Senior Security Engineer

Socket.dev

Northern (KY)

Hybrid

USD 150,000 - 210,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Token incentives
Remote-first culture

Job summary

Jito is seeking a Senior Security Engineer to join our security team. This role covers IAM, security reviews, bug bounty operations, AI security tooling, and software supply chain monitoring. The ideal candidate has a software engineering background with a transition into product security and 5+ years of experience.

In a remote-first, high-ownership environment, you will report to the Head of Security and work with a lean team to strengthen and scale our security posture across the organization.

Qualifications

  • Software engineering background with production systems experience.
  • Experience in product security lifecycle: threat modeling, secure design reviews, whitebox code review, vulnerability testing.
  • Track record of security tooling or automation development.
  • Solid understanding of identity and access management concepts.

Responsibilities

  • Own broad security scope: IAM, security reviews, bug bounty operations, AI security tooling.
  • Coordinate external penetration tests and track remediation.
  • Contribute to software supply chain security and threat intel gathering.
  • Document security processes and compliance evidence as needed.

Skills

Software engineering
Threat modeling
Secure design review
Vulnerability testing
IAM concepts
Adversarial testing tooling
Web3/DeFi experience

Education

Bachelor's degree in CS/CE

Job description

Role summary

Jito is seeking a Senior Security Engineer to join their growing security team. This role involves a broad scope of operational and technical responsibilities, including identity and access management, security reviews across the product portfolio (threat modeling, code review, fuzzing), bug bounty operations, AI security research and tooling, software supply chain monitoring, and external penetration test coordination. The ideal candidate has a software engineering background with a transition into product security, 5+ years of professional experience, and proficiency in systems or backend languages like Rust, Go, C++, or Python. Experience in web3, crypto, or DeFi is preferred. This is a remote-first, high-ownership role within a lean, fast-paced team.

About Jito

Jito builds the market layer of Solana: the execution, capital, and incentive infrastructure behind the network's onchain economy. That includes the validator client running the majority of Solana stake, BAM (a new framework for verifiable ordering, pre-execution privacy, and programmable blockspace), JitoSOL (the leading liquid staking token on Solana), and JTX (trading built directly on our own market infrastructure).

We are a lean, high-density team. Everyone here owns real surface area, works in the open, and ships at pace. The engineers on this team are the people market makers call when milliseconds matter.

About the Role

We're growing our security team and looking for an engineer who can own a broad operational and technical scope: someone equally at home triaging an access request, running a security review, or building a custom testing framework. You'll report directly to the Head of Security, working closely to strengthen and scale our security posture across the organization.

What You'll Do
  • Identity and access management: provisioning, lifecycle operations, and monitoring for critical changes
  • Security reviews across our product portfolio: threat modeling, code review, fuzzing, and functional testing
  • Day-to-day bug bounty operations: triage, remediation tracking, and escalation of high-severity findings
  • AI security research and tooling: adversarial testing frameworks for agent controls, with a focus on reusable patterns
  • Software supply chain monitoring: malicious package detection beyond standard CVE scanning
  • External penetration test coordination: scoping, logistics, and post-engagement remediation tracking
  • Compliance documentation and evidence gathering as requirements emerge
What We're Looking For
  • A software engineering background is essential: you've built production systems, and that foundation shapes how you approach security
  • You've since moved into product security and are fluent in the full lifecycle: threat modeling, secure design review, whitebox code review, and vulnerability testing
  • 5+ years of professional experience, with a meaningful portion in software engineering before transitioning into security
  • Proficiency in at least one systems or backend language (Rust preferred; Go, C++, or Python also work). You will write code, build tooling, and read production codebases as a routine part of this role.
  • Demonstrated experience in product or application security, not solely infrastructure- or compliance-focused roles
  • Track record of building security tooling or automation from scratch
  • Experience conducting or leading security reviews on production software systems
  • Solid understanding of identity and access management concepts and tooling
  • Genuine interest in AI security with the ability to build adversarial testing tooling
  • A thoughtful approach to software supply chain risk beyond checkbox scanning
  • Strong written communication: documentation is a real part of this job
  • Comfortable with high ownership and working autonomously on a small team
  • Experience in web3, crypto, or DeFi
  • Bachelor's degree in Computer Science, Computer Engineering, or a related technical field
Nice to Have
  • Hands-on experience with mobile device management (MDM) platforms and endpoint policy enforcement
  • Familiarity with enterprise IAM systems and SSO: configuration, integration, and audit
  • Experience with privileged access management (PAM) tooling and the operational patterns around it
  • Strong Linux administration skills: comfortable at the command line, understanding of kernel-level security primitives, experience hardening Linux environments
  • Experience with multisig schemes: signing policy design, quorum configuration, or key management in a production context
  • Familiarity with hardware security modules (HSMs): integration, key lifecycle management, or operational use
  • Exposure to trusted execution environments (TEEs): attestation, confidential compute, or secure enclave design
How we work

Remote-first, writing-heavy, and transparent by default: most decisions happen in public Slack channels, and everyone's voice carries. We value ownership, humility, curiosity, and getting it done over getting it perfect. Small egos, high standards.

What we offer

Competitive compensation including salary and token incentives, the tools you need to do your best work, and a seat at the center of Solana's market infrastructure alongside some of the strongest engineers in the ecosystem.

Jito is an equal opportunity employer. We evaluate candidates on the basis of their skills, experience, and potential contribution, without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other characteristic protected by law.

About Jito Labs

Jito Labs is a core infrastructure provider for the Solana blockchain, focused on Maximal Extractable Value (MEV) solutions. They develop a high-performance validator client (Jito-Solana) and a liquid staking token (JitoSOL) to optimize transaction ordering, reduce MEV's negative impacts, and distribute value to stakers and network participants.

Industry: Blockchain, Cryptocurrency, Decentralized Finance (DeFi), Web3, Software Development

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

SOLANA FOUNDATION • Northern (KY)

Hybrid
USD 120,000 - 160,000
Token incentives
Senior Security Engineer — Jito Labs
Senior Security Engineer — Jito Labs

The Bitcoin Street Journal • Northern (KY)

Hybrid
USD 120,000 - 180,000
Senior Software Engineer - JTX
Senior Software Engineer - JTX

Socket.dev • Northern (KY)

Hybrid
USD 180,000 - 260,000
Token incentives
Equity potential
Central Solana infrastructure
Senior Software Engineer - JTX
Senior Software Engineer - JTX

SOLANA FOUNDATION • Northern (KY)

Hybrid
USD 150,000 - 190,000
Senior Security Engineer, AI & Crypto Security (Remote)
Senior Security Engineer, AI & Crypto Security (Remote)

Framework Ventures • United States

On-site
USD 150,000 - 210,000
Remote Senior Security Engineer – Blockchain & AI Security
Remote Senior Security Engineer – Blockchain & AI Security

The Bitcoin Street Journal • Northern (KY)

Hybrid
USD 120,000 - 180,000
Senior Security Engineer — AI/Web3 Security (Remote)
Senior Security Engineer — AI/Web3 Security (Remote)

Socket.dev • Northern (KY)

Hybrid
USD 150,000 - 210,000
Token incentives
Remote-first culture
Remote Senior Rust Engineer - Solana Trading Platform
Remote Senior Rust Engineer - Solana Trading Platform

Socket.dev • Northern (KY)

Hybrid
USD 180,000 - 260,000
Token incentives
Equity potential
Central Solana infrastructure
Principal Security Engineer (Solana)
Principal Security Engineer (Solana)

OpenZeppelin • Canton (OH)

Hybrid
USD 180,000 - 280,000
Fully remote
Flexible time off
Family leave
+4
Senior Software Engineer - Special Projects
Senior Software Engineer - Special Projects

OP Recruiting • New York (NY)

Hybrid
USD 120,000 - 160,000
Competitive salary and equity
Health, dental, and vision insurance
Flexible work environment