Create Email Alert

Email Alert for

ⓘ There was an unexpected error processing your request.

Please refresh the page and try again.

If the problem persists, please contact us with your issue.

Email address is already registered

You can always manage your preferences and update your interests to ensure you receive the most relevant opportunities.

Would you like to [visit your alert settings] now?

Success! You're now signed up for Job Alerts

Get ready to discover your next great opportunity.

Similar Jobs

  • Sirius XM Radio Inc

    Senior Offensive Security Engineer

    New York, NY, United States

    Who We Are: SiriusXM and its brands (Pandora, SiriusXM Media, AdsWizz, Simplecast, and SiriusXM Connect) are leading a new era of audio entertainment and services by delivering the most compelling subscription and ad-supported audio entertainment experience for listeners -- in the car, at home, and anywhere on the go with connected devices. Our vi

    Job Source: Sirius XM Radio Inc
  • X (formerly Twitter)

    Senior/Staff Security Engineer, Offensive Security

    New York, NY, United States

    • Ending Soon

    Are you prepared to join the X team and help build the ultimate real-time information-sharing app, revolutionizing how people connect? At X, we're on a mission to become a trusted global digital public square, committed to minimal censorship within legal boundaries. Our goal is to empower every user to freely create and share ideas, fostering open

    Job Source: X (formerly Twitter)
  • Galaxy USA

    VP, Senior Product Security Engineer

    New York, NY, United States

    • Ending Soon

    Who We Are: At Galaxy we are building products and services to help the world invest in economic progress. We believe crypto and blockchain innovations will permeate and improve all aspects of our global economy. Our vision is a society where value and ownership flow as freely as information. Galaxy is a digital asset and blockchain leader helping

    Job Source: Galaxy USA
  • Tik Tok

    Security Engineer (Security Posture Analysis) - Offensive Security Operations - USDS

    New York, NY, United States

    • Ending Soon

    Responsibilities About TikTok U.S. Data Security TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. U.S. Data Security ("USDS") is a subsidiary of TikTok in the U.S. This new, security-first division was created to bring heightened focus and governance to our data protection policies

    Job Source: Tik Tok
  • Allgeier Cyris

    Senior Penetration Tester (m/w/d) Offensive Security Consultant

    , ID, United States

    Bewirb Dich bei uns und werde Bestandteil eines starken Teams! Bring Deine Leidenschaft für Technik und Innovationen in Deinen Job ein und bewege etwas in unserer digitalisierten Gesellschaft! Mach die Welt Bit für Bit sicherer, einfacher, nachhaltiger! Gestalte aktiv den Wachstumsmarkt Cybersecurity ! Arbeitsmodell: Vollzeit, 40 h die Woche bei

    Job Source: Allgeier Cyris
  • Citigroup Inc

    Security Software Engineer- VP (Hybrid)

    New York, NY, United States

    • Ending Soon

    Citi Overview Citi, the leading global bank, has approximately 200 million customer accounts and does business in more than 160 countries and jurisdictions. Citi provides consumers, corporations, governments, and institutions with a broad range of financial products and services, including consumer banking and credit, corporate and investment bank

    Job Source: Citigroup Inc
  • Hispanic Technology Executive Council

    Security Software Engineer- VP (Hybrid)

    New York, NY, United States

    • Ending Soon

    Citi Overview Citi, the leading global bank, has approximately 200 million customer accounts and does business in more than 160 countries and jurisdictions. Citi provides consumers, corporations, governments, and institutions with a broad range of financial products and services, including consumer banking and credit, corporate and investment banki

    Job Source: Hispanic Technology Executive Council
  • Citibank

    Senior Data Engineer - VP

    Rutherford, NJ, United States

    The Senior Data Engineer is responsible for establishing and implementing new or revised application systems and programs in coordination with the Technology team. The overall objective of this role is to lead applications systems analysis and programming activities. Responsibilities: Develop enterprise data model and data strategy for enterprise

    Job Source: Citibank

VP, Senior Offensive Security Engineer

New York, NY, United States

Who We Are:

At Galaxy we are building products and services to help the world invest in economic progress. We believe crypto and blockchain innovations will permeate and improve all aspects of our global economy. Our vision is a society where value and ownership flow as freely as information. Galaxy is a digital asset and blockchain leader helping institutions, startups, and individuals access and navigate the crypto economy. As one of the most well-capitalized and trusted companies in the industry, we provide platform solutions custom-made for a digitally native ecosystem across three complementary operating businesses: Global Markets, Asset Management, and Digital Infrastructure Solutions. Our offerings include, amongst others, trading, lending, strategic advisory services, institutional-grade investment solutions across passive, active and venture strategies, proprietary bitcoin mining and hosting services, network validator services, and the development of enterprise custodial technology. Galaxy's CEO and Founder Michael Novogratz leads a team of crypto enthusiasts, and institutional veterans focused on the future of finance and Web3. The Company is headquartered in New York City, with global across North America, Europe and Asia.

Additional information about the Company's businesses and products is available on www.galaxy.com.

What We Value:

We are a diverse team of free thinkers, and fast movers united to help investors and creators energize the global economy. We are looking for individuals who thrive in a culture of builders and overachievers and embrace high performance, transparent feedback, and a mission-first approach. Our culture shapes our way of working and gets us where we want to be.

Seek Excellence.

Be Selective To Be Effective.

Be Highly Aligned, Loosely Coupled.

Disagree Transparently.

Encourage Independent Decision-Making.

Build Dream Teams.

Who You Are:

The Product Security team is looking for a Senior Offensive Security Engineer to design and implement a security testing program where we will use creative adversarial techniques to uncover vulnerabilities in our products, but also dedicate a substantial amount of time to provide guidance and hands on help to engineers to remediate the issues.

Our team objective is to ensure a secure-by-design approach to all product development and operations, and we seek a strong testing practice as the final assurance that controls are implemented properly. The type of products in our scope are client facing and internal Web/APIs, blockchain applications, data lakes and integration of advanced trading architectures.

As of today we envision the development of such pillars as part of the security testing program:

Penetration testing of high priority features: product security engineers will prioritize features and applications to be tested, with specific objectives

Adversarial Testing Campaigns: driven by threat intelligence, advanced testing techniques to uncover vulnerabilities in our products, infrastructure, or processes

As a member of the product security team, the testing engineer will be in a unique position, working closely with the software engineering, SRE, and security operations teams.

We are looking for a driven professional, with great communication and organization skills.

What You'll Do: Design and implement the security testing program with guidance from the director of product security and help from product security team members

Plan testing activities, communicate with involved teams (software engineering, SRE, ...)

Perform security-focused code reviews

Perform manual testing of security features such as authentication, authorization

Perform adversarial tests in an ethical manner using manual and automated techniques, creating a repository of methods and scripts that will be augmented regularly; Provide report of vulnerabilities

Recommend off-the shelf and specialized testing tools for the firm

Develop an extensive knowledge of the technical architecture and business functionality of Galaxy products

Help maintain and address stability of the testing environment

Be an advocate of security testing to software engineering and product teams, and help them develop a mindset of thinking about adverse scenarios and how a system can be subverted

Provide guidance to development and SRE teams on the mitigation of vulnerabilities

Stay informed of the latest developments in adversarial tactics and techniques and application vulnerabilities - especially in financial and digital asset space - and adapt the strategy or tooling to address new threats

What We're Looking For: Security certification in cybersecurity testing (OSWE/OSCP/OSWA/eWPTX/BSCP or equivalent)

Bachelor or post-graduate diploma in cybersecurity or technology

5+ years experience in security research and web penetration testing

3+ years experience with cloud and container architectures

Programming and scripting language experience; Java, C++, Python, or similar languages

Attention to detail, to be able to plan and execute tests on a wide range of applications

Excellent communication skills and the ability to collaborate effectively with cross-functional teams

Ability to think creatively and strategically to identify flaws and vulnerabilities

Experience with automated security testing such as DAST, SAST, SCA

Bonus Points: Cryptocurrency, trading, and derivatives financial products knowledge

Familiarity with multi-participant approvals such as MPC and multi-signature

The base salary ranges included below will be commensurate with candidate experience, expertise and local market. Final offer amounts are determined by multiple factors, including candidate experience and expertise. At Galaxy, we maintain a total compensation philosophy which consists of a competitive base salary, annual bonus, and equity incentives.

Base Salary Range: $180,000 - $220,000

What We Offer: Competitive base salary, bonus, and equity compensation

Flexible Time Off (i.e. unlimited paid vacation days)

Company paid Holidays (11)

Company paid sick leave

Company-paid health and protective benefits for employees, partners, and other dependents

3% 401(k) company contribution

Generous paid Parental Leave

Free virtual coaching and counseling sessions through Ginger

Opportunities to learn about the Crypto industry

Free daily snacks in-office

Smart, entrepreneurial, and fun colleagues

Employee Resource Groups

Apply now and join us on our mission to engineer a new economic paradigm.

Galaxy respects diversity and seeks to provide equal employment opportunities to all employees and job applicants for employment without regard to actual or perceived age, race, color, creed, religion, sex or gender (including pregnancy, childbirth, lactation and related medical conditions), gender identity or gender expression (including transgender status), sexual orientation, marital or partnership or caregiver status, ancestry, national origin, citizenship status, disability, military or veteran status, protected medical condition as defined by applicable state or local law, genetic information or predisposing genetic characteristic, or other characteristic protected by applicable federal, state, or local laws and ordinances.

We will endeavor to make a reasonable accommodation to the known limitations of a qualified applicant with a disability unless the accommodation would impose an undue hardship on the operation of our business. If you believe you require such assistance to complete the application process or to participate in an interview, please contact [email protected].

Apply

Create Email Alert

Create Email Alert

Email Alert for VP, Senior Offensive Security Engineer jobs in New York, NY, United States

ⓘ There was an unexpected error processing your request.

Please refresh the page and try again.

If the problem persists, please contact us with your issue.

Email address is already registered

You can always manage your preferences and update your interests to ensure you receive the most relevant opportunities.

Would you like to [visit your alert settings] now?

Success! You're now signed up for Job Alerts

Get ready to discover your next great opportunity.