Senior Security Engineer - Product Security
Job Description
Key Skills Required
Master these to land this role
Want to know if you're a match for this job?
About the Role
We are hiring a Senior Security Engineer - Product Security to own how we ship secure products at Ondo. You will be a security partner for our product engineering teams, driving threat modeling, owning secure code reviews for new products or feature expansions, maintaining and tuning AppSec tooling, and improving the existing SSDLC. You can expect to take ownership of the bug bounty program, new feature to existing product reviews, and similar broad ownership of critical functions paired to a dedicated ProdSec lead. An AI-native approach is welcome, paired with AI-driven approaches should expect to be justified by describing how doing so enables risk outcomes.
This is a hands-on IC role. You will read code, run threat models, review architecture proposals, own tooling, and push engineering teams to build products that are secure by default. You partner closely with adjacent security function like AppSec, Infrasec, and SecOps.
What You’ll Do
- Drive threat modeling for new features, integrations, and architectural changes across the product surface. Push threat models past templates into decisions that engineering teams actually implement.
- Own secure code review for high-risk changes — authentication, session management, cryptographic paths, wallet and signing flows, RPC and third-party integrations, permission and consent surfaces.
- Expand the AppSec tooling stack and treat “reducing false positives” as a first-class deliverable. AI-native integrations are welcome.
- Design and evolve our secure SDLC: where security fits in the dev workflow, what triggers a review, what a lightweight security sign-off looks like versus a full one, and how do we validate controls.
- Run our responsible disclosure and bug bounty program. Set scope, triage inbound reports, decide payouts, and drive findings to closure with engineering.
- Support and own appropriate scope for the intake and closure of findings from external audits and pentests — coordinate with audit vendors (Coinspect, Cantina, NCC Group, and others), organize findings into our internal risk register, and drive remediation with engineering owners.
- Partner with engineering leads to align on secure-by-default patterns - libraries, templates, sensible defaults, and paved-road implementations of anything security-relevant.
- Threat model blockchain-integrated components like wallet flows, RPC integrations, signing infrastructure, on-chain admin actions triggered from off-chain systems in partnership with engineers who own the on-chain code.
- Contribute to hiring, mentoring, and pushing the technical bar on the Security team.
What We’re Looking For
- 5+ years in Product Security or Application Security, including senior IC time at a fast-moving product company.
- Deep secure code review skills in at least one modern stack (TypeScript / JavaScript, Python, or Go). Ability to move across stacks at the level required to threat model.
- Strong threat modeling skills, appropriate to experience - you can drive a real threat model with an engineering team, not just fill in a template. In practice, we look for core understanding of industry-relevant TTPs and IoCs and strong intuitions on how to apply those lessons learned to our products.
- Practical experience owning or majorly contributing to an AppSec tooling program. You have shipped rules, tuned noise, and measured impact.
- Comfortable running or building a bug bounty / responsible disclosure program end-to-end assuming properly resourced to do so.
- Strong working knowledge of modern web and API security - session and auth flows, OAuth and OIDC, browser security model, common web/API vulnerability classes, and their less-common variants.
- Comfortable reading Terraform, cloud IAM policies, and CI/CD configuration well enough to reason about how a product vulnerability crosses into an infra risk.
- Strong engineering partnership skills - you engage constructively, understand the “why” before proposing risk controls, you know when to accept risk, and you write things down.
- Willing to grow into blockchain-adjacent product security on the job, including the specific attack surface introduced by wallet, signing, and on-chain-integration code.
Blockchain Exposure Note
- This role firmly lives in Web2 prodsec. But, it also requires someone who understands what “Web2 vs Web3” terminology means. In other words, how our products interact with blockchains creates unique threat models that all product security teammates must grasp. At a minimum, by Day 1 you should have strong intuitions about how blockchains will make your prodsec experience unique, you should grasp the common terminologies, and you should be able to discuss with colleagues several incident post-mortems that demonstrate how Web2 compromises lead to Web3 funds losses.
- You do not need to be an expert in smart contract auditing, blockchain security architectures, or decentralized consensus-driven risk controls.
Nice to Have
- Prior work at a crypto, fintech, or other company where products handle high-value or irreversible actions.
- Familiarity with wallet, signing, or key-management flows.
- Reading-level familiarity with Solidity or Rust, target: when ProdSec intersects with smart contracts or other on-chain applications, you can parse what the code is likely doing, and work with blockchain security subject matter experts from there.
- Bug bounty history - reports, CVEs, or published write-ups.
- Familiarity with browser-extension security, mobile app security, or account-abstraction wallet designs.
- Public output - talks, blog posts, open-source tools, CVEs.
How We Work
The Security team values a high trust team environment where respectful candor can thrive. We expect senior engineers to have an opinionated take on how to accomplish a task, accept feedback from the team and other external stakeholders and return it in kind, and to always assume positive intent. Professionalism, ethics, and enabling stakeholders towards common goals are important always.
How would you rate this job post?
See what other professionals think about this role.
Similar Opportunities
More Openings at Ondo Finance
Explore Top Companies in this Space
Alt
Financial Services / FinTech / Alternative Assets
SewerAI
AI-Powered Wastewater Infrastructure & GovTech SaaS / Computer Vision Utility Inspection / Cloud-Native Asset Management & Capital Planning / Civil Engineering Informatics
Axonius
Cyber Security / Cyber Asset Attack Surface Management (CAASM) / SaaS Management / B2B Enterprise SaaS
Hudu
IT Documentation / MSP Software / Knowledge Management / Asset Discovery B2B SaaS
Ondo Finance
View Company ProfileOndo Finance (operating under ondo.finance, legally Ondo Finance, Inc.) is the premier, enterprise-grade institutional real-world asset (RWA) tokenization pioneer, decentralized investment banking platform, and cross-chain liquidity orchestration powerhouse engineered to act as the definitive, high-velocity bridge transforming traditional financial instruments into highly composable, on-chain digital assets for global investors. Founded in 2021 by former Goldman Sachs digital asset technologists Nathan Allman and Pinku Surana, the enterprise completely eliminates the severe systemic friction of traditional finance and legacy capital markets—characterized by fragmented international settlement systems, geographic market silos, and restricted 9-to-5 banking operating rails—by deploying institutional-grade compliance wrappers around public blockchain smart contracts. Moving far beyond speculative or purely synthetic DeFi primitives, Ondo Finance natively unifies multi-chain tokenized US Treasuries (such as OUSG), yield-bearing alternative stablecoin notes (USDY), and 24/7 cross-border tokenized public equities or ETFs via its advanced Ondo Global Markets framework into a single high-availability capital ecosystem. Commanding a dominant share of the global on-chain treasury market with over $3 billion in Total Value Locked (TVL) across its product suite, the platform is backed by deep strategic alliances with institutional infrastructure heavyweights, utilizing BlackRock's tokenized BUIDL fund for instantaneous liquidity backstops, alongside multi-bank ledger tests coordinated with J.P. Morgan's Kinexys, Mastercard, and Ripple. The high-growth institutional platform has secured more than $24 million in tier-one venture funding led by Founders Fund, Tiger Global Management, and Pantera Capital, alongside foundational acquisitions like Oasis Pro and Strangelove to integrate SEC-aligned broker-dealer, Alternative Trading System (ATS), and native Cosmos interoperability architectures. Under the hood, its technology framework utilizes advanced cross-chain asset bridges, KYC/AML embedded multi-signature smart contracts, daily cryptographic proof-of-reserves reporting, and strict compliance structures aligned with the U.S. Investment Company Act of 1940 to guarantee absolute transactional correctness and deterministic processing state. Following a planned executive transition under President and CEO Ian De Bode, the firm continues its rapid global footprint expansion via dual hubs in New York and Hong Kong. What sets Ondo Finance apart is its uncompromising dedication to replacing volatile, low-yield native crypto speculation with regulatory-compliant, low-risk sovereign and corporate yield instruments; by bridging the gap between multi-trillion-dollar relational Wall Street book-entry systems and decentralized programmable liquidity pools, the corporation remains the definitive institutional cornerstone of modern on-chain asset management and worldwide real-world asset transformation.
Safety First
- Never pay for a job application.
- Do not share sensitive bank info.
- Verify the client before starting work.

