Senior/Staff Security Engineer
About the role
Who you are
- 5+ years of hands-on experience in a security engineering or DevSecOps role, with demonstrated expertise in full-stack software security (back-end, front-end, and DevOps)
- Proficiency in designing and implementing robust security architectures for cloud-based systems, and strong experience in securing CI/CD pipelines
- Experience in intrusion detection, forensic investigation, and leading security incident response
- Strong understanding of security frameworks, principles, and best practices, with a proactive approach to risk management
- Ability to effectively communicate security requirements and concepts to both technical and non-technical stakeholders
- Expertise in Threat Detection and Response, and Endpoint Security is highly desirable
- Experience with crypto/web3 technologies, including smart contract audits, is highly desirable
- Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field
- Industry certifications such as CISSP, OSCP, Sec+, or similar are a plus
What the job involves
- We are looking for a Senior/Staff Security Engineer to join us on this exciting journey, ensuring the security and resilience of our platform as we continue to grow
- As a Senior/Staff Security Engineer, you will be at the forefront of securing the next generation of decentralized financial technology
- You will take ownership of building and maintaining our platform's security infrastructure, working across both on-chain and off-chain components
- Your work will protect our users and ensure the integrity of our systems in the rapidly evolving crypto and DeFi landscape
- This is an opportunity to make a meaningful impact by contributing to a key part of our platform
- You will be involved in every layer of security, from threat modeling and incident response to developing automation tools that streamline our operations
- You’ll work closely with our development, DevOps, and product teams, embedding security into the DNA of our products while staying ahead of emerging threats
- Design, develop, and implement security architectures and features for both on-chain and off-chain components of the platform, ensuring defense against vulnerabilities and attacks
- Identify and mitigate risks by performing threat modeling, security hardening, and vulnerability assessments across the full tech stack
- Lead incident response efforts, acting as the primary point of contact for security incidents and coordinating with internal and external teams to resolve issues
- Conduct regular penetration testing and forensic investigations, ensuring identified security weaknesses are addressed swiftly
- Develop security tools and automation scripts to enhance the efficiency and effectiveness of our security operations
- Work closely with application development and DevOps teams to integrate security best practices into every stage of the software development lifecycle
- Stay on top of emerging security trends, threats, and technologies, contributing innovative solutions to continuously improve our security posture
About Ethena
Ethena is an all-in-one compliance training platform that helps companies create more inclusive work cultures through world-class content and employee relations tools. Our library of 150+ training courses spans topics like Harassment Prevention, Anti-Money Laundering, Cybersecurity, and Code of Conduct, with a 93% approval rating from over 2 million learners.
Ethena is trusted by teams at Zendesk, Pinterest, Notion, Rothy’s, and more. We’re backed by Felicis, GSV, Homebrew, Village Global, and other top investors, and our advisory team includes People Ops and Legal experts like Frances Frei and Leonard Shen.
Senior/Staff Security Engineer
About the role
Who you are
- 5+ years of hands-on experience in a security engineering or DevSecOps role, with demonstrated expertise in full-stack software security (back-end, front-end, and DevOps)
- Proficiency in designing and implementing robust security architectures for cloud-based systems, and strong experience in securing CI/CD pipelines
- Experience in intrusion detection, forensic investigation, and leading security incident response
- Strong understanding of security frameworks, principles, and best practices, with a proactive approach to risk management
- Ability to effectively communicate security requirements and concepts to both technical and non-technical stakeholders
- Expertise in Threat Detection and Response, and Endpoint Security is highly desirable
- Experience with crypto/web3 technologies, including smart contract audits, is highly desirable
- Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field
- Industry certifications such as CISSP, OSCP, Sec+, or similar are a plus
What the job involves
- We are looking for a Senior/Staff Security Engineer to join us on this exciting journey, ensuring the security and resilience of our platform as we continue to grow
- As a Senior/Staff Security Engineer, you will be at the forefront of securing the next generation of decentralized financial technology
- You will take ownership of building and maintaining our platform's security infrastructure, working across both on-chain and off-chain components
- Your work will protect our users and ensure the integrity of our systems in the rapidly evolving crypto and DeFi landscape
- This is an opportunity to make a meaningful impact by contributing to a key part of our platform
- You will be involved in every layer of security, from threat modeling and incident response to developing automation tools that streamline our operations
- You’ll work closely with our development, DevOps, and product teams, embedding security into the DNA of our products while staying ahead of emerging threats
- Design, develop, and implement security architectures and features for both on-chain and off-chain components of the platform, ensuring defense against vulnerabilities and attacks
- Identify and mitigate risks by performing threat modeling, security hardening, and vulnerability assessments across the full tech stack
- Lead incident response efforts, acting as the primary point of contact for security incidents and coordinating with internal and external teams to resolve issues
- Conduct regular penetration testing and forensic investigations, ensuring identified security weaknesses are addressed swiftly
- Develop security tools and automation scripts to enhance the efficiency and effectiveness of our security operations
- Work closely with application development and DevOps teams to integrate security best practices into every stage of the software development lifecycle
- Stay on top of emerging security trends, threats, and technologies, contributing innovative solutions to continuously improve our security posture
About Ethena
Ethena is an all-in-one compliance training platform that helps companies create more inclusive work cultures through world-class content and employee relations tools. Our library of 150+ training courses spans topics like Harassment Prevention, Anti-Money Laundering, Cybersecurity, and Code of Conduct, with a 93% approval rating from over 2 million learners.
Ethena is trusted by teams at Zendesk, Pinterest, Notion, Rothy’s, and more. We’re backed by Felicis, GSV, Homebrew, Village Global, and other top investors, and our advisory team includes People Ops and Legal experts like Frances Frei and Leonard Shen.