Smart contract audit + AI review” in JDs — legit workflow or red flag?
I’m seeing a new line pop up in security JDs: “smart contract audit + AI review” (sometimes written as AI-assisted audit review). I’m not anti-AI at all, but I can’t tell what they actually expect from the person they hire.
Is “smart contract audit AI review” meant to be something sane like: speeding up initial triage, summarizing call flows, drafting report language, checking invariants — while humans still do the real reasoning? Or is it code for “we’ll run tools + an LLM and call it an audit”? That second version scares me because it feels like fake confidence waiting to happen.
Same JD also had “gas optimization review”. In real teams, how deep is that? Are we talking obvious stuff (loops, caching, events), or deeper reviews like storage layout/packing, call patterns, and tradeoffs that affect security too?
If you’ve been on the hiring side: what does a healthy AI-assisted audit review process look like? And as a candidate, how do I talk about AI usage without sounding like I’m outsourcing thinking?
Am I overthinking this… or is this keyword a signal in itself?