Frequently asked questions
Is this job still open?
GMI Jobs is currently showing this Staff Product Security Engineer (Security) role at Phantom as an active listing from employer-controlled hiring sources. Always confirm final availability on the employer application page before applying.
How do I apply for this role?
Use the application link on this page to apply directly with Phantom. GMI Jobs keeps the canonical job page, company context, and market links together so candidates can compare before leaving the site.
What should I compare before applying?
Compare the role location Remote, any listed pay signal, company profile, related crypto jobs, and salary context before applying. Listed pay signals are not guaranteed offers; confirm compensation with the employer.
Job Description
Phantom is on a mission to connect the world to the freedom of open markets. Tens of millions of people all over the world use Phantom to access global markets that never close, including perpetuals, prediction markets, tokenized assets, stablecoins and memes. Phantom users are able to discover the markets that matter and the cultural moments that shape them, building conviction through real-time data and the verified performance of top traders. With self-custody and access to open networks at its core, Phantom lets them control their financial moves in the same app they use to safely store or spend money worldwide. Phantom has reached #1 in Google Play's finance category and consistently ranks in the top 50 apps across all categories. Phantom partners with many of the most trusted and influential names in finance like Hyperliquid, Stripe, Kalshi and Visa, to make the most popular and innovative financial products accessible to everyone. We are around 180 people, fully remote, backed by a $150M Series C investment from a16z, Sequoia Capital and Paradigm. Responsibilities Security is core to the product and the reason why millions of people trust Phantom to securely store their crypto assets. As a Security Engineer, you will be responsible for identifying, exploiting and mitigating security vulnerability risks in our software applications, as well as conducting security assessments and investigations. You will work closely with development teams to ensure that security is integrated throughout the software development lifecycle. Join us on our mission to make the digital economy safe and easy to use for everyone. Perform regular security assessments on new projects, infrastructure and code. Identify and mitigate security vulnerabilities in code, systems and networks through manual testing, automated tools, threat modeling and threat intelligence. Keep up to date with the latest offensive security techniques, application security threats, and best practices in the blockchain space, and recommend improvements to security posture Write detailed reports of your findings and present them to management and technical teams, and help to prevent real-world attacks. Work with development teams to implement secure coding practices and to ensure the integrity of cryptographic functions. Collaborate with other teams such as development and platform to ensure that security is integrated throughout the organization. Participate in incident response and incident management activities. Leading large cross-team projects. Qualifications 7+ years of experience in offensive security techniques, with a focus on blockchain technology and cryptography. Strong understanding of security risks, vulnerabilities and concepts in web and mobile applications. Proficient in code review for JavaScript & Typescript with a strong understanding of application security threats and offensive security techniques. Write PoC’s to prove vulnerabilities, review and ensure that patch cod