Senior Security Engineer - Product Security
Job in
Northern, Floyd County, Kentucky, USA
Listed on 2026-08-13
Listing for:
Far Coder
Full Time
position Listed on 2026-08-13
Job specializations:
-
IT/Tech
Cybersecurity, Blockchain / Web3, Information Security & Data Protection
Job Description & How to Apply Below
# Remote Senior Security Engineer
- Product Security Job at Ondo FinanceUSA9 hours agoFull TimeUSA $25000 - $40000 USDJava Script Type Script Terraform CI/CDPython Rust Java Go Blockchain Chai MEANSecurity“When applying, mention the word Far Coder to show you’ve read the job post completely. Employers can look for these words to identify genuine, thoughtful applicants and avoid spam.”## Job Overview Ondo Finance is hiring a remote candidate for Senior Security Engineer
- Product Security. This is a full time position.
Work location:
USA.The role typically involves technologies such as JavaScript, Type Script, Terraform, CI/CD, Python, Rust.##
Key Responsibilities
* Drive threat modeling for new features, integrations, and architectural changes across the product surface. Push threat models past templates into decisions that engineering teams actually implement.
* Own secure code review for high-risk changes — authentication, session management, cryptographic paths, wallet and signing flows, RPC and third-party integrations, permission and consent surfaces.
* Expand the App Sec tooling stack and treat “reducing false positives” as a first-class deliverable. AI-native integrations are welcome.
* Design and evolve our secure SDLC: where security fits in the dev workflow, what triggers a review, what a lightweight security sign-off looks like versus a full one, and how do we validate controls.
* Run our responsible disclosure and bug bounty program. Set scope, triage inbound reports, decide payouts, and drive findings to closure with engineering.
* Support and own appropriate scope for the intake and closure of findings from external audits and pentests — coordinate with audit vendors (Coinspect, Cantina, NCC Group, and others), organize findings into our internal risk register, and drive remediation with engineering owners.
* Partner with engineering leads to align o secure-by-default patterns - libraries, templates, sensible defaults, and paved-road implementations of anything security-relevant.
* Threat model blockchain-integrated components like wallet flows, RPC integrations, signing infrastructure, on-chain admin actions triggered from off-chain systems in partnership with engineers who own the on-chain code.
* Contribute to hiring, mentoring, and pushing the technical bar on the Security team.## Required Skills### Primary Skills
* JavaScript* Type Script
* Terraform* CI/CD
* Python* Rust### Secondary Skills
* Java* Go
* Blockchain* Chai
* MEAN* Security Skills required for this role include JavaScript, Type Script, Terraform, and related tools for day-to-day development.## Job Details
* *
* Employment Type:
** Full Time
* *
* Location:
** USA
* ** Salary:** $25000 – $40000 USD## Tech Stack Java Script , Type Script, Terraform, CI/CD, Python, Rust, Java, Go, Blockchain, Chai, MEAN, Security## Role details## About Ondo Ondo Finance is building institutional-grade financial infrastructure for tokenized real-world assets. We operate at the intersection of traditional finance and on-chain systems, which means our product surface has to hold up against both the ordinary threats that hit any high-value fintech and the specific ones that follow value on-chain.##
About the Role We are hiring a
** Senior Security Engineer - Product Security
** to own how we ship secure products will be a security partner for our product engineering teams, driving threat modeling, owning secure code reviews for new products or feature expansions, maintaining and tuning App Sec tooling, and improving the existing SSDLC. You can expect to take ownership of the bug bounty program, new feature to existing product reviews, and similar broad ownership of critical functions paired to a dedicated Prod Sec lead.
An AI-native approach is welcome, paired with AI-driven approaches should expect to be justified by describing how doing so enables risk outcomes.
This is a hands-on IC role. You will read code, run threat models, review architecture proposals, own tooling, and push engineering teams to build products that are secure by default. You partner closely with adjacent security function like App Sec, Infrasec, and Sec Ops.## What You’ll Do## What…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×