Protocol Security Researcher

Jobgether

Italia

Remoto

EUR 90.000 - 150.000

Tempo pieno

5 giorni fa
Candidati tra i primi
Generatore di candidature

Non inviare un curriculum generico — genera un curriculum e una lettera di presentazione personalizzati per questo specifico ruolo.

Supera i filtri ATS

Vantaggi offerti da questo lavoro

Remote-first across Europe, Asia and U

Descrizione del lavoro

Jobgether in Italy seeks a Protocol Security Researcher to help build an internal security function for a globally distributed engineering team. You will work at the intersection of smart contract security, protocol design, adversarial research, and AI-assisted security review.

You will assess major protocol changes before deployment, identify risks across DeFi systems, and collaborate with engineers, monitoring, incident responders, and external auditors to improve review quality and impact.

Competenze

  • 5+ years of security experience with smart contract and protocol security.
  • Ability to independently review complex codebases and reason about protocol-level failure modes.
  • Strong adversarial mindset with realistic exploitation reasoning.
  • Solid understanding of DeFi mechanisms including lending, governance, oracles.
  • Experience using AI to improve security research and review quality.
  • Excellent written and verbal communication with technical and non-technical stakeholders.
  • Experience with formal methods, fuzzing, invariant testing, or custom tooling is a plus.
  • Experience collaborating with external audit firms or leading security audit engagements is advantageous.

Mansioni

  • Review significant protocol and smart contract changes before audits or deployment.
  • Conduct attacker-driven security research across contracts, protocols, and infrastructure.
  • Participate in architecture and design discussions early to influence security decisions.
  • Investigate risks across assets, bridges, oracles, adapters, and dependencies.
  • Analyze potential failure modes and translate findings into exploitation scenarios and mitigations.
  • Develop and contribute to AI-assisted security tooling and assess its effectiveness.
  • Convert findings into reusable knowledge, invariants, tests, and monitoring strategies.
  • Collaborate with monitoring and incident response teams when risks require detection or response.

Conoscenze

Smart contract security
Protocol security
Adversarial mindset
Code review
DeFi understanding
AI-assisted security
Technical communication
Audit engagement experience

Strumenti

Formal methods
Fuzzing
Invariant testing
Custom security tooling

Descrizione del lavoro

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Protocol Security Researcher based in Italy.

This is an opportunity to help build and strengthen an internal protocol security function within a globally distributed engineering environment.
You will work at the intersection of smart contract security, protocol design, adversarial research, and AI-assisted security review.
Your work will help assess major protocol changes before deployment and identify risks across complex decentralized financial systems.
The role goes beyond traditional auditing, with a focus on continuously improving how protocol risks are understood, tested, monitored, and reduced.
You will collaborate closely with engineers, security specialists, monitoring teams, incident responders, and external auditors.
You will also contribute to reusable security knowledge, tooling, invariants, and testing strategies that can improve review quality and efficiency.
The position offers significant scope to influence security decisions early and help shape the evolution of a high-impact protocol security function.

Accountabilities
  • Review significant protocol and smart contract changes before external audits or production deployment.

  • Conduct attacker-driven security research across smart contracts, protocol mechanisms, integrations, and related infrastructure.

  • Participate in architecture and design discussions early enough to influence security-critical decisions.

  • Investigate risks across adjacent systems, including assets, bridges, oracles, adapters, and other critical dependencies.

  • Analyze potential protocol-level failure modes and translate technical concerns into concrete exploitation scenarios, impact assessments, and mitigation strategies.

  • Develop and contribute to AI-assisted security tooling, while evaluating its effectiveness in real-world security review workflows.

  • Convert security findings into reusable knowledge, invariants, assumptions, tests, monitoring strategies, and other durable security practices.

  • Collaborate with monitoring and incident response teams when identified risks require operational detection or response mechanisms.

  • Work alongside external auditors to help define audit scope, communicate known risks, and highlight areas requiring particular attention.

Requirements
  • 5+ years of relevant security experience, with a strong background in smart contract and protocol security.

  • Demonstrated ability to independently review complex codebases and reason deeply about protocol-level failure modes.

  • Strong adversarial mindset, with the ability to move from identifying suspicious behavior to explaining how a vulnerability could realistically be exploited.

  • Strong understanding of decentralized finance mechanisms, including lending, liquidations, accounting, oracles, collateral, governance, and protocol integrations.

  • Demonstrated use of AI to improve security research, review quality, analysis depth, or review throughput.

  • Strong written and verbal communication skills, with the ability to explain risks, impact, uncertainty, and trade-offs to both technical and non-technical stakeholders.

  • Sound judgment when assessing severity, exploitability, practical impact, and the relevance of individual findings.

  • Experience with formal methods, fuzzing, invariant testing, or custom security tooling is a plus.

  • Experience developing internal tools for security reviews, code understanding, security research, or knowledge management is valued.

  • Experience collaborating with external audit firms or leading security audit engagements is advantageous.

  • Familiarity with governance payloads, upgrade mechanisms, permissioning systems, and incident response is beneficial.

  • Open-source security research, published vulnerability findings, CTF participation, bug bounty experience, or prior public security research is a plus.

  • Candidates who do not meet every listed requirement but bring relevant and demonstrable security expertise are encouraged to apply.

Benefits
  • Remote-first working environment with flexibility across Europe, Asia, and the United States.

  • Opportunity to work on complex smart contract, DeFi, and protocol security challenges with meaningful real-world impact.

  • Broad scope to influence security architecture, research practices, tooling, and internal security processes.

  • Collaboration with experienced engineers, security researchers, monitoring specialists, incident responders, and external auditors.

  • Opportunity to work at the intersection of protocol security and emerging AI-assisted security research.

  • Exposure to advanced decentralized finance infrastructure, including lending markets, governance, oracles, bridges, and integrations.

  • Global, distributed team environment with an emphasis on high-quality engineering, autonomy, and long-term impact.

  • Inclusive workplace committed to creating an environment where people can contribute, feel valued, and develop their expertise.

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

#LI-CL1

Ottieni la revisione del curriculum gratis e riservata.

o trascina qui il file.

Similar jobs

Offerte di lavoro simili che vale la pena confrontare

Remote Protocol Security Researcher (AI-Driven)
Remote Protocol Security Researcher (AI-Driven)

Jobgether • Italia

Remoto
EUR 90.000 - 150.000
Remote-first across Europe, Asia and U
Protocol Security Researcher
Protocol Security Researcher

Aave Labs • Asiago

In loco
EUR 120.000 - 180.000
Protocol Security Researcher DeFi & AI Review
Protocol Security Researcher DeFi & AI Review

Aave Labs • Asiago

In loco
EUR 120.000 - 180.000
Application Security Engineer (F/M/D)
Application Security Engineer (F/M/D)

Awin • Milano

In loco
EUR 90.000 - 120.000
Flexi-Week
Flexi-office
Remote work furniture allowance
+3
Rust & Java Engineer
Rust & Java Engineer

Jobgether • Milano

Ibrido
EUR 45.000 - 65.000
Flexible work setup
Professional growth opportunities
Collaborative team environment
Security Software Engineer (RAL up to €87,600 + equity)
Security Software Engineer (RAL up to €87,600 + equity)

TROPICO Security • Milano

Ibrido
EUR 40.000 - 88.000
flexible hours
work from home
Macbook Pro and iPhone
+1
Information Security Governance Analyst
Information Security Governance Analyst

CRIF • Bologna

In loco
EUR 34.000 - 42.000
Developer Relations Engineer
Developer Relations Engineer

Jobgether • Milano

Remoto
EUR 50.000 - 70.000
Fully remote work
Hands-on experience with next-gen tech
Collaborative environment with mentorship opportunities
Information Security Governance Analyst
Information Security Governance Analyst

Crif • Emilia-Romagna

In loco
EUR 34.000 - 42.000
Cybersecurity Solutions Architect
Cybersecurity Solutions Architect

NHOA Group • Torino

Ibrido
EUR 40.000 - 46.000
Permanent full-time contract
Flexible remote working
International, multicultural team
+1