Job Description
Summary
At Aptos Labs we’re pioneering the future of web3 and need a passionate Application Security Engineer to help secure our ecosystem. In this role, you’ll be at the forefront of safeguarding our Aptos core infrastructure and Aptos Labs products. Your proactive approach will help us identify and mitigate emerging threats, ensuring our systems remain resilient and trustworthy. You will work closely with our developers, influence security best practices, and lead initiatives that shape the future of web3 security.
Responsibilities
- Analyze and assess novel and recurring security issues via design reviews, code audits, penetration tests.
- Respond to and triage reports from bug bounty programs.
- Design and build security tools, develop mitigations, frameworks and hardening strategies tailored for vulnerability prevention and detection.
- Review and develop secure operational practices, and provide security guidance for engineers.
Minimum Qualifications
- B.S. or M.S. in Computer Science, a related technical field, or equivalent experience.
- 3+ years of experience in vulnerability research and exploitation.
- Experience with native and web programming languages, development practices, and common vulnerability patterns (e.g. Rust, TypeScript, etc.)
- Experience with automated security analysis tooling and frameworks (fuzzing, static analysis, etc.)
Preferred Qualifications
- Contributions to the security community (public research, blogging, talks in relevant conferences, etc.)
- Familiarity with smart contracts programming languages (extra bonus for Move), security tools and frameworks, including formal verification.
- Experience with order books, perpetual dex, liquidity pools mathematics and broader DeFi protocols.
The base salary range for this full-time position is $150k -$200k. The range displayed on each job posting reflects the minimum and typical maximum target for new hire salaries for the position of a candidate based in the Bay Area at any level. We do hire exceptionally talented professionals with decades of experience in their field. As such, our range may be higher than what is displayed. Our base salary ranges are determined by experience and location, and we hire at all levels for multiple roles. Within the range, individual pay is determined by work location, job-related skills demonstrated during the interviews, working experience, and relevant education or training. Please note that the compensation details listed in role postings reflect the base salary only and do not include equity, tokens, or benefits.
Skills
- Rust
- Software Engineering
- TypeScript