Aptos Labs Logo

Aptos Labs

Application Security Engineer

Posted 23 Days Ago
Remote
Hybrid
9 Locations
Entry level
Remote
Hybrid
9 Locations
Entry level
Assist in the development and implementation of security protocols for blockchain applications while collaborating with a dynamic team to enhance security measures.
The summary above was generated by AI

Aptos is a people-first blockchain on a mission to help billions of people achieve universal and fair access to decentralized assets in a safe and scalable way.

Founded by some of the original creators and maintainers that researched, designed, and built the Diem blockchain to serve this purpose, we have dedicated several years toward this mission. We believe the open-source Diem technology we have developed is an important foundation of a safe and scalable web3 world where everyone has more equitable opportunities to grow and access financial assets with lower fees and fewer intermediaries.  

Aptos (Ohlone for "The People") encompasses our mission and ethos for why we build.

About the Role

At Aptos Labs we’re pioneering the future of web3 and need a passionate Application Security Engineer to help secure our ecosystem. In this role, you’ll be at the forefront of safeguarding our Aptos core infrastructure and Aptos Labs products. Your proactive approach will help us identify and mitigate emerging threats, ensuring our systems remain resilient and trustworthy. You will work closely with our developers, influence security best practices, and lead initiatives that shape the future of web3 security.

Responsibilities

 

  • Analyze and assess novel and recurring security issues via design reviews, code audits, penetration tests.
  • Respond to and triage reports from bug bounty programs.
  • Design and build security tools, develop mitigations, frameworks and hardening strategies tailored for vulnerability prevention and detection.
  • Review and develop secure operational practices, and provide security guidance for engineers.
Minimum Qualifications
  • B.S. or M.S. in Computer Science, a related technical field, or equivalent experience.
  • 3+ years of experience in vulnerability research and exploitation.
  • Experience with native and web programming languages, development practices, and common vulnerability patterns (e.g. Rust, TypeScript, etc.)
  • Experience with automated security analysis tooling and frameworks (fuzzing, static analysis, etc.)
Preferred Qualifications
  • Contributions to the security community (public research, blogging, talks in relevant conferences, etc.)
  • Familiarity with smart contracts programming languages (extra bonus for Move), security tools and frameworks, including formal verification.
  • Experience with order books, perpetual dex, liquidity pools mathematics and broader DeFi protocols.

The base salary range for this full-time position is $150k -$200k. The range displayed on each job posting reflects the minimum and typical maximum target for new hire salaries for the position of a candidate based in the Bay Area at any level. We do hire exceptionally talented professionals with decades of experience in their field. As such, our range may be higher than what is displayed. Our base salary ranges are determined by experience and location, and we hire at all levels for multiple roles. Within the range, individual pay is determined by work location, job-related skills demonstrated during the interviews, working experience, and relevant education or training. Please note that the compensation details listed in role postings reflect the base salary only and do not include equity, tokens, or benefits.

Our Benefits

  • 100% insurance premium coverage for medical, dental, and vision for you and your dependents (US Employees)
  • Equipment of your choice
  • Flexible vacation time, 11 holidays, and floating company days off 
  • Competitive Salary
  • Equity (RSUs) (US employees)
  • Protocol Token Grants
  • 401k matching (US Employees)
  • Fun and inclusive in-person and digital events

Aptos is committed to diversity in the workplace, and we’re proud to be an Equal Opportunity Employer. We do not hire on the basis of race, color, religion, creed, gender, national origin, citizenship, age, disability, veteran status, marital status, pregnancy, parental status, sex, gender expression or identity, sexual orientation, or any other basis protected by local, state or federal law. All employment is decided based on qualifications, merit, and business need.

We are committed to providing a safe and secure hiring process for all applicants. Unfortunately, there are individuals who may attempt to impersonate Aptos or our employees for fraudulent purposes.
To protect yourself, please be aware of the following:
  • We will never ask you for payment of any kind during the application or onboarding process, including fees for background checks, training, or equipment.
  • We will always communicate with you using our official company email domain.
  • We will never request your personal financial information, such as your social security number or bank account details, during the initial application stages or via email or a video/voice call when onboarding.

Similar Jobs

24 Days Ago
Easy Apply
Remote
3 Locations
Easy Apply
Senior level
Senior level
eCommerce • Software • Design • SEO
As a Staff Application Security Engineer at Webflow, you'll secure the web application platform, improve secure coding practices, and mentor junior engineers while leading complex security projects.
Top Skills: Penetration TestingSecure CodingSecure Software DesignSoftware Supply Chain SecurityThreat ModelingWeb Application Security
25 Days Ago
Remote
Ontario, ON, CAN
Senior level
Senior level
Productivity • Software • Conversational AI
Lead Application Security initiatives, enhance security automation in CI/CD, maintain security solutions, develop secure coding guidelines, and investigate vulnerabilities.
Top Skills: Api Security SolutionsAWSAzureDastGCPGoJavaPythonSastScaSecretsTypescript
25 Days Ago
Remote
British Columbia, BC, CAN
Senior level
Senior level
Productivity • Software • Conversational AI
Lead the application security initiatives, enhance security automation, maintain security solutions, and support incident response at Twilio.
Top Skills: AWSAzureDastGCPGoJavaPythonSastScaTypescript

What you need to know about the Montreal Tech Scene

With roots dating back to 1642, Montreal is often recognized for its French-inspired architecture and cobblestone streets lined with traditional shops and cafés. But what truly sets the city apart is how it blends its rich tradition with a modern edge, reflected in its evolving skyline and fast-growing tech industry. According to economic promotion agency Montréal International, the city ranks among the top in North America to invest in artificial intelligence, making it le spot idéal for job seekers who want the best of both worlds.

Key Facts About Montreal Tech

  • Number of Tech Workers: 255,000+ (2024, Tourisme Montréal)
  • Major Tech Employers: SAP, Google, Microsoft, Cisco
  • Key Industries: Artificial intelligence, machine learning, cybersecurity, cloud computing, web development
  • Funding Landscape: $1.47 billion in venture capital funding in 2024 (BetaKit)
  • Notable Investors: CIBC Innovation Banking, BDC Capital, Investissement Québec, Fonds de solidarité FTQ
  • Research Centers and Universities: McGill University, Université de Montréal, Concordia University, Mila Quebec, ÉTS Montréal

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account