Security Architecture Review: Participate in product design reviews to identify architectural/logical flaws and provide security hardening solutions.
Requirements:
Core AppSec Skills: 2+ years of experience in AppSec or PenTesting; solid knowledge of OWASP Top 10 and web/API vulnerability exploitation.
Web3 / Blockchain Experience: Familiar with Web3 threat vectors (e.g., Reentrancy, Flash Loans, Signature Forgery, DApp attacks). Hands-on experience in Solidity auditing or DApp/Wallet testing is a strong plus.
Tooling & Automation: Proficient with security tools (e.g., Burp Suite, Slither, Mythril, Checkmarx) and capable of scripting in Python or Go for automation.
Communication: Excellent cross-functional communication skills to effectively drive remediation with development teams.