Ether.fi

Security Engineer

Ether.fi πŸ“ Colorado, USA 🏒 On-site Posted Sep 2, 2026 via Ether.fi careers
full-time πŸ“‚ Technology & IT 🏒 On-site 🏭 Finance & Banking

✨ Job Highlights

  • β˜…On-site: Colorado or New York
  • β˜…Full-time role in technology & it
  • β˜…Experience asked for: 5+ years
  • β˜…Apply directly on Ether.fi's careers site
  • β˜…Posted September 2, 2026

Full Job Description

Security Engineer job at Ether.fi in Colorado

Ether.fi has an opening for a Security Engineer, based in Colorado or New York. It is a full-time position. The employer does not list pay for this job, so raise it with the recruiter at the first call.

Ether.fi describes the job as follows.

About the Role

We're looking for a Security Engineer who is equally at home hardening a CI/CD pipeline, reviewing a change to the authentication system on the backend, and triaging a bug bounty submission before lunch.This is a hands-on, builder-first role - not a governance checkbox. You'll own security operations end-to-end, embedded directly into the engineering team and working closely with infrastructure, protocol and platform.

If you treat threat modeling as a design conversation and not a compliance exercise, you're our kind of person.You should only apply for this role if you are ready to come into the office every day and work in person with our team!

What You'll Do

Security Operations

  • Own day-to-day security operations: monitoring, alerting, triage, and response

  • Manage and monitor endpoint security via an EDR system - tune detections, investigate alerts, and drive incidents to resolution

  • Lead identity lifecycle management, including employee onboarding and off boarding (access provisioning, key rotation, deprovisioning)

  • Bug Bounty & Vulnerability Management

  • Be the primary owner of our ImmuneFi program - triaging, reproducing, and responding to incoming submissions daily

  • Prioritize and track vulnerabilities through to remediation in close collaboration with protocol and engineering teams

  • Develop internal tooling and processes to make the bounty workflow faster and more consistent

  • DevSecOps & Pipeline Hardening

  • Audit and harden CI/CD pipelines - secrets management, supply chain integrity, SAST/DAST integration, build provenance

  • Own dependency security: identify and remediate vulnerable packages across repositories (yes, including the npm dependency hell)

  • Establish and enforce security standards across the SDLC

  • Infrastructure Security

  • Partner with the infrastructure team to review and harden cloud environments (access controls, network segmentation, least privilege, logging)

  • Contribute to threat modeling for new systems and architectural changes

  • Drive implementation of security tooling across the stack

  • Vendor & External Partner Management

  • Own relationships with external security vendors and service providers - holding them accountable toSLAs, managing scope, and ensuring findings are actioned

  • Evaluate and onboard new security tooling as the team and threat landscape evolve

  • What We're Looking For

  • 5+ years of experience in software and security engineering, with meaningful time in a DevSecOps or security operations context

  • Strong software engineering fundamentals - you're a builder who writes code, not just policy

  • Hands-on experience hardening CI/CD pipelines (GitHub Actions, CircleCI, or similar) and cloud infrastructure (AWS, GCP, or equivalent)

  • Proficiency with endpoint security tooling (CrowdStrike or equivalent EDR)

  • Comfort owning identity and access management processes, including onboarding/offboarding workflows

  • Strong communication skills - you can write a clear triage report, give direct feedback to a developer and explain risk to a non-technical stakeholder

  • Nice to Have

  • You were a traditional software engineer before specializing in security

  • Prior experience at a DeFi protocol, crypto exchange, or blockchain infrastructure company

  • CTF/security competition background

  • Contributions to open-source security tooling

  • What Success Looks Like

    In your first 90 days, you've mapped our attack surface, established a daily rhythm on ImmuneFi, and shipped at least a few meaningful PRs across the full stack. Within six months, you've built enough trust in the team that engineers come to you before shipping sensitive PRs, not after.

    Common questions

    Does Ether.fi list a salary for this job?

    Ether.fi has not included pay in the posting.

    Is the Security Engineer position remote?

    No, it is an on-site job in Colorado or New York.

    What experience do I need for this Security Engineer job?

    The posting mentions at least 5 years of relevant experience and skills such as AWS, GCP, CI/CD and Onboarding. Read the full description above for the complete list.

    How do I apply for the Security Engineer job?

    Use the apply button on this page. It takes you to Ether.fi's own application form, so your CV goes directly to their hiring team.

    When was this job posted?

    Ether.fi published the role on September 2, 2026. We check the employer's job board every day and take this page down when the role closes, so if you can read it, the job was still listed at our last check.

    Source: Ether.fi careers page (jobs.ashbyhq.com). Applications go straight to the employer. We check the listing daily and remove it once it closes.

    Required Skills

    AWS GCP CI/CD Onboarding Supply Chain

    🏒 About Ether.fi

    Ether.fi publishes its open roles on its own careers board. This page collects the Ether.fi jobs that are live right now. Each listing links to Ether.fi's application form, and we remove a listing once the employer closes it.

    Industry: Finance & Banking

    View Company Profile β†’
    Negotiable

    Yearly salary

    Apply on Company Site β†—
    🏒 Company Ether.fi
    πŸ“ Location Colorado, USA
    πŸ’Ό Job Type full-time
    🌐 Work Mode 🏒 On-site
    🏭 Industry Finance & Banking
    πŸ—“ Posted Date Sep 2, 2026
    πŸ”— Via Ether.fi careers
    🎯 Experience 5+ years
    πŸ“… Deadline Dec 16, 2034

    About the Company

    Ether.fi publishes its open roles on its own careers board. This page collects the Ether.fi jobs that are live right…

    View Company β†’