Security Engineer
MovementJob Description
📋 Description Audit Move modules and protocol code (Solidity, Rust) for vulnerabilities. Design/build security tooling: fuzzers, invariant tests, static analyzers, runtime monitors. Drive formal verification with Move Prover; write specs for core modules. Threat-model the protocol end-to-end: consensus, data availability, bridges, RPC, validator infra. Leverage AI to scale code review, vulnerability triage, and exploit-pattern detection. Own the bug bounty program; triage external reports and create fixes/regression tests. 🎯 Requirements Track record of real vulnerabilities: audits, CVEs, or bug bounty wins. Strong code-level security skills: read Move or Solidity and spot dangerous paths. Deep understanding of Move/EVM/SVM and related bug classes. Comfort writing code (Move, Solidity, Rust, Python) to build tooling. Understanding of vulnerability classes: access control, reentrancy, oracle manipulation, MEV. Adversarial mindset: assume protocol will be attacked on day one. 🎁 Benefits True ownership of security across production L1, protocol, runtime, and ecosystem. Work directly with protocol/runtime engineers as a partner. Tackle hard problems at the intersection of language design, distributed systems, cryptography. Competitive compensation with meaningful upside. Defend infrastructure that real apps, users, and money depend on.