Protocol Security Researcher

Aave Labs

Asiago

In loco

EUR 120.000 - 180.000

Tempo pieno

9 giorni fa
Generatore di candidature

Una candidatura apposita per questo posto — un curriculum e una lettera di presentazione personalizzati, perfettamente in linea con l'annuncio.

Supera i filtri ATS

Descrizione del lavoro

Aave Labs is seeking a Protocol Security Researcher to strengthen its internal security function, addressing smart contract security, protocol design, adversarial research, and AI-assisted review. The role involves evaluating major protocol changes before deployment, maintaining security context across deployed systems, and reasoning about risks from dependencies and integrations to continuously reduce protocol risk.

This position focuses on impact beyond traditional audits.

Competenze

  • 5+ years of relevant security experience
  • Strong smart contract security background
  • Ability to independently review complex codebases and reason about protocol-level failure modes
  • Attacker mindset: you can move from “this looks wrong” to “this is how it could be exploited”
  • Strong understanding of DeFi mechanisms, including lending, liquidations, accounting, oracles, collateral, governance, and integrations
  • Evidence that you are actively using AI to improve security research, review quality, or review throughput
  • Clear written communication: you can explain risk, impact, uncertainty, and trade-offs to engineers and non-security stakeholders
  • Good judgment about severity, exploitability, and when a finding matters

Mansioni

  • Review major Aave protocol changes before external audit or deployment
  • Perform attacker-driven analysis of smart contracts, protocol mechanisms, and integrations
  • Participate in design and architecture discussions early enough to influence security-relevant decisions
  • Identify risks in Aave-adjacent systems, including assets, bridges, oracles, adapters, and critical dependencies
  • Contribute to AI-assisted security tooling and evaluate its effectiveness in real review workflows
  • Turn review findings into reusable knowledge, invariants, assumptions, and testing or monitoring ideas
  • Work with monitoring and incident response teams when review findings imply operational detection or response needs
  • Collaborate with external auditors by helping define scope, known risks, and areas of concern

Conoscenze

Smart contract security
Threat modeling
Code review
DeFi familiarity
AI tooling in security
Written communication
Attacker mindset

Strumenti

Security tooling

Descrizione del lavoro

About us

Aave Labs began with a simple question: how do we make financial services like borrowing, saving, and earning more accessible globally?

We built the Aave Protocol, now the world’s largest and most trusted onchain lending market, connecting decentralized finance with individuals, traditional finance, and fintech.

Today, we build trusted, high-quality products that expand access to lending, credit, and savings globally

Our culture

We build trusted products that help people access and discover economic opportunities.

We hold a high bar for quality and craftsmanship. No detail is too small. Trust depends on it.

We’re a global team building products people can actually use, turning complex technology into something simple and reliable.

We stay aligned, move quickly, and think long term, while keeping teams lean and focused on impact.

About the Role

Aave is looking for a Protocol Security Researcher to help build its internal protocol security function.

The role sits at the intersection of smart contract security, protocol design, adversarial research, and AI-assisted review. You will help assess major protocol changes before deployment, maintain security context across Aave’s deployed systems, and reason about the risks introduced by critical dependencies, integrations, and Aave-adjacent infrastructure.

This is not a narrow audit role. The goal is to improve Aave’s ability to understand and reduce protocol risk continuously.

How you can make an impact:
  • Review major Aave protocol changes before external audit or deployment
  • Perform attacker-driven analysis of smart contracts, protocol mechanisms, and integrations
  • Participate in design and architecture discussions early enough to influence security-relevant decisions
  • Identify risks in Aave-adjacent systems, including assets, bridges, oracles, adapters, and critical dependencies
  • Contribute to AI-assisted security tooling and evaluate its effectiveness in real review workflows
  • Turn review findings into reusable knowledge, invariants, assumptions, and testing or monitoring ideas
  • Work with monitoring and incident response teams when review findings imply operational detection or response needs
  • Collaborate with external auditors by helping define scope, known risks, and areas of concern
Let’s connect if you have:
  • 5+ years of relevant security experience
  • Strong smart contract security background
  • Ability to independently review complex codebases and reason about protocol-level failure modes
  • Attacker mindset: you can move from “this looks wrong” to “this is how it could be exploited”
  • Strong understanding of DeFi mechanisms, including lending, liquidations, accounting, oracles, collateral, governance, and integrations
  • Evidence that you are actively using AI to improve security research, review quality, or review throughput
  • Clear written communication: you can explain risk, impact, uncertainty, and trade-offs to engineers and non-security stakeholders
  • Good judgment about severity, exploitability, and when a finding matters
Nice to haves:
  • Experience with formal methods, fuzzing, invariant testing, or custom security tooling
  • Experience building internal tools for security review, code understanding, or knowledge management
  • Experience working with external audit firms or leading audit engagements
  • Familiarity with governance payloads, upgrade systems, permissioning, and incident response
  • Open-source security research, published findings, CTFs, bug bounties, or prior public vulnerability research

Haven’t quite met all the criteria? Let’s not miss out on the chance to speak. Whilst you might not meet every single requirement, you might bring other, more exciting skills to the companies!

Equal opportunities statement:

Aave Labs celebrates diversity and views each and every team member as a separate individual with their own unique identity. No matter your race, religion, gender, ethnicity, age, disability, sexual orientation or even the wallet you use, we welcome you at Aave Labs. As an equal opportunities employer, we take accountability and believe in everyone’s potential to build, create and inspire changes. With a mission to build a diverse workforce, we are proud to foster a working environment in which everyone can feel safe and valued for who they are.

Ottieni la revisione del curriculum gratis e riservata.

o trascina qui il file.

Similar jobs

Offerte di lavoro simili che vale la pena confrontare

Protocol Security Researcher
Protocol Security Researcher

Jobgether • Italia

Remoto
EUR 90.000 - 150.000
Remote-first across Europe, Asia and U
Remote Protocol Security Researcher (AI-Driven)
Remote Protocol Security Researcher (AI-Driven)

Jobgether • Italia

Remoto
EUR 90.000 - 150.000
Remote-first across Europe, Asia and U
Application Security Engineer (F/M/D)
Application Security Engineer (F/M/D)

Awin • Milano

In loco
EUR 90.000 - 120.000
Flexi-Week
Flexi-office
Remote work furniture allowance
+3
Auditor (FinCrime)
Auditor (FinCrime)

Revolut • Milano

Ibrido
EUR 70.000 - 100.000
Security Engineer (Full Remote - Italy)
Security Engineer (Full Remote - Italy)

EverAI • Italia

In loco
EUR 65.000 - 115.000
4 weeks PTO
Fully remote work
Learning budget
+3
Liquid Staking Backend Engineer
Liquid Staking Backend Engineer

Folks Finance • Italia

Ibrido
EUR 90.000 - 120.000
Competitive salary and token options
Flexible working hours
Remote work options
+2
Credit Manager (Fraud)
Credit Manager (Fraud)

Revolut • Milano

In loco
EUR 70.000 - 90.000
Information Security Compliance Specialist
Information Security Compliance Specialist

Docebo • Milano

In loco
EUR 70.000 - 110.000
Security Software Engineer (RAL up to €87,600 + equity)
Security Software Engineer (RAL up to €87,600 + equity)

TROPICO Security • Milano

Ibrido
EUR 40.000 - 88.000
flexible hours
work from home
Macbook Pro and iPhone
+1
Product Manager - Credit
Product Manager - Credit

Satispay • Milano

In loco
EUR 50.000 - 70.000
Health insurance
Stock Option Plan
Meal vouchers
+2