Описание
OpenZeppelin provides security services and open-source contract libraries for onchain finance and Web3. Its work combines AI-native security tooling, research, and audit expertise to support institutions and crypto-native teams throughout the secure development lifecycle.
Задачи
- Own features of the OpenZeppelin Contracts Library for Daml end to end, from design through audit
- Design and implement components of the year-one Reference Implementations, including a privacy-preserving DEX, lending protocol, cross-chain stablecoin settlement, and confidential auction launchpad
- Implement and shepherd the OZ Daml versions of CIP-56, CIP-86, CIP-103, and future CIPs
- Coordinate with Digital Asset on specification evolution and with ChainSafe on middleware alignment
- Present and defend designs in technical discussions with Digital Asset, the Canton Foundation, and other partners
- Work with security researchers on threat models, audit preparation, and fixes for owned components
- Use AI systems for research, design, implementation, testing, and security work; build agents, skills, and workflows, and share effective approaches with the team
- Contribute developer-experience and security feedback upstream to the Canton protocol, Splice, the Daml SDK, and the Splice Wallet Kernel
- Research privacy-preserving DeFi, multi-party authorization patterns, and Canton-specific primitives, and share findings with the team
Требования
- Production fluency in Daml, including templates, choices, controllers, observers, signatories, multi-party authorization, sub-transaction views, and propose/accept patterns
- Deep understanding of Canton architecture, including the Global Synchronizer, private synchronizers, transaction visibility, smart contract upgrades, and token standards
- At least 3 years of production smart contract development, including hands-on work on Canton or another UTXO-based or privacy-preserving architecture
- Production DeFi experience shipping primitives such as AMMs, vaults, lending protocols, or cross-chain settlement
- Understanding of security pitfalls and standard EVM patterns, including access control, token standards, lending pools, and DEXs
- A security-first mindset, adversarial thinking, and the ability to identify vulnerabilities in Daml code
- Daily use of Claude Code, Cursor, or equivalent; familiarity with agents, harnesses, and skills, and accountability for shipped AI-assisted work
- Fluent English for client-facing communication
- Autonomy and proactivity
- Будет плюсом: published audits, threat models or disclosures, cryptography or financial engineering background, privacy-preserving DeFi, institutional finance and compliance design, experience running an SV or contributing to Splice internals, governance or Canton Coin tokenomics, cross-chain messaging protocols, reusable library or SDK API design, applying AI to security work, hands-on experience with non-EVM ecosystems, open-source contributions to widely used smart-contract or AI-tooling libraries
Условия
- Fully remote work
- Flexible time off
- 8 Weeks of paid leave for primary caregivers and 4 weeks for secondary caregivers
- One-time $3,600 baby bonus
- Up to $500 in home-office equipment support
- Medical insurance
- Learning and development opportunities
- Monthly stipend for a preferred co-working space
- Paid technical work trial as part of the interview process