Cantina (cantina.xyz) Logo

Cantina (cantina.xyz)

Security Researcher

Reposted 2 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in USA
120K-200K Annually
Senior level
Remote
Hiring Remotely in USA
120K-200K Annually
Senior level
Perform security reviews on smart contracts and blockchain infrastructure, analyze designs for vulnerabilities, and collaborate with teams for secure product delivery.
The summary above was generated by AI
What You’ll Do
  • Perform deep-dive security reviews of smart contracts, protocols, and blockchain infrastructure

  • Analyze protocol designs and identify attack surfaces across DeFi primitives, tokenomics, governance, MEV, bridges, and ZK systems

  • Work within a pod or as part of a curated team with other senior researchers

  • Provide actionable recommendations with clear technical and business impact assessments

  • Reproduce exploits, write POCs, and occasionally contribute patches

  • Publish post-mortems, technical articles, and internal reports as part of the knowledge-sharing culture

Who You Are
  • Experienced: You've worked on or audited complex smart contracts and are deeply familiar with Solidity, EVM behaviour, and common vulnerability classes (e.g., reentrancy, logic flaws, gas griefing, access control). Bonus if you have exposure to Move, Zk, Cairo, Rust, or low-level protocol implementations.

  • Curious and Relentless: You don’t stop at surface-level bugs. You model systems end-to-end and attack assumptions from first principles.

  • Collaborative: You enjoy working with other security researchers and protocol developers to ship secure products.

  • Detail-Oriented: You produce clear, concise, and rigorous technical writeups. Your GitHub issues or findings are actionable and professional.

  • Credible: You’ve either contributed to open source projects, published security research, performed audits, played CTFs, or made a name for yourself in the bug bounty world.

  • Decentralization-Aligned: You value open networks, cryptographic innovation, and building resilient systems.

Preferred Qualifications
  • Deep understanding of the EVM and Solidity

  • Experience auditing production smart contracts (solo or in teams)

  • Experience with cross-chain protocols, bridging, rollups, or ZK systems

  • Track record of high-impact bugs in bounties, audits, or competitions (e.g., Cantina, Paradigm CTF)

  • Familiarity with Ethereum security tooling: Foundry, Echidna, Slither, etc.

  • Experience writing or reviewing technical specs or protocol docs

Nice to Haves
  • Prior experience in formal audits (Spearbit, Zellic, Trail of Bits, etc.)

  • Familiar with the Cantina Platform

  • Lead reviewer experience or ability to manage a team of researchers

  • Contributions to open-source security tooling

  • Security publications, conference talks, or technical blog posts

What We Offer
  • Access to cutting-edge projects and deeply technical reviews

  • Compensation at the top end of the market

  • Collaboration with the best researchers + projects in the industry

Top Skills

Cairo
Echidna
Evm
Foundry
Move
Rust
Slither
Solidity
Zk

Similar Jobs

7 Days Ago
Remote or Hybrid
USA
85K-120K Annually
Senior level
85K-120K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The role involves supporting technical and non-technical collection activities for intelligence products, monitoring requests, identifying threats, and applying operational tradecraft to enhance threat analysis.
Top Skills: DatabasesDeep WebJIRAMessage Traffic Handling SystemsOnion Search EnginesVpns
Junior
Cloud • Information Technology • Security • Software • Cybersecurity
As a WAF Application Security Expert, you will research and improve detection logic, analyze vulnerabilities, develop WAF rules, and automate workflows.
Top Skills: BigQueryClickhouseGoGrafanaPythonRustSQL
11 Days Ago
Remote or Hybrid
USA
85K-120K Annually
Senior level
85K-120K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Conduct research on mobile threats, analyze cyber campaigns, reverse engineer malware, produce intelligence reports, and collaborate with teams for threat detection.
Top Skills: DebuggersDecompilersDisassemblersMalware AnalysisPythonReverse Engineering

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account