https://garden.finance/
Office: Hyderabad, India
We are a blockchain R&D studio focused on bridging foundational blockchains like Bitcoin with the DeFi ecosystem. Our expertise lies in cryptography, game theory, and protocol design.
Role Overview
We’re looking for a Security Engineer to secure our Web3 and Web2 assets. The ideal candidate has AWS knowledge and experience with monitoring and alerting systems, ensuring the security of our infrastructure, applications, and digital assets.
Responsibilities:
Conduct penetration testing on Web, Mobile, and Web3 applications (e.g., Smart Contracts, Bitcoin Script).
Plan and execute red team exercises across various environments.
Manage the bug bounty program, validating and responding to reported vulnerabilities.
Continuously research new attack vectors and mitigations.
Assess and manage attack surface risks.
Develop security tools, scripts, and methodologies to strengthen company security.
Monitor and manage security alert systems (e.g., Prometheus, Grafana, Wazuh).
Support secure cloud infrastructure using AWS services.
Clearly communicate vulnerabilities and remediation plans.
Collaborate with cross-functional teams to prioritize security fixes.
Ensure compliance with ethical and professional security standards.
Requirements:
Understanding of blockchain security.
Internship or relevant experience in security engineering.
Proficiency in security monitoring and alerting tools.
Strong knowledge of security frameworks (OWASP, SANS, NIST, MITRE ATT&CK).
Certifications: OSCP, C-PENT, eJPT, PWPP, or GPEN.
Critical thinking and risk assessment skills.
Strong technical writing for risk communication.
Familiarity with AWS and cloud security basics.
Experience with Go, Rust, TypeScript, and Python.
Application Deadline: 2/17/2025
Please email your CV to [email protected] or contact 7702306004