🚀 The Opportunity
Ondo Finance is bridging Wall Street and DeFi, pioneering institutional-grade tokenized assets (US Treasuries, RWAs) with $100M+ AUM. Backed by Founders Fund, Pantera, and Coinbase Ventures, we’re scaling secure infrastructure for the future of finance.
As Staff Security Engineer, you’ll own security for systems managing nine-figure digital assets, blending TradFi rigor with DeFi innovation.
This isn’t just smart contract audits—it’s fortifying the plumbing of tokenized finance.
🎯 Key Responsibilities
1. Security Architecture
- Lead reviews for smart contracts, MPC/key management, and cross-chain bridges.
- Design controls merging SEC-grade compliance with DeFi’s permissionless ethos.
2. Threat Defense
- Audit code (Solidity/Rust/Move) and harden infra (CI/CD, node ops).
- Run incident response for exploits, governance attacks, or custody breaches.
3. Industry Leadership
- Set standards for RWA security (think: BlackRock-grade + blockchain-native).
- Publish research on novel threats (e.g., oracle manipulation in tokenized bonds).
🔍 Who We’re Looking For
✅ Must-Have Skills:
- 5+ years in security engineering, with 2+ in blockchain (DeFi protocols, custody solutions).
- Deep smart contract expertise: Can break (and fix) reentrancy, MEV, and slippage exploits.
- Cryptography chops: MPC, ZKP, or multisig design patterns.
- Scripting fluency: Automate security tests in Python/Go.
✅ Nice-to-Haves:
- TradFi/FinTech background: SEC/FINRA compliance, SOC2, or HSMs.
- Cross-chain mastery: Bridge security, wormhole attacks, IBC.
- Formal verification (e.g., Certora, Echidna).
🌟 Why Join Ondo?
- Secure the future: Protect infrastructure moving billions in RWAs onchain.
- Elite team: Ex-Goldman Sachs, BlackRock, Uniswap, and SpaceX.
- Crypto-native comp: Salary + tokens/equity (your choice).
- Remote-first: Flexible PTO, full medical/dental/vision.
Interview Process
- Technical Deep Dive (90min): Simulate a DeFi exploit post-mortem.
- Architecture Review (60min): Secure a tokenized bond issuance flow.
- Culture Fit (45min): Align with our TradFi-meets-DeFi DNA.
Stand Out By:
- Share a write-up on a novel DeFi/RWA attack vector.
- Audit a snippet of Ondo’s public code (e.g., OMMF).
- Explain how you’d harden a cross-chain RWA bridge.
Key Upgrades vs. Original:
- Sharper positioning: “SEC-grade + DeFi-native” > generic “security reviews.”
- Added urgency: “Nine-figure assets” underscores stakes.
- Trending hooks: #OndoUSDY, #OEV for algo traction.
- Talent filters: “Can break reentrancy” tests real expertise.
Ready to secure the institutional onchain future? 🛡️