United States Remote (Country) Employment

EX Squared is hiring a Sr. Security Engineer (Penetration Testing) (Remote - US)

About the Role

Jobgether is looking for a Senior Security Engineer (Penetration Testing) to advance the security of digital assets, smart contracts, and distributed ledger platforms. In this remote role, you will apply your expertise in application security and penetration testing to help secure critical systems and ecosystems.

What You'll Do

  • Conduct penetration tests on web, mobile, thick client applications, and browser extensions.
  • Perform internal and external network security assessments and cloud security reviews.
  • Execute source code reviews across multiple programming languages with a focus on secure coding practices.
  • Develop detailed reports for technical and non-technical audiences, summarizing vulnerabilities and mitigation strategies.
  • Research, design, and implement innovative penetration testing techniques, tools, and methodologies.
  • Contribute to the security community through tools, presentations, blog posts, and shared knowledge.
  • Collaborate with internal teams and clients to provide security guidance and improve security posture.

What We're Looking For

  • Minimum 4 years of professional experience in application security, penetration testing, or related fields.
  • Strong understanding of web, mobile, and cloud application security, including AWS, Azure, and GCP platforms.
  • Proficiency in source code review for multiple languages, especially JavaScript and TypeScript.
  • Experience with scripting and automation using Python, Bash, or similar languages.
  • Solid knowledge of cryptography, secure coding principles, and threat modeling.
  • Strong verbal and written communication skills for conveying technical findings to varied audiences.
  • BS/MS/PhD in Computer Science, Information Security, or related discipline.

Nice to Have

  • Experience with blockchain security, smart contract auditing, crypto exchanges, wallets, or decentralized applications.
  • Familiarity with browser extension architecture and associated security risks.
  • Active participation in the security community, including bug bounty programs or security conferences.
  • Security certifications such as OSCP, OSWE, OSCE, or GWAPT.

Technical Stack

  • JavaScript
  • TypeScript
  • Python
  • Bash
  • AWS
  • Azure
  • GCP

Team & Environment

You will join a collaborative team of engineers, researchers, and auditors in a fast-paced, innovative environment focused on blockchain and cybersecurity.

Benefits & Compensation

  • Compensation: $100,000 - $180,000/year
  • Comprehensive medical, vision, and dental insurance.
  • 401(k) plan with company matching, life insurance, and HSA/FSA options.
  • Flexible paid time off and holidays.
  • Opportunities for professional development, research, and contributions to the security community.

Work Mode

This is a remote position open to candidates based in the United States.

Jobgether is an equal opportunity employer.

Required Skills
Penetration TestingJavaScriptTypeScriptPythonBashAWSAzureGCPSecurity AssessmentsThreat ModelingVulnerability ManagementIncident ResponseCloud SecuritySecurity ToolingScripting
Relocating to Thailand?

Visa and work permit handled by experts

SVBL manages your entire visa process — from application to approval. Work permits, extensions, and compliance all covered. One partner for legal, immigration, and settling in.

Work permit processing
Visa extensions & renewals
Immigration compliance
Banking & housing guidance
Get free consultation
Free initial consultation
About company
EX Squared

Technology company focused on IT and software solutions

Visit website
Job Details
Category security
Posted 5 months ago