30 days left

Security Engineer, Blockchain — Smart Contract Security

T
Trail of Bits

Remote · Worldwide

Full Time Posted: May 8, 2026
Job description

Trail of Bits is a cybersecurity research and engineering firm focused on securing emerging technologies, blockchain systems, and critical infrastructure. The company combines security research, custom engineering, vulnerability analysis, and open-source tooling to help organizations strengthen their defenses against evolving threats. Its work spans blockchain security, infrastructure auditing, fuzzing, consensus systems, and smart contract analysis.

This full-time remote Security Engineer, Blockchain role focuses on reviewing smart contracts, blockchain infrastructure, and off-chain systems for security vulnerabilities across Layer 1, Layer 2, rollups, bridges, and DeFi ecosystems. 

The role combines manual security analysis with automated tooling across Solidity, Rust, Go, EVM systems, and blockchain security frameworks including Slither, Echidna, and Medusa. Candidates interested in web3 security roles, layer 1 blockchain jobs, and blockchain infrastructure roles will work alongside senior security engineers to support audits, vulnerability assessments, tooling integrations, and blockchain security research.

Strong auditing capabilities are essential when organizations hire solidity developers for DeFi and infrastructure security initiatives.

🔹 Responsibilities

• Collaborate with blockchain teams to review smart contracts, off-chain systems, and blockchain infrastructure under the guidance of senior engineers
• Work with blockchain security tooling including Slither, Echidna, and Medusa while contributing to automated analysis integrations and custom rule development
• Design and implement solutions addressing blockchain security vulnerabilities across smart contracts, consensus systems, and cross-chain asset validation
• Build expertise in Layer 1 and Layer 2 blockchain architectures, finality assumptions, rollups, bridges, and consensus mechanisms
• Conduct security reviews involving validator infrastructure, oracle integrations, bridge systems, and cross-chain communication protocols
• Contribute to blockchain security research, tooling experimentation, and evolving vulnerability assessment methodologies

Operational blockchain security expertise is increasingly important for organizations looking to build a web3 engineering team across protocol ecosystems.

🔹 Requirements

• Experience with Solidity security and strong understanding of the Ethereum Virtual Machine (EVM)
• Familiarity with smart contract vulnerabilities including reentrancy attacks and DeFi security patterns
• Knowledge of ecosystems such as Move, Solana, Cosmos, or TON is considered a plus
• Proficiency in at least one systems programming language including Go, Rust, C++, or similar languages
• Understanding of blockchain development frameworks, RPC interfaces, blockchain node operations, or consensus implementations
• Familiarity with Layer 1 and Layer 2 architectures including optimistic rollups, ZK rollups, state channels, or sidechains
• Basic understanding of consensus mechanisms including Proof of Stake, PBFT, Tendermint, and blockchain finality concepts
• Interest in analyzing validator systems, bridge contracts, oracle infrastructure, and deployment security
• Experience with vulnerability assessments, penetration testing, fuzzing, static analysis, or automated blockchain security tooling

🔹 Compensation & Benefits

• Competitive salary with performance-based bonuses
• Fully company-paid health, dental, vision, disability, and life insurance coverage
• 401(k) plan with 5% salary match
• 20 days of paid vacation with additional flexibility based on jurisdiction
• Four months of parental leave
• $10,000 relocation assistance for employees interested in moving to New York City
• $1,000 remote work and home office stipend
• $750 annual learning and development stipend
• Company-sponsored team gatherings including travel and accommodations
• Philanthropic contribution matching up to $2,000 annually
• Remote-first work culture operating across global time zones


Explore more web3 security roles, blockchain infrastructure roles, and layer 2 scaling jobs on Home | ArtofBlockchain.