
This is an opportunity for an intermediate/senior level engineer with a security background to join our Product Security team, in its Security Engineering division. As an experienced developer with a security mindset, you will help develop and maintain critical security systems within our architecture, as well as assisting the wider engineering and devops practices with their activities. In Product Security our mission is to continuously improve the security posture of BitMEX from the inside, and we are looking for someone capable and flexible who can work with our excellent current staff on that mission!
Lazarus Group need not apply, thank you.
Key Responsibilities
- Design and develop applications or services that enhance security at BitMEX. Examples include identity, middleware, verifier services, SAST/DAST tooling etc.
- Help develop secure coding guidelines and possibly conduct training sessions
- Help assess software and integration risks, both between internal components and with vendors.
- Join threat modeling sessions, and work with internal and external pentester teams.
- Contribute to a culture of security, while understanding compromise and being able to communicate effectively with disparate company functions
Qualifications
- 4+ Years in Information Security or an Adjacent Role.
- Proven expertise in software development, either through engineering roles or published open source projects.
- Medium to advanced skills in the following programming languages: Golang, Python, NodeJS and Java, in order of preference.
- Experience with Kubernetes and the AWS cloud platform would be useful. Advanced skills in these (and affiliated technologies) are a bonus but not required.
- Experience with GitHub CI/CD / Actions is a bonus but not required
- Experience with derivatives and cryptocurrency is a bonus but not required.