Member of Technical Staff, Security
Core
Build and maintain security automation, conduct application security assessments, and manage vulnerability lifecycles to protect the Anchorage platform.
Role type
Senior IC security engineer (application security & vulnerability management)
Builds
Security automation tooling, vulnerability management workflows, and security guardrails for code, cloud resources, and infrastructure
Domain
Fintech / Crypto / Web3 security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
security automation, application security assessments, penetration testing, vulnerability management, static and dynamic analysis, cloud security (AWS), incident response, root cause analysis, security strategy alignment
Preferred skills
bug bounty program experience, regulated financial services/fintech/crypto environment experience, blockchain security and smart contract auditing, open-source security tool contributions
Technologies
Python, Go, Semgrep, CodeQL, Burp Suite, AWS (IAM, VPC, CloudTrail)
Responsibilities
Build and maintain security automation and tooling for static and dynamic analysis; Conduct application security assessments, penetration tests, and code reviews; Develop and operate vulnerability management workflows; Establish and test security guardrails for code, cloud resources, and infrastructure; Monitor and respond to security events and configuration anomalies; Manage the full vulnerability lifecycle from discovery through remediation
Seniority
Senior, hands-on IC
