Parity Technologies is hiring a Remote Application Security Engineer
\nWe are seeking an innovative and accomplished Application Security Engineer to join the Parity Security team. You will take a critical role in upholding the security of Parity Technologies products, from conceptual in their design to completion.\n\nYou will influence the technical architecture of new products, ensuring that security is a keystone in their designs. You would be the owner of Application security of new and existing products through pentesting and threat modelling, and contributing towards internal tooling and integration to ensure that security is baked into the software development lifecycle. Engineers will come to you as a trusted source of guidance for the secure development and maintenance of their products. Your insight will be consulted for strategic technical decisions, to guarantee that security is not an afterthought in our technical roadmap.\n\nBeing part of the preventative defense for our company, you'll identify and mitigate emerging threats to Parity Technologies environment stemming from vulnerabilities and architectural issues in the earlier stages of our products. Educating engineers on secure development practices will come into play, through a combination of educational software and your guidance. \n\nA day in the life:\n\n\nWork with other application security engineers on technical development of project in JavaScript/TypeScript or Rust. Contributing to the main public open-source projects shaping the future of the ecosystem.\n\nProvide technical expertise and guidance for developers around the secure development of their products. Keep up to date with evolving InfoSec trends, emerging risks, and growing industry-wide technological shifts.\n\nPerform assessments of products, such as pentests, or services that are being tested but are not yet in production.\n\nSympathize with the goals trying to be achieved by other teams; help to push solutions out securely rather than just blocking solutions outright. We're here to work with others getting their products out in a manner that's secure for our customers, not to just reject solutions without context.\n\n\n\n\nAbout you:\n\n\nExperience working with JavaScript APIs and Node.js. We use TypeScript, but good if you donโt know it and want to learn it OR Rust programming, youโve probably played with it in your spare time, if not at a previous job.\n\nAbility to learn new technologies and concepts quickly.\n\nHave exposure to cryptography, decentralized networking, hardware key management solutions. Basics at least, we want you to be motivated to learn more.\n\nKnow your security tools and approaches: you should be leading our way when setting up SAST, DAST, fuzzing, property-based testing, symbolic execution, network simulation tools and such.\n\nBe a self-starter: most of the time there would be little guidance on which areas to work on first and what to improve there. Youโre expected to determine that yourself, keeping company-wide goals in mind, and drive those initiatives to completion.\n\n\n\n\nIf possible, we'd also love you to have:\n\n\nHave experience in threat modelling, red/blue teaming, working with best in class independent security teams and turning their findings into actual deployed fixes in our codebase;\n\nPrior work experience in blockchain/cryptocurrency fields.\n\nA background in open-source software development.\n\nPassionate about Web 3.0 and what it represents for the future.\n\nAnywhere in the world, we want you!\n\n\n\n\nFlexible working and Remote? Yes, please!\nAbout Parity\n\nThe team at Parity builds core infrastructure to power a better internet. We do this by innovating in and fostering the open-source ecosystem surrounding blockchain development, also known as Web 3.0.\n\nEvery day we interact with technologies controlled by a handful of large companies whose interests often conflict with our own. Despite that conflict, we still use their software either because many of the benefits seem to outweigh any perceived risk, we feel there is no choice, or there is no better alternative. As a result, we end up granting such companies access to our personal data which, in turn, gives them far-reaching control over our digital lives and in that, unprecedented influence over a multitude of globally impactful initiatives and innovations.\n\nParity Technologies is a team of the worldโs premiere blockchain developers building industry-leading technologies that enable developers to create the next wave of better products and services that respect the freedom and data of individuals. Youโll join at a critical moment when the future of the decentralized web is being shaped, and perform an influential role in making a more equitable society for our future. \n\nWe primarily steward the Substrate ecosystem which includes Polkadot and Kusama, both of which are next-generation, sharded, multichain networks. Our flagship product, Substrate, is an open-source modular and extensible blockchain-building framework that allows rapid innovation and fast deployment of custom-built blockchains. Substrate provides the core building blocks of blockchains built for deployment to Polkadot and Kusama. Our key programming language is Rust, and all of our work is open source.\n \n\n#Salary and compensation\n
No salary data published by company so we estimated salary based on similar jobs related to Design, InfoSec, JavaScript, Engineer and Digital Nomad jobs that are similar:\n\n
$60,000 — $120,000/year\n
\n\n#Location\nWorldwide
๐ Please reference you found the job on Remote OK, this helps us get more companies to post here, thanks!
When applying for jobs, you should NEVER have to pay to apply. You should also NEVER have to pay to buy equipment which they then pay you back for later. Also never pay for trainings you have to do. Those are scams! NEVER PAY FOR ANYTHING! Posts that link to pages with "how to work online" are also scams. Don't use them or pay for them. Also always verify you're actually talking to the company in the job post and not an imposter. A good idea is to check the domain name for the site/email and see if it's the actual company's main domain name. Scams in remote work are rampant, be careful! Read more to avoid scams. When clicking on the button to apply above, you will leave Remote OK and go to the job application page for that company outside this site. Remote OK accepts no liability or responsibility as a consequence of any reliance upon information on there (external sites) or here.