over 500,000 companies and millions of users globally, from rapidly growing startups to some of the world’s largest enterprises….

*
![Reddit logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2020/10/Reddit.jpg)
Reddit  Aug 31

### [Senior Security Engineer, AI Security](https://jobicy.com/jobs/152252-senior-security-engineer-ai-security.md)

Reddit is a community of communities. It’s built on shared interests, passion, and trust, and is home to the most open and authentic conversations on the internet. Every day, Reddit…

*
![Maven Clinic logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2026/07/c4b2d5ecf34b-221.webp)
Maven Clinic  Aug 31

### [Staff Software Engineer – Product Security](https://jobicy.com/jobs/152250-staff-software-engineer-product-security.md)

Maven Clinic is the world’s largest virtual clinic for women and families on a mission to make healthcare work for all of us. Through Maven Enterprise, the company partners with…

*
![SWORD Health logo](https://jobicy.com/data/server-nyc0409/galaxy/mercury/2025/06/5dda1790-221.jpg)
SWORD Health  Aug 31

### [Security Operations Lead (SecOps)](https://jobicy.com/jobs/152249-security-operations-lead-secops.md)

At Sword, we’re building AI to heal billions and unlock humanity’s full potential. In doing so, we’re pioneering AI Care, a fundamentally new approach to healthcare built for medical reasoning,…