Published 10 months ago

design web3 security

Description The SecOps contributor workstream is responsible for helping the DAO to integrate security into development processes, managing incidents, and collaborating with teams. This role develops response plans, conducts assessments, and ensures effective communication of security practices. Essential skills include technical security assessments, programming, and strong communication abilities, with blockchain and DevOps experience being advantageous.ResponsibilitiesSecurity Integration

  • Develop secure systems to protect Lido Protocol, DAO, applications, contributors, partners, and stakers.

  • Define processes, systems, and applications to make attacks difficult to execute and easy to detect.

  • Embed security practices and tools within the development pipeline.

Threats and Incident Management

  • Develop and maintain incident response plans and playbooks.

  • Perform regular vulnerability assessments and penetration testing.

  • Lead or participate in incident response activities, including investigation, containment, eradication, and recovery.

  • Monitor security alerts and incidents to identify and respond to threats promptly.

Collaboration and Training

  • Collaborate with development and operations teams to ensure security is incorporated from design to deployment and maintenance.

  • Provide training and support on security tools and techniques, emphasizing soft skills like communication, negotiation, and influence.

RequirementsMust have

  • Experience with technical security assessments, code audits, design reviews, and vulnerability research.

  • Proficiency in programming languages (Python, Golang, JavaScript, Bash).

  • Experience with security tools and technologies (SIEM, IDS/IPS, vulnerability scanners, automated security testing).

  • Excellent communication skills to articulate security concepts to technical and non-technical stakeholders.

  • Strong problem-solving abilities for security investigations and risk assessments.

  • English level: B2+

Good to have

  • Experience with blockchain technologies, Ethereum-based networks, web3 bug hunting, and contract analysis.

  • Familiarity with DevOps practices and tools (Docker, Kubernetes, GitHub Actions, Git, Ansible, Terraform).

  • Experience with supply chain attacks analysis and prevention.

  • Focus on improving real-world security, not compliance.

Benefits

  • Contribute from anywhere in the world.

  • Competitive compensation level.

  • Flexible schedule.

  • Compensation for education, including language & professional growth courses.

  • Equipment & co-working reimbursement program.

  • Overseas conferences, community immersion.

  • Possible Token Rewards Plan.

If this challenge sounds appealing to you and you wish to change the world order* we would love to hear from you! *for the better! πŸ™‚ We follow the principles of equity, diversity and inclusion. All applicants will be considered without regard to race, national origin, preferred NFT, religion, sex, sexual orientation, or disability. To apply, click here!

Salary and compensation

No salary data published by company so we estimated salary based on similar jobs related to Design, Web3, DevOps, Senior and Engineer jobs that are similar:

$60,000 β€” $100,000/year

Benefits

πŸ’° 401(k)

🌎 Distributed team

⏰ Async

πŸ€“ Vision insurance

🦷 Dental insurance

πŸš‘ Medical insurance

πŸ– Unlimited vacation

πŸ– Paid time off

πŸ“† 4 day workweek

πŸ’° 401k matching

πŸ” Company retreats

🏬 Coworking budget

πŸ“š Learning budget

πŸ’ͺ Free gym membership

🧘 Mental wellness budget

πŸ–₯ Home office budget

πŸ₯§ Pay in crypto

πŸ₯Έ Pseudonymous

πŸ’° Profit sharing

πŸ’° Equity compensation

⬜️ No whiteboard interview

πŸ‘€ No monitoring system

🚫 No politics at work

πŸŽ… We hire old (and young)

Location

Worldwide