bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesEther.FiSecurity Engineer

Security Engineer

Ether.Fi · Cayman · On Site · Active · Ashby

Job facts

FieldValue
CompanyEther.Fi
TitleSecurity Engineer
Normalized title-
Department / teamEngineering / Engineering
LocationDenver, CO, United States
Work modelOn Site
Employment typeFull Time
Salary-
Statusactive
ATS providerAshby
Posted / first seen / 2026-05-29
Changed / last seen2026-05-29 / 2026-06-06

Related slices

PageWhat it containsOpen
Company jobsActive postings from Ether.Fi.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through Ashby.Open
Provider filtered searchThe same provider as a filtered job collection.Open
City jobsActive postings in Denver.Open
Department jobsActive postings in Engineering.Open
Work model jobsActive On Site postings.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanyEther.Fi
Sourcef9463027-8035-45f9-88d2-bf84714e7f21
ATS providerAshby

Description

About the Role: We're looking for a Security Engineer who is equally at home hardening a CI/CD pipeline, reviewing a change to the authentication system on the backend, and triaging a bug bounty submission before lunch.This is a hands-on, builder-first role — not a governance checkbox. You'll own security operations end-to-end, embedded directly into the engineering team and working closely with infrastructure, protocol and platform. If you treat threat modeling as a design conversation and not a compliance exercise, you're our kind of person. You should only apply for this role if you are ready to come into the office every day and work in person with our team! What You'll Do: Security Operations Own day-to-day security operations: monitoring, alerting, triage, and response Manage and monitor endpoint security via an EDR system — tune detections, investigate alerts, and drive incidents to resolution Lead identity lifecycle management, including employee onboarding and off boarding (access provisioning, key rotation, deprovisioning) Bug Bounty & Vulnerability Management Be the primary owner of our ImmuneFi program — triaging, reproducing, and responding to incoming submissions daily Prioritize and track vulnerabilities through to remediation in close collaboration with protocol and engineering teams Develop internal tooling and processes to make the bounty workflow faster and more consistent DevSecOps & Pipeline Hardening Audit and harden CI/CD pipelines — secrets management, supply chain integrity, SAST/DAST integration, build provenance Own dependency security: identify and remediate vulnerable packages across repositories (yes, including the npm dependency hell) Establish and enforce security standards across the SDLC Infrastructure Security Partner with the infrastructure team to review and harden cloud environments (access controls, network segmentation, least privilege, logging) Contribute to threat modeling for new systems and architectural changes Drive implementation of security tooling across the stack Vendor & External Partner Management Own relationships with external security vendors and service providers — holding them accountable toSLAs, managing scope, and ensuring findings are actioned Evaluate and onboard new security tooling as the team and threat landscape evolve What We're Looking For: 5–8+ years of experience in software and security engineering, with meaningful time in a DevSecOps or security operations context Strong software engineering fundamentals — you're a builder who writes code, not just policy Hands-on experience hardening CI/CD pipelines (GitHub Actions, CircleCI, or similar) and cloud infrastructure (AWS, GCP, or equivalent) Proficiency with endpoint security tooling (CrowdStrike or equivalent EDR) Comfort owning identity and access management processes, including onboarding/offboarding workflows Strong communication skills — you can write a clear triage report, give direct feedback to a developer and explain risk to a non-technical stakeholder Nice to Have: You were a traditional software engineer before specializing in security Prior experience at a DeFi protocol, crypto exchange, or blockchain infrastructure company CTF/security competition background Contributions to open-source security tooling What Success Looks Like: In your first 90 days, you've mapped our attack surface, established a daily rhythm on ImmuneFi, and shipped at least a few meaningful PRs across the full stack. Within six months, you've built enough trust in the team that engineers come to you before shipping sensitive PRs, not after.

Full job record

Job IDaa969aa3c0a6ac13d30a3c2557686252d04a890b
Org ID6450f1cf-3454-4e20-b2f7-a351c6e5a549
Source IDf9463027-8035-45f9-88d2-bf84714e7f21
Board IDf9463027-8035-45f9-88d2-bf84714e7f21
Providerashby
Provider Job Key64b9a6e8-9173-4551-a229-d25b28b9d081
TitleSecurity Engineer
Normalized Title
Statusactive
Activeyes
Location TextCayman
DepartmentEngineering
TeamEngineering
Employment Typefull_time
Workplace Typeon_site
Remote Policy
CountryUnited States
RegionCO
CityDenver
Salary Raw
Salary Min
Salary Max
Salary Currency
Salary Period
Source URLhttps://jobs.ashbyhq.com/ether.fi/64b9a6e8-9173-4551-a229-d25b28b9d081
Apply URLhttps://jobs.ashbyhq.com/ether.fi/64b9a6e8-9173-4551-a229-d25b28b9d081/application
First Seen At2026-05-29 06:56:00Z
Last Seen At2026-06-06 09:45:34Z
Last Checked At2026-06-06 09:45:34Z
Last Changed At2026-05-29 06:56:00Z
Inactive At
Source Posted At
Source Updated At
Raw Payload Uris3://job-postings-prod-raw-590183727216/raw/provider=ashby/board=ether.fi/date=2026-06-06/2026-06-06T09-45-33-469Z-f383b6060451bf468ef0ca6b70bc8e2fc5a806ba643ef0ff7e72a8034200d974.json
Event Fields
{
  "content_hash": "ed669dc1e19f4a640d4ba9f2f81be2881b2b2e7a84613d9d8b12309290e4c7e1",
  "source_hash": "226b5af2b30b491d73aa04987bfef8577161ce0c494758f8b181c57829dab57e",
  "last_changed_at": "2026-05-29T06:56:00.146Z",
  "active_status": "active"
}
Parsed Structured
{
  "language": "en",
  "location": {
    "raw": "Denver",
    "city": "Denver",
    "region": "CO",
    "country": "United States",
    "is_remote": false,
    "confidence": 0.75
  },
  "salary_max": null,
  "salary_min": null,
  "inferred_at": "2026-06-06T09:45:34.942Z",
  "launch_scope": {
    "reason": "english_us_canada",
    "included": true,
    "language": "en",
    "location": {
      "raw": "Denver",
      "city": "Denver",
      "region": "CO",
      "country": "United States",
      "is_remote": false,
      "confidence": 0.75
    },
    "countries": [
      "United States"
    ]
  },
  "remote_policy": null,
  "salary_period": null,
  "workplace_type": "on_site",
  "salary_currency": null
}
Extensions
{}
Native Structured
{
  "id": "64b9a6e8-9173-4551-a229-d25b28b9d081",
  "team": "Engineering",
  "title": "Security Engineer ",
  "jobUrl": "https://jobs.ashbyhq.com/ether.fi/64b9a6e8-9173-4551-a229-d25b28b9d081",
  "address": null,
  "applyUrl": "https://jobs.ashbyhq.com/ether.fi/64b9a6e8-9173-4551-a229-d25b28b9d081/application",
  "isListed": true,
  "isRemote": false,
  "location": "Cayman",
  "updatedAt": null,
  "apiVersion": "ashby-non-user-graphql-v1",
  "department": "Engineering",
  "publishedAt": null,
  "workplaceType": "OnSite",
  "employmentType": "FullTime",
  "secondaryLocations": [
    {
      "location": "Denver"
    },
    {
      "location": "New York"
    }
  ]
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/aa969aa3c0a6ac13d30a3c2557686252d04a890b?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/6450f1cf-3454-4e20-b2f7-a351c6e5a549JSON
GET https://api.bluedoor.sh/job-postings/v1/sources/f9463027-8035-45f9-88d2-bf84714e7f21JSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/aa969aa3c0a6ac13d30a3c2557686252d04a890b/eventsJSON