The world of digital assets is accelerating in speed, magnitude, and complexity, opening the door to new ways for leveraging the blockchain. Fireblocks’ platform and network provide the simplest and most secure way for companies to work with digital assets and it trusted by some of the largest financial institutions, banks, globally-recognized brands, and Web3 companies in the world, including BNY Mellon, BNP Paribas, ANZ Bank, Revolut, and thousands more. Responsibilities
- Support product teams as they develop new features by conducting design reviews, threat modeling, security testing, and code reviews.
- Contribute code to enhance security across our applications, whether by developing security-centric libraries, standardizing security practices, or rectifying security vulnerabilities in Fireblocks client and backend applications.
- Lead automation efforts to proactively identify security weaknesses, and develop security controls to prevent future occurrences of similar vulnerabilities.
- Assess potential security vulnerabilities within our applications, and work with development teams to ensure SLA-driven remediation processes.
- Identify gaps in Fireblocks’ secure software development life cycle (SSDLC), and lead the efforts to address them including implementation end-to-end.
- Determine the root cause and severity of vulnerabilities reported through our bug bounty platform and work with developers to devise and implement robust solutions.
- Participate and contribute to team meetings, roadmap planning, and discussions.
- Validate that security patches address reported vulnerabilities and test for any potential bypasses.
- Document identified vulnerabilities in a way that allows our engineering team to take quick action, providing them with the fixed code.
- Proactively prevent future occurrences of a vulnerability through developing automation, security controls, and educating developers.