Used Tools & Technologies
Not specified
Required Skills & Competences ?
Pentesting @ 3 Security @ 3 Go @ 3 Ruby @ 3 Python @ 3 Communication @ 3 JavaScript @ 3 OWASP @ 3 Web3 @ 3Details
Ready to be pushed beyond what you think you’re capable of?
At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform — and with it, the future global financial system.
To achieve our mission, we’re seeking a very specific candidate. We want someone who is passionate about our mission and who believes in the power of crypto and blockchain technology to update the financial system. We want someone who is eager to leave their mark on the world, who relishes the pressure and privilege of working with high caliber colleagues, and who actively seeks feedback to keep leveling up. We want someone who will run towards, not away from, solving the company’s hardest problems.
Our work culture is intense and isn’t for everyone. But if you want to build the future alongside others who excel in their disciplines and expect the same from you, there’s no better place to be.
Responsibilities
- Conduct internal penetration testing engagements on web and mobile applications and services.
- Document and report findings from security assessments and pentests.
- Collaborate with engineering teams to prioritize and remediate known vulnerabilities.
- Participate in the triage and validation of bug bounty submissions.
- Contribute to the development of security tools and automation.
- Contribute to the development and improvement of security testing methodologies.
- Provide on-call support for product security incidents.
- Participate in red team activities to identify weaknesses in security controls, as well as network and application-level security boundaries.
Requirements
- A Bachelor’s degree in Computer Science, Computer Engineering, or a related field.
- Relevant security certifications (e.g., OSCP, GPEN).
- Experience in programming languages such as Go, JavaScript, Python or Ruby.
- Knowledge of common vulnerabilities (e.g., OWASP Top 10, SANS Top 25).
- Excellent communication skills to effectively communicate with researchers and internal teams.
- Ability to work independently and take ownership of deliverables.
Nice to Haves
- Experience performing red team activities of company products and services.
- Experience pentesting AI products and features.
- Experience in Web3 security, network security and/or cloud security.
Benefits
- Medical Plan, Dental and Vision Plan with generous employee contributions
- Health Savings Account with company contributions each pay period
- Disability and Life Insurance
- 401(k) plan with company match
- Wellness Stipend
- Mobile/Internet Reimbursement
- Connections Stipend
- Volunteer Time Off
- Fertility Counseling and Benefits
- Generous Time off/Leave Policy
- The option of getting paid in digital currency