| Job Position | Company | Posted | Location | Salary | Tags |
|---|---|---|---|---|---|
StreamFlow | Remote | $140k - $157k | |||
Mudrex Inc. | Bengaluru, India | $59k - $62k | |||
Decentralized Masters | Remote | $45k - $74k | |||
Swirlds Labs | Salt Lake City, UT, United States | $90k - $100k | |||
| Learn job-ready web3 skills on your schedule with 1-on-1 support & get a job, or your money back. | | by Metana Bootcamp Info | |||
Messari | New York, NY, United States | $110k - $120k | |||
BCB Group | London, United Kingdom | $74k - $84k | |||
Keyfactor | Cleveland, OH | $81k - $84k | |||
SupraOracles | Yerevan, Armenia | $32k - $77k | |||
Shakepay | Montreal, Canada | $13k - $27k | |||
Bitso | Latin America | $67k - $76k | |||
Gemini | Austin, TX, United States | $136k - $170k | |||
Man Group | Boston, MA, United States | $54k - $62k | |||
Coinbase | Washington, United States | $105k - $124k | |||
Figment | Toronto, Canada | $100k - $125k | |||
OKX | Hong Kong, Hong Kong | $45k - $74k |
Role Overview
We are looking for per-project Security Auditor who should have extensive knowledge in cybersecurity, including expertise in frontend and backend security, and proficiency in JavaScript and Rust for auditing SDKs.
Must be experienced in web3 security, skilled in risk management and adept at identifying and fixing vulnerabilities. The role demands a proactive approach to enhancing security processes and sharing reports with the development team.
About Streamflow
Streamflow is the distribution layer of Web3.
With ~$700 million in TVL and over $700+ million distributed, we are the permissionless, open, on-chain token streaming protocol used by hundreds of clients across five chains.
Our team is globally distributed and agile.
Our treasury is well-funded, and we have been profitable for several months.
We are excited to scale and launch some huge initiatives over the coming months and need creative, reliable, and driven operators.
Job Description:
The Per-Project Security Auditor for Streamflow is tasked with conducting a thorough one-time audit to identify potential security vulnerabilities within various components of the Streamflow project. Key responsibilities include:
- Frontend Application Security Analysis: Analyze user-facing features, such as vesting, payments, and token locking, for security flaws. https://app.streamflow.finance/
- JS SDK Security Assessment: Perform a detailed security audit of the JavaScript (Typescript) SDK, assessing potential vulnerabilities in its interaction with blockchain protocols. https://github.com/streamflow-finance/js-sdk
- Backend Applications Security Review: Evaluate the security of three backend applications (Python), identifying potential weaknesses in data handling and protection:
- Contract manipulation (Vesting, Payment, Token-Locking)
- Airdrop manipulation (Instant, Vested)
- Authentication
- Address book
- KYC
- Team Dashboard
- Rust SDK Security Oversight: Conduct a comprehensive audit of the Rust SDK used for on-chain program integrations, identifying any security issues. https://github.com/streamflow-finance/rust-sdk
- Process Enhancement and Risk Management: Help in developing and refining security processes related to team operations and treasury management, identifying potential flaws and suggesting improvements.
- Reporting and Collaboration: Provide comprehensive reports on audit findings and work closely with the development team for prioritizing and addressing security issues.
Bonus:
- Perform fix of the flaws found in the section above
Why You Should Join Us
Values: Streamflow is built on the values of customer focus, respect, ownership, proactivity, and a growth mindset (internally known as CROP-G values).
We live by these qualities in our day-to-day and prioritize a happy and performant team. Therefore, it’s especially important that new teammates align closely with these values.
Work culture: Fast moving, engaging, and ambitious. We passionately believe in the value that our protocol can unlock for the world and we’re looking to work with mission driven people who are ready to jump onboard with us, roll up their sleeves and get stuck into it. We believe in selfless sharing of knowledge, transparency and insight into all aspects of the business and personal initiative.
Team organization: We are a remote-first, office-optional team with a physical office in Belgrade, Serbia, that prioritizes high-quality written communication and the possibility of working asynchronously across time zones because we believe that the best talent exists on every corner of the earth.
Compensation
Streamflow is developing an innovative compensation system to:
- Align long-term incentives among core team members.
- Tie compensation with individual performance.
- Tie compensation with company performance.
What does an Analyst in Web3 do?
A Web3 analyst is someone who studies and analyzes the trends and developments in the field of web3 technologies
These technologies include blockchain and decentralized applications (dApps) that are built on top of them
A web3 analyst's responsibilities might include researching and staying up-to-date on the latest developments in the web3 space, tracking and analyzing trends and market movements, and providing insights and recommendations to clients or stakeholders
They might also be responsible for creating reports and presentations to communicate their findings to others.