Polygon
Senior Application Security Engineer
Job Description
[AI-summarized by JobStash]
You will perform end-to-end security reviews across smart contracts, backend services, and front-end surfaces, producing high-quality written findings. You will design and maintain AI-powered code reviewers and an agentic security CI/CD pipeline that runs against pull requests and release candidates. You will triage bug bounty submissions, reproduce valid findings, assign severity, and route confirmed issues to engineering with actionable context. You will review proposed fixes, close resolved findings, and push for root-cause remediation. You will embed across engineering workflows from planning to post-launch and lead the AI security practice by building and sharing custom prompt chains, CI integrations, and tooling.
Requirements
- āFull-stack security fluency across Solidity, Go, TypeScript, and Python
- āProduction experience auditing or building secure Solidity and deep familiarity with EVM internals
- āProven experience building AI security workflows, custom prompt chains, and CI integrations (e.g., Claude Code, Codex)
- āExperience making security decisions under real-time pressure in Web3 environments
- āPublic portfolio demonstrating security work such as audit reports, bug bounty writeups, research posts, or open-source tooling
- āExperience running or contributing to a structured bug bounty program
- āExposure to payments protocols, stablecoin infrastructure, or regulated fintech environments
- āPrior experience building security tooling with real engineering adoption
Responsibilities
- āOwn end-to-end security reviews across smart contracts, backend services, and frontend surfaces
- āBuild and ship an agentic security CI/CD pipeline that autonomously reviews PRs and release candidates
- āDesign and maintain AI-powered code reviewers tuned to specific vulnerability classes and surfaces
- āTriage and manage the bug bounty program, reproduce findings, assign severity, and route issues
- āReview and verify remediation, closing resolved findings and ensuring root-cause fixes
- āEmbed across engineering teams at planning, design, feature freeze, and post-launch stages
- āLead the AI security practice by building prompt chains, workflows, and integrations and sharing them
Benefits & Perks
- āRemote first global workforce
- āMedical insurance
- āDental insurance
- āVision insurance
- āCompany matching 401k with 3% match
- ā$1,500 home office setup allowance
- ā$200 annual AI allowance
- ā$75 monthly internet or phone reimbursement
- āFlexible time off
- āCompany issued laptop
- āEgg freezing and employee wellness benefits