Product Security Engineer at Hedera Hashgraph
Company: Hedera Hashgraph
Location: Remote within EU/APAC
Type: FULL_TIME
Job Description
<div class="content-intro"><p><strong data-stringify-type="bold">About Hashgraph:<br></strong></p>
<p class="c-mrkdwn__quote" data-stringify-type="quote">Hashgraph is a fast-growing software company committed to supporting, developing and servicing Hedera, an open source, proof-of-stake platform. Hedera is EVM-compatible and has been specifically built to meet the needs of enterprise and web3 applications, which require speed, security, stability and sustainability. Hedera’s public network is governed by industry-leading organizations, spanning 11 sectors and 14 regions who oversee the development and direction of the decentralized platform.</p></div><p><span style="text-decoration: underline;"><strong><span style="font-size: 14pt;">The role:<br></span></strong></span><br>We are hiring a&nbsp;<strong>Product Security Engineer</strong> to embed security into the product development lifecycle and ensure vulnerabilities are found by us before they are found by others.&nbsp;Hedera is an enterprise-grade distributed ledger securing billions of transactions for global developer and institutions. As the platform grows with new protocol upgrades, EVM-compatible services, cross-chain infrastructure, and cryptographic primitives, the attack surface grows with it.&nbsp;This role exists to ensure that security is a first-class property of every protocol upgrade, smart contract, and node shipped to production.&nbsp;</p>
<h3>In this role, you will:</h3>
<ul>
<li data-section-id="tkd6el" data-start="1417" data-end="1616">Conduct end-to-end security assessments of blockchain-based systems, from cryptographic primitive design and protocol architecture through smart contract implementation and deployed infrastructure.</li>
<li data-section-id="1e5xrcw" data-start="1617" data-end="1761">Find real vulnerabilities through hands-on review, adversarial testing, and proof-of-concept exploit development, not just automated scanning.</li>
<li data-section-id="z4i4rd" data-start="1762" data-end="1930">Design adversarial test cases and proof-of-concept exploits for Hedera-native services, EVM-compatible contracts, cross-chain bridges, and consensus-layer components.</li>
<li data-section-id="11oosdk" data-start="1931" data-end="2009">Own threat modeling and security architecture reviews across product phases.</li>
<li data-section-id="y5vnmz" data-start="2010" data-end="2085">Define and enforce security gates before new components reach production.</li>
<li data-section-id="q3s6y3" data-start="2086" data-end="2224">P
Browse More Jobs
Priority job-market routes
Explore exact-match crypto job pages with stronger market coverage, salary context, and fresh protocol hiring inventory.
- Base jobs — 720/mo exact-match demand for Base ecosystem hiring.
- Aptos jobs — 590/mo protocol demand backed by live inventory.
- Blockchain jobs — 880/mo head-term route for blockchain developer intent.
- Remote crypto jobs — 110/mo remote-intent shortcut with work-style relevance.
- Blockchain developer salary — 390/mo salary-intent surface with compensation proof.