Security Jobs in Web3

2,048 jobs found

web3.career is now part of the Bondex Logo Bondex Ecosystem

Receive emails of Security Jobs in Web3
Job Position Company Posted Location Salary Tags

Offchain Labs

Remote

$157k - $171k

Offchain Labs

Remote

$157k - $171k

Zscaler

Remote

$112k - $154k

Okx

Remote

$105k - $150k

Bitpanda

Remote

$106k - $150k

Bitpanda

Vienna, Austria

$130k - $171k

Bitpanda

Remote

$106k - $120k

Bitmex

Remote

$95k - $101k

Bitmex

Remote

$122k - $144k

Bitmex

Remote

$105k - $156k

Bitgo

Remote

$115k - $132k

Okx

Remote

$106k - $108k

Zscaler

Remote

$119k - $170k

Okx

Remote

$126k - $131k

Bitpanda

Remote

$129k - $170k

Offchain Labs
$157k - $171k estimated
Remote

Senior Security Engineer (Offensive)

Remote
Engineering /
Full-time /
Remote

apply for this job
At Offchain Labs, we aren’t just building products: we’re leading a movement. 
 
As pioneers in blockchain scalability and security, we're at the forefront of transforming how the world interacts with decentralized applications. We're laying the foundation that will define the next generation of digital commerce, governance, and human interaction. This involves tackling real-world challenges that come with scaling blockchain technology, without compromising on its core principles: decentralization, security and transparency. 
 
At the center of this vision is our people. Our team is made up of thinkers and doers that embrace new challenges and seek solutions that push existing boundaries. If you’re energized by solving unprecedented problems, and believe in the role that decentralized systems will play in creating a more equitable digital future, then we want to hear from you. 
 
Why Offchain Labs?
 
Offchain Labs is setting the pace for the entire Ethereum ecosystem. We built the Arbitrum stack that powers Arbitrum One, the most widely adopted Ethereum scaling solution that exists today.
 
Arbitrum’s ecosystem is undergoing tremendous growth with hundreds of projects and dApps on Arbitrum One today. Over 100 different teams have used Offchain Labs technology to build their own Arbitrum chains. Major players in the space, Robinhood, BlackRock, Ethena Labs, Securitize, Aave, and Apechain are all using the Arbitrum stack.
 
Arbitrum’s thriving ecosystem wouldn’t exist without our advanced technology stack. Arbitrum, Prysm, ZeroDev. These aren’t just product names. These are tools that are actively reshaping what's possible on Ethereum and advancing its core infrastructure.
 
To top it all off? We’re backed by $124 million in funding. We’ve demonstrated consistent execution with billions in secured value, thousands of supported projects, and infrastructure processing millions of transactions seamlessly.

The Role

  • As a Security Engineer at Offchain Labs, you will emulate the real-world tactics, techniques, and procedures of sophisticated adversaries to surface vulnerabilities across our infrastructure and ecosystem tools. 
  • You’ll run hands-on penetration tests, lead red team exercises, and work side-by-side with blue team partners to test, refine, and strengthen detection and response capabilities. 
  • Your efforts will directly shape how Offchain Labs designs, launches, protects, and achieves compliance for the infrastructure that powers millions of users and applications - including key standards such as SOC 2.

What you'll do:

  • Conduct comprehensive penetration tests and code audits across cloud environments (AWS), internal infrastructure, and backend applications.
  • Collaborate with detection engineering, threat intelligence, and incident response groups to review security controls, uncover coverage gaps, and enhance overall detection quality.
  • Build, maintain, and evolve custom offensive tools, scripts, and automation frameworks to increase assessment speed.
  • Offer offensive security expertise during incident investigations, including log analysis and root cause reviews.
  • Keep up with evolving threats, vulnerabilities, and attack methods; share research internally and engage with the wider security community.
  • Own offensive security projects from start to finish, mentor junior team members, and cultivate a culture of ongoing learning and knowledge exchange.

What you'll need:

  • 5+ years of experience in offensive security, penetration testing, red teaming, or a closely related field.
  • Mastery of AWS & specific attack techniques and configuration weaknesses.
  • Solid understanding of adversary tactics and frameworks like MITRE ATT&CK.
  • In-depth knowledge of web application security, including OWASP Top 10, ASVS, and common vulnerability categories.
  • Proficiency using offensive security tools such as Burp Suite, Cobalt Strike, or equivalent frameworks
  • Strong programming skills in Python, Go, or similar languages, with proven experience developing tools or automation.
  • Excellent written and verbal communication skills, with the ability to present complex technical details as clear, risk-focused recommendations
  • A natural ability to think like an attacker - creative, determined, and skilled at assessing risk across complex systems

Perks:

  • Remote-first global workforce + NY office
  • Annual company offsite + team onsites
  • Professional reimbursement program (facilitates industry conference attendance, certifications, and more)
  • Medical, dental & vision coverage (US + some other countries)
  • 401k retirement plan + company match (US only)
  • Wellness stipend
  • Home office set up / ergonomic equipment program
Attention Offchain Labs Job Seekers:
 
This role cannot be performed in California, or Colorado.
 
Please be advised that there has been a rise in fraudulent recruiter activities, particularly within the Web3 space. If you would like to confirm whether someone is an OCL employee or the legitimacy of an offer you received, please email [email protected]
 
At Offchain Labs, we are committed to building a welcoming and supportive workplace for all employees, regardless of their background or identity. We strive to create an environment where everyone feels valued and has an equal opportunity to succeed and thrive. We encourage candidates from all walks of life to apply and join our team.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
apply for this job