bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesCertikSr. Security Engineer (Penetration Testing)

Sr. Security Engineer (Penetration Testing)

Certik · US / Remote · Remote · Active · $100,000–$180,000 / year · Lever

Job facts

FieldValue
CompanyCertik
TitleSr. Security Engineer (Penetration Testing)
Normalized title-
Department / teamBlockchain Security Engineering / Blockchain Security Engineering
LocationUnited States
Work modelRemote / Remote
Employment typeFull Time
Salary$100,000–$180,000 / year
Statusactive
ATS providerLever
Posted / first seen2022-01-12 / 2026-05-29
Changed / last seen2026-05-29 / 2026-06-19

Related slices

PageWhat it containsOpen
Company jobsActive postings from Certik.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through Lever.Open
Provider filtered searchThe same provider as a filtered job collection.Open
Department jobsActive postings in Blockchain Security Engineering.Open
Work model jobsActive Remote postings.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanyCertik
Sourced045bcb0-8c21-4ae5-bc09-480edbc505f0
ATS providerLever

Description

Why Us? CertiK is a pioneer in blockchain security, leveraging best-in-class AI technology to protect and monitor blockchain protocols and smart contracts. Founded in 2018 by professors from Yale University and Columbia University, CertiK’s mission is to secure the web3 world. CertiK applies cutting-edge innovations from academia to enterprise, enabling mission-critical applications to scale with safety and correctness. About the Role The primary responsibility of this role is for CertiK’s security-related services. Intersecting cybersecurity and blockchain, CertiK’s security offerings include security consulting, security reviews, security auditing of smart contracts and blockchains, verification of smart contracts, penetration testing, and more. We are looking to hire someone with a passion for application security and penetration testing. This is a fun and challenging full-time position. If you are excited about hacking, threat modeling, scanning, auditing, designing, and enhancing the security of applications across the board then you will thrive in this role. While you work with clients, we will also provide you with plenty of opportunities to get involved with research and development efforts to help us raise the standards of blockchain security. About the Company One of the fastest-growing and most trusted companies in blockchain security, CertiK is a true market leader. To date, CertiK has worked with over 3,200 Enterprise clients, secured over $310 billion worth of digital assets, and has detected over 60,000 vulnerabilities in blockchain code. Our clients include leading projects such as Aave, Polygon, Binance Smart Chain, Terra, Yearn, and Chiliz. Investors = Insight Partners, Sequoia, Tiger Global, Coatue Management, Lightspeed, Advent International, SoftBank, Hillhouse Capital, Goldman Sachs, Coinbase Ventures, Binance, Shunwei Capital, IDG Capital, Wing, Legend Star, Danhua Capital and other investors. Compensation Target annual base salary for this role performed in the US is $100,000 - $180,000. The exact compensation at which this job is filled will be determined by the skills and experience of qualified candidates. #LI-Remote #blockchain #startups #hiring CertiK is proud to offer medical, vision, and dental insurance, 401(k) plan with company matching, life and accidental death and dismemberment insurance, HSA (with high deductible plan), FSA, and other benefits to all full-time employees, along with flexible paid time off and holidays. CertiK also offers a variable commission program for business development sales roles. In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire. CertiK is proud to be an equal opportunity employer. We will not discriminate against any applicant or employee on the basis of age, race, color, creed, religion, sex, sexual orientation, gender, gender identity or expression, medical condition, national origin, ancestry, citizenship, marital status or civil partnership/union status, physical or mental disability, pregnancy, childbirth, genetic information, military and veteran status, or any other basis prohibited by applicable federal, state or local law. CertiK will consider for employment qualified applicants with criminal histories in a manner consistent with local and federal requirements. https://www.eeoc.gov/sites/default/files/migrated_files/employers/poster_screen_reader_optimized.pdf All CertiK employees are expected to actively support diversity on their teams, and in the Company. Responsibilities Perform security assessments on web, mobile, thick client applications, and browser extensions Conduct external and internal network penetration tests Perform security source code reviews Perform cloud security reviews Develop comprehensive pentest reports for both technical and non-technical audiences Research and develop innovative techniques, tools, and methodologies for pentesting applications in the blockchain space Contribute to the community by developing tools, presentations, and blog posts Requirements Passionate about cryptocurrency, DeFi, and blockchain, with a willingness to learn Web3 technologies such as smart contracts Minimum of 4 years of experience in application security and penetration testing Experienced in source code review for different languages, with a strong understanding of JavaScript and TypeScript Experienced in mobile application penetration testing Familiar with cloud platforms and their security risks, such as AWS, Azure, and GCP Experience in programming with scripting languages such as Python and Bash Solid understanding of cryptography BS/MS/PhD in Computer Science or Information Security Strong spoken and written communication skills Bonus Points Experienced in pentesting Web3 applications such as crypto exchanges, wallets, Dapps, and key custodian solutions Experienced in smart contract security audits Familiar with browser extension architecture and security risks Actively participate in the blockchain security community OSCP, OSWE, OSCE, GWAPT, or comparable certification Participated in bug bounty programs and audit contests Published security-related blog posts and spoken at security conferences and/or local meetups

Full job record

Job ID30c781319fcf4d9744ef77db894fb6f25bb224d1
Org IDe5d96196-d497-41e8-bcc4-178ecee780bc
Source IDd045bcb0-8c21-4ae5-bc09-480edbc505f0
Board IDd045bcb0-8c21-4ae5-bc09-480edbc505f0
Providerlever
Provider Job Key305d508f-1b1a-4b64-ac41-903b14329764
TitleSr. Security Engineer (Penetration Testing)
Normalized Title
Statusactive
Activeyes
Location TextUS / Remote
DepartmentBlockchain Security Engineering
TeamBlockchain Security Engineering
Employment TypeFull-time
Workplace Typeremote
Remote Policyremote
CountryUnited States
Region
City
Salary RawCompensation Target annual base salary for this role performed in the US is $100,000 - $180,000. The exact compensation at which this job is filled will be determined by the sk
Salary Min100,000
Salary Max180,000
Salary CurrencyUSD
Salary Periodyear
Source URLhttps://jobs.lever.co/certik/305d508f-1b1a-4b64-ac41-903b14329764
Apply URLhttps://jobs.lever.co/certik/305d508f-1b1a-4b64-ac41-903b14329764/apply
First Seen At2026-05-29 07:07:25Z
Last Seen At2026-06-19 07:57:12Z
Last Checked At2026-06-19 07:57:12Z
Last Changed At2026-05-29 07:07:25Z
Inactive At
Source Posted At2022-01-12 22:38:14Z
Source Updated At
Raw Payload Uris3://job-postings-prod-raw-590183727216/raw/provider=lever/board=certik/date=2026-06-19/2026-06-19T07-57-11-718Z-fb31cd36beb37500dec608c2e86e838dd19b434e6854d569962d723fa4c2b5bc.json
Event Fields
{
  "content_hash": "aa855648511e9649743b3a7172570a98a4d1eb394e38d897c05c73bd834b9b15",
  "source_hash": "c4cbf4bd278f350d90b6ad57ce8e9d1d4ff4ed687bb657192d4c56730980cd70",
  "last_changed_at": "2026-05-29T07:07:25.236Z",
  "active_status": "active"
}
Parsed Structured
{
  "language": "en",
  "location": {
    "raw": "US / Remote",
    "city": null,
    "region": null,
    "country": "United States",
    "is_remote": true,
    "confidence": 0.95
  },
  "salary_max": 180000,
  "salary_min": 100000,
  "inferred_at": "2026-06-19T07:57:12.034Z",
  "launch_scope": {
    "reason": "english_us_canada",
    "included": true,
    "language": "en",
    "location": {
      "raw": "US / Remote",
      "city": null,
      "region": null,
      "country": "United States",
      "is_remote": true,
      "confidence": 0.95
    },
    "countries": [
      "United States"
    ]
  },
  "remote_policy": "remote",
  "salary_period": "year",
  "workplace_type": "remote",
  "salary_currency": "USD"
}
Extensions
{}
Native Structured
{
  "lists": [
    {
      "text": "Responsibilities",
      "content": "<li>Perform security assessments on web, mobile, thick client applications, and browser extensions</li><li>Conduct external and internal network penetration tests</li><li>Perform security source code reviews</li><li>Perform cloud security reviews</li><li>Develop comprehensive pentest reports for both technical and non-technical audiences</li><li>Research and develop innovative techniques, tools, and methodologies for pentesting applications in the blockchain space&nbsp;</li><li>Contribute to the community by developing tools, presentations, and blog posts</li>"
    },
    {
      "text": "Requirements",
      "content": "<li>Passionate about cryptocurrency, DeFi, and blockchain, with a willingness to learn Web3 technologies such as smart contracts</li><li>Minimum of 4 years of experience in application security and penetration testing</li><li>Experienced in source code review for different languages, with a strong understanding of JavaScript and TypeScript</li><li>Experienced in mobile application penetration testing</li><li>Familiar with cloud platforms and their security risks, such as AWS, Azure, and GCP</li><li>Experience in programming with scripting languages such as Python and Bash</li><li>Solid understanding of cryptography</li><li>BS/MS/PhD in Computer Science or Information Security&nbsp;</li><li>Strong spoken and written communication skills</li>"
    },
    {
      "text": "Bonus Points",
      "content": "<li>Experienced in pentesting Web3 applications such as crypto exchanges, wallets, Dapps, and key custodian solutions&nbsp;</li><li>Experienced in smart contract security audits</li><li>Familiar with browser extension architecture and security risks</li><li>Actively participate in the blockchain security community</li><li>OSCP, OSWE, OSCE, GWAPT, or comparable certification</li><li>Participated in bug bounty programs and audit contests</li><li>Published security-related blog posts and spoken at security conferences and/or local meetups</li>"
    }
  ],
  "country": "US",
  "createdAt": 1642027094616,
  "updatedAt": null,
  "categories": {
    "team": "Blockchain Security Engineering",
    "location": "US / Remote",
    "commitment": "Full-time",
    "department": "Blockchain Security Engineering",
    "allLocations": [
      "US / Remote"
    ]
  },
  "salaryRange": null,
  "workplaceType": "remote"
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/30c781319fcf4d9744ef77db894fb6f25bb224d1?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/e5d96196-d497-41e8-bcc4-178ecee780bcJSON
GET https://api.bluedoor.sh/job-postings/v1/sources/d045bcb0-8c21-4ae5-bc09-480edbc505f0JSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/30c781319fcf4d9744ef77db894fb6f25bb224d1/eventsJSON