Security Engineer

3 Weeks ago • 5 Years + • Cyber Security

About the job

Job Description

The Security Engineer at Mantle Network will be responsible for identifying and mitigating security risks throughout the software development lifecycle. Responsibilities include security assessments, code audits, pre-release testing, post-release monitoring, vulnerability management, incident response, security training for developers, and threat intelligence gathering. The ideal candidate will possess extensive experience in penetration testing, code auditing, and security incident response, along with a strong understanding of blockchain technology and security best practices.
Must have:
  • 5+ years penetration testing and code auditing experience
  • Proficiency in at least one programming language (Nodejs, Golang)
  • Security incident response expertise
  • Familiar with blockchain technology (BTC/ETH)
  • Understanding of common internet security designs
Good to have:
  • Threat modeling, SDL/DevSecOps experience
  • APT tracing experience
  • Security tool/platform development experience
  • Incident response plan creation and execution experience
  • Threat intelligence gathering and operations experience

Who we are

Mantle Network is an EVM-compatible Ethereum layer 2 (L2) ecosystem designed to enhance scalability and efficiency on the Ethereum blockchain. Our ecosystem encompasses several key elements: Mantle Network, a decentralized autonomous organization (DAO) named Mantle Governance, and an Ether (ETH) liquid staking protocol, Mantle LSP.

Central to our ecosystem is the Mantle token ($MNT), which serves as both the product and governance token, linking the various elements of our network seamlessly.

According to L2BEAT, Mantle Network is ranked as the eighth largest L2 network by total value locked (TVL), establishing it as one of the most prominent L2 solutions in the space. Additionally, Mantle LSP ranks as the fourth largest liquid staking protocol by TVL, as reported by DefiLlama. Mantle also has one of the world's largest treasuries, valued at $3.8 billion, which it leverages effectively to incentivize ecosystem growth.

Your Role

  • 负责研发过程中的需求风险识别与安全评审,代码审计,上线前测试以及上线后的风险监测;

  • 负责跟进安全漏洞处理和漏洞预警运营,协助业务修复直至漏洞关闭;

  • 为开发人员提供安全培训,对代码中的安全问题给出有效的解决方案;

  • 对安全事件进行应急响应,及时解决出现的安全问题;

  • 持续追踪和运营相关领域情报收集、分析、挖掘,进行风险预警;

  • 定期业务部门同步协调,同步最新的安全状态、要求和规范,并与业务部门协同进行落实。

Your Craft

  • 本科及以上学历,5年以上渗透和代码审计工作经验;

  • 至少掌握一门开发语言(Nodejs、Golang等);

  • 掌握安全应急响应技术与流程;

  • 熟悉渗透测试和APT攻防技术,熟悉内网渗透(不限于各类横向越权、免杀技术、隧道穿透技术等);

  • 熟悉常见互联网业务场景安全设计和数据安全最佳实践;

  • 熟悉常见加密签名算法、TLS、OAuth、JWT 及相关技术;

  • 熟悉常见公链(BTC/ETH等)及数字货币钱包基本工作原理;

  • 主动思考,学习能力强。

Extra Credit

  • 有威胁建模、SDL/devsecops实践经验;

  • 有APT溯源经验;

  • 有安全工具、平台的开发经验;

  • 有过应急预案定制和响应经验,有持续追踪和运营相关领域情报经验。

If you think you have valuable experience to bring to the organization, but don’t necessarily meet all of the criteria for the role, we still want to hear from you. We consider all applications.

View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

Windranger facilitates the growth of Mantle and web3 ecosystems by partnering with builders to architect extraordinary cultures globally. 


Our purpose is to accelerate the capability of the internet by empowering communities through elevated ways of working. We provide long-term payroll, recruitment, HR, and operations services for companies in the Web3, Crypto and Metaverse space - including DAOs.

Apac, Northern Region, Uganda (Remote)

Central Sulawesi, Indonesia (Remote)

Central Sulawesi, Indonesia (Remote)

Apac, Northern Region, Uganda (Remote)

Apac, Northern Region, Uganda (Remote)

Apac, Northern Region, Uganda (Remote)

Apac, Northern Region, Uganda (Remote)

Northern Region, Uganda (Remote)

View All Jobs

Get notified when new jobs are added by Windranger Labs

Similar Jobs

Circana - Sr. Software Engineer

Circana, India (On-Site)

Nagarro - Staff Engineer (Java)

Nagarro, South Africa (On-Site)

Nagarro - Associate Staff Engineer - Java

Nagarro, South Africa (On-Site)

Xsolla - Middle / Senior QA for Xsolla Account

Xsolla, Azerbaijan (On-Site)

Eleven Labs - IT Security Engineer

Eleven Labs, Germany (Remote)

Evolution - Physical Security Specialist

Evolution, Colombia (On-Site)

PwC - Systems Administrator

PwC, Malta (On-Site)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

CloudHire - Scala API Architect

CloudHire, India (Remote)

Enphase Energy - Staff Backend developer

Enphase Energy, India (On-Site)

Fi - Security Engineer

Fi, India (On-Site)

CloudHire - Senior Scala Architect

CloudHire, India (Remote)

Luxoft - Additiv Consultant

Luxoft, Luxembourg (On-Site)

Playnetic - Engineering Team Lead

Playnetic, Malta (Remote)

Nagarro - Staff Engineer (Java)

Nagarro, South Africa (On-Site)

Global Business Travel - Customer Identity Lead Engineer

Global Business Travel, United States (Hybrid)

Global Business Travel - Customer Identity Lead Engineer

Global Business Travel, United States (Hybrid)

Get notifed when new similar jobs are uploaded

Jobs in Apac, Northern Region, Uganda

Windranger Labs - FBTC - Business Development Specialist

Windranger Labs, Uganda (Remote)

Windranger Labs - Creative Designer

Windranger Labs, Uganda (Remote)

Windranger Labs - Senior Front-end Engineer  前端开发工程师

Windranger Labs, Uganda (Remote)

Windranger Labs - Global Brand Director

Windranger Labs, Uganda (Remote)

Windranger Labs - Motions Graphic Designer

Windranger Labs, Uganda (Remote)

Windranger Labs - Global Brand Director

Windranger Labs, Uganda (Remote)

Windranger Labs - Motions Graphic Designer

Windranger Labs, Uganda (Remote)

Windranger Labs - Creative Designer

Windranger Labs, Uganda (Remote)

Windranger Labs - Senior Front-end Engineer  前端开发工程师

Windranger Labs, Uganda (Remote)

Windranger Labs - FBTC - Business Development Specialist

Windranger Labs, Uganda (Remote)

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Rackspace Technology - Technical Training Instructor

Rackspace Technology, Mexico (Remote)

ZeroFox - Physical Security Analyst

ZeroFox, India (On-Site)

Penumbra - Cybersecurity Compliance Program Manager

Penumbra, United States (On-Site)

PwC - WorkDay Payroll Jr

PwC, Argentina (On-Site)

Varonis  - Product Security GRC

Varonis , United States (On-Site)

PwC - Security Cloud Architect

PwC, Czechia (On-Site)

Get notifed when new similar jobs are uploaded