J

Protocol Security Researcher (Smart Contract & DeFi)

Jobgether United State
Remote
Apply
AI Summary

This role focuses on building and strengthening an internal protocol security function within a globally distributed engineering environment. The researcher will assess major protocol changes before deployment, conduct adversarial research across smart contracts and DeFi systems, and contribute to AI-assisted security tooling. The position requires 5+ years of security experience with a strong background in smart contract and protocol security, and offers significant scope to influence security decisions.

Key Highlights
Opportunity to build and strengthen an internal protocol security function
Work at the intersection of smart contract security, protocol design, adversarial research, and AI-assisted security review
Collaborate with engineers, security specialists, monitoring teams, incident responders, and external auditors
Contribute to reusable security knowledge, tooling, invariants, and testing strategies
Key Responsibilities
Review significant protocol and smart contract changes before external audits or production deployment.
Conduct attacker-driven security research across smart contracts, protocol mechanisms, integrations, and related infrastructure.
Participate in architecture and design discussions early enough to influence security-critical decisions.
Investigate risks across adjacent systems, including assets, bridges, oracles, adapters, and other critical dependencies.
Analyze potential protocol-level failure modes and translate technical concerns into concrete exploitation scenarios, impact assessments, and mitigation strategies.
Develop and contribute to AI-assisted security tooling, while evaluating its effectiveness in real-world security review workflows.
Convert security findings into reusable knowledge, invariants, assumptions, tests, monitoring strategies, and other durable security practices.
Collaborate with monitoring and incident response teams when identified risks require operational detection or response mechanisms.
Work alongside external auditors to help define audit scope, communicate known risks, and highlight areas requiring particular attention.
Technical Skills Required
Smart Contract Security Protocol Security Adversarial Research
Benefits & Perks
Remote-first working environment with flexibility across Europe, Asia, and the United States
Opportunity to work on complex smart contract, DeFi, and protocol security challenges with meaningful real-world impact
Broad scope to influence security architecture, research practices, tooling, and internal security processes
Collaboration with experienced engineers, security researchers, monitoring specialists, incident responders, and external auditors
Opportunity to work at the intersection of protocol security and emerging AI-assisted security research
Exposure to advanced decentralized finance infrastructure, including lending markets, governance, oracles, bridges, and integrations
Global, distributed team environment with an emphasis on high-quality engineering, autonomy, and long-term impact
Inclusive workplace committed to creating an environment where people can contribute, feel valued, and develop their expertise
Nice to Have
Experience with formal methods, fuzzing, invariant testing, or custom security tooling
Experience developing internal tools for security reviews, code understanding, security research, or knowledge management
Experience collaborating with external audit firms or leading security audit engagements
Familiarity with governance payloads, upgrade mechanisms, permissioning systems, and incident response
Open-source security research, published vulnerability findings, CTF participation, bug bounty experience, or prior public security research

Job Description


This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Protocol Security Researcher based in United States.

This is an opportunity to help build and strengthen an internal protocol security function within a globally distributed engineering environment.

You will work at the intersection of smart contract security, protocol design, adversarial research, and AI-assisted security review.

Your work will help assess major protocol changes before deployment and identify risks across complex decentralized financial systems.

The role goes beyond traditional auditing, with a focus on continuously improving how protocol risks are understood, tested, monitored, and reduced.

You will collaborate closely with engineers, security specialists, monitoring teams, incident responders, and external auditors.

You will also contribute to reusable security knowledge, tooling, invariants, and testing strategies that can improve review quality and efficiency.

The position offers significant scope to influence security decisions early and help shape the evolution of a high-impact protocol security function.

Accountabilities

  • Review significant protocol and smart contract changes before external audits or production deployment.
  • Conduct attacker-driven security research across smart contracts, protocol mechanisms, integrations, and related infrastructure.
  • Participate in architecture and design discussions early enough to influence security-critical decisions.
  • Investigate risks across adjacent systems, including assets, bridges, oracles, adapters, and other critical dependencies.
  • Analyze potential protocol-level failure modes and translate technical concerns into concrete exploitation scenarios, impact assessments, and mitigation strategies.
  • Develop and contribute to AI-assisted security tooling, while evaluating its effectiveness in real-world security review workflows.
  • Convert security findings into reusable knowledge, invariants, assumptions, tests, monitoring strategies, and other durable security practices.
  • Collaborate with monitoring and incident response teams when identified risks require operational detection or response mechanisms.
  • Work alongside external auditors to help define audit scope, communicate known risks, and highlight areas requiring particular attention.

Requirements

  • 5+ years of relevant security experience, with a strong background in smart contract and protocol security.
  • Demonstrated ability to independently review complex codebases and reason deeply about protocol-level failure modes.
  • Strong adversarial mindset, with the ability to move from identifying suspicious behavior to explaining how a vulnerability could realistically be exploited.
  • Strong understanding of decentralized finance mechanisms, including lending, liquidations, accounting, oracles, collateral, governance, and protocol integrations.
  • Demonstrated use of AI to improve security research, review quality, analysis depth, or review throughput.
  • Strong written and verbal communication skills, with the ability to explain risks, impact, uncertainty, and trade-offs to both technical and non-technical stakeholders.
  • Sound judgment when assessing severity, exploitability, practical impact, and the relevance of individual findings.
  • Experience with formal methods, fuzzing, invariant testing, or custom security tooling is a plus.
  • Experience developing internal tools for security reviews, code understanding, security research, or knowledge management is valued.
  • Experience collaborating with external audit firms or leading security audit engagements is advantageous.
  • Familiarity with governance payloads, upgrade mechanisms, permissioning systems, and incident response is beneficial.
  • Open-source security research, published vulnerability findings, CTF participation, bug bounty experience, or prior public security research is a plus.
  • Candidates who do not meet every listed requirement but bring relevant and demonstrable security expertise are encouraged to apply.

Benefits

  • Remote-first working environment with flexibility across Europe, Asia, and the United States.
  • Opportunity to work on complex smart contract, DeFi, and protocol security challenges with meaningful real-world impact.
  • Broad scope to influence security architecture, research practices, tooling, and internal security processes.
  • Collaboration with experienced engineers, security researchers, monitoring specialists, incident responders, and external auditors.
  • Opportunity to work at the intersection of protocol security and emerging AI-assisted security research.
  • Exposure to advanced decentralized finance infrastructure, including lending markets, governance, oracles, bridges, and integrations.
  • Global, distributed team environment with an emphasis on high-quality engineering, autonomy, and long-term impact.
  • Inclusive workplace committed to creating an environment where people can contribute, feel valued, and develop their expertise.

How Jobgether Works

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Why Apply Through Jobgether?

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.


Similar Jobs

Explore other opportunities that match your interests

Security Incident Response Engineer

Cyber Security
1d ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Stripe

United State

Senior Compliance Program Manager, Engineering

Cyber Security
3d ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Palo Alto Networks

United State

Senior IT Controls & External Audit Manager (SOC 1/SOC 2/SOX)

Cyber Security
4d ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Kraken

United State

Subscribe our newsletter

New Things Will Always Update Regularly