Smart Contract Security Auditor
Contract or Full-time · 📍 Remote
Audit smart contracts for enterprise clients before mainnet — DeFi protocols handling real TVL, tokenization platforms moving real assets, stablecoin systems processing real payments. $200K–$350K.
What You'll Do
- Conduct comprehensive smart contract security audits (Solidity primary, Rust secondary)
- Identify vulnerabilities: reentrancy, access control flaws, oracle manipulation, flash loan vectors
- Write clear, actionable audit reports with severity classification
- Develop and maintain internal security tooling and testing frameworks
- Perform threat modeling for new protocol architectures
- Collaborate with engineering teams on remediation
What We Look For
- Track record of finding real vulnerabilities (audit reports, bug bounty payouts, Code4rena/Sherlock history)
- Deep understanding of EVM internals, Solidity compiler behavior, and gas-level interactions
- Proficiency with Slither, Mythril, Foundry fuzzing, Echidna, or equivalent
- Knowledge of DeFi primitives (lending, AMMs, vaults, oracles) and their attack surfaces
- Ability to write clear findings with remediation guidance
- Bonus: formal verification experience (Certora, Halmos)
What Makes This Different
- Variety: 3–5 different protocol architectures per year
- Flexibility: Contract, full-time, or fractional — your call
- No token risk: Stable billing, real revenue
- Speed: ~1 week from first contact to start
How to Apply
Send your GitHub (or relevant work), one sentence about your most interesting project, and engagement preference (contract / full-time / open to either).