Senior Application Security Engineer at Moonpay · Web3Vacancy
Jobs Companies Talent Pool For recruiters Blog About Contact
Find Talent Post a Vacancy
2,400+ jobs from 680+ companies · Updated daily

Web3 Jobs & Crypto Jobs Where crypto teams hire. Where builders get found.

The #1 crypto-native job board for web3 jobs, crypto jobs & blockchain vacancies. Every role in the ecosystem — dev, design, marketing & more. Remote-first at top protocols, DAOs & companies.

Analysing Your CV...
Extracting your experience, skills, and details...
Web3 candidate
Web3 candidate
Web3 candidate
Web3 candidate
Web3 candidate
5,000+ web3 builders · 680+ companies hiring
Hiring in web3?
Post a vacancy. Reach the largest crypto-native talent pool — live in 24h.
Browse Talent Pool →
5,000+ vetted builders · open to work
Rather search yourself?
Browse the talent pool — filter crypto-native candidates and reach out direct.
Web3 talent
Web3 talent
Web3 talent
Web3 talent
Web3 talent
500+Open Jobs
680+Companies
$180kAvg Salary
94%Remote Roles
Category
Role Type

Latest Crypto Job Vacancies

10 jobs found

Senior Application Security Engineer

Remote
$90,000–$150,000
Join Talent Pool
About this role

Join MoonPay as a Senior Application Security Engineer to enhance security practices and protect digital currency transactions. Work remotely while collaborating with engineering teams to embed security throughout the software development lifecycle.

Description

Hi, we’re MoonPay. We’re here to onboard the world to the decentralized economy by making digital money move as universally and effortlessly as the internet.

Because crypto, stablecoins and blockchain aren’t just technologies. They’re tools for global financial empowerment. They give people and businesses more control over their money, their digital assets, and their future, opening access to legacy financial systems that have been out of reach for many.

MoonPay is a unified payments platform for digital currency. We make it easy for anyone, anywhere, to buy, sell, swap and pay in digital currencies as easy as sending an email. That simplicity is intentional, our focus is reducing complexity so people can participate confidently, without needing to be crypto experts. We power the entire flow between fiat and crypto end to end, with compliance, identity checks, fraud prevention, and settlement all built in. This end-to-end approach reflects how we work internally: with accountability, rigor, and trust built into everything we ship.

Trusted by over 30 million customers and over 500 ecosystem partners, our secure, enterprise-grade platform is driving mainstream crypto adoption worldwide. Behind those numbers are millions of real people and organizations relying on MoonPay every day.

We collaborate with innovative brands and projects to build secure, scalable solutions for a blockchain-powered future. This is an opportunity to help shape systems, not just scale them. And we’re committed to doing it right. Fully licensed in the U.S. and regulated across the UK, EU, Canada, and Australia, because trust and compliance are non-negotiable.

Responsibilities
  • Conduct threat modelling reviews of Technical Design Documents (TDDs) for new and existing features, providing clear, actionable security recommendations early in the design process.
  • Perform and support application security assessments, including penetration testing, vulnerability assessments, and proof-of-concept (PoC) development where appropriate.
  • Investigate, triage, and respond to Bug Bounty program submissions, validating findings and working with engineering teams to drive timely remediation.
  • Own and continuously improve application-layer protections, including managing and tuning Cloudflare WAF and related security controls.
  • Partner closely with engineering teams to embed security best practices throughout the SDLC, from design and development through deployment and maintenance.
  • Research and track emerging threats and vulnerabilities, translating findings into practical mitigation strategies relevant to our technology stack.
  • Develop and deliver security guidance, training, and awareness for engineering teams to raise the overall security maturity of the organization.
  • Contribute to the creation, maintenance, and evolution of security standards, processes, and documentation.
  • Participate in and eventually lead incident response activities, supporting investigation, containment, remediation, and post-incident improvements.
Requirements
  • You have developed a breadth of experience across multiple security domains, including web and mobile application security, infrastructure and cloud security, and can connect these areas to drive a holistic security approach.
  • You have hands-on experience performing white-box, source code-assisted web and mobile application penetration testing, from vulnerability discovery through triage and exploitation.
  • You have the ability to read, understand, and review source code to identify security issues, with ideally, a particular focus on JavaScript and TypeScript codebases.
  • You have a strong understanding of Threat Modelling principles and their practical application to the secure software development lifecycle (SDLC).
  • You have experience working with web application firewalls to help protect applications, assess coverage, and support tuning rules to mitigate common attack patterns.
  • You have experience embedding application security practices into CI/CD pipelines, enabling early detection of vulnerabilities and close collaboration with engineering teams throughout the development lifecycle.
  • You have collaborated closely with engineering teams to clearly communicate security findings, explain vulnerabilities, attack paths, and mitigations, and support the implementation of effective fixes for both technical and non-technical audiences.
  • You are self-motivated, proactive, and take strong ownership of your work, operating effectively in a remote environment while maintaining a collaborative, team-focused mindset.
Conditions & Benefits
  • Competitive salary ranging from $90K to $150K.
  • Opportunity to work remotely.
  • Join a team dedicated to building secure, scalable solutions for a blockchain-powered future.
Job Details
Salary$90,000–$150,000
LocationRemote
AI Score★★★★★★★★☆☆ 8/10
PostedJun 17, 2026 (4d ago)
Tags & Skills
cryptosecuritytechSecurity Engineerremote
Tech Stack
application securitypenetration testingvulnerability assessmentscloud securityJavaScriptTypeScriptweb application firewalls
Don't just browse — get discovered
Drop your CV — AI builds your profile
Drag & drop or click · PDF only · 60 seconds
Upload CV
3-5d avg. to first message · 320+ hires made
No applications — teams find and message you directly
★★★★★Alex K. @ Aave

3 DeFi teams messaged me in 5 days

★★★★★Sarah M. @ Arbitrum

AI profile matched me perfectly

★★★★★James L. @ OpenZeppelin

2 interviews in my first week

★★★★★Maria V. @ Chainlink

Hired in 9 days, no cold apps

★★★★★Tom W. @ Polygon

Best web3 board, period

★★★★★Alex K. @ Aave

3 DeFi teams messaged me in 5 days

★★★★★Sarah M. @ Arbitrum

AI profile matched me perfectly

★★★★★James L. @ OpenZeppelin

2 interviews in my first week

★★★★★Maria V. @ Chainlink

Hired in 9 days, no cold apps

★★★★★Tom W. @ Polygon

Best web3 board, period

★★★★★David R. @ Solana

CV to offer in 11 days

★★★★★Nina T. @ MakerDAO

DAO found me, not the other way

★★★★★Chris P. @ Uniswap

Passive search actually works here

★★★★★Lena K. @ dYdX

Got 5 messages in first week

★★★★★Omar S. @ Optimism

Only board I recommend now

★★★★★David R. @ Solana

CV to offer in 11 days

★★★★★Nina T. @ MakerDAO

DAO found me, not the other way

★★★★★Chris P. @ Uniswap

Passive search actually works here

★★★★★Lena K. @ dYdX

Got 5 messages in first week

★★★★★Omar S. @ Optimism

Only board I recommend now

"Best talent pool in web3. We filled 3 senior Solidity roles in under 2 weeks — candidates were pre-vetted and ready."
Jessica H. Head of Talent · Aave
"We stopped posting on LinkedIn. Web3Vacancy talent pool is where the real crypto-native builders are."
Daniel M. VP Engineering · Arbitrum

Similar Web3 Jobs

Browse Crypto Job Vacancies

The #1 Web3 Job Board for Crypto Jobs & Blockchain Careers

Web3Vacancy is the leading web3 job board for blockchain developers, DeFi engineers, smart contract auditors, NFT product managers, DAO operators, ZK researchers, and Web3 growth leads. We aggregate 2,400+ remote-first crypto jobs from top protocols, decentralized exchanges, layer-2 networks, AI-blockchain startups, and Web3 studios worldwide. Whether you are hiring or looking for your next blockchain job, Web3Vacancy is the go-to job board for the decentralized economy.

Find web3 jobs across every skill level and specialization. Solidity developers, Rust engineers, Move programmers, ZK circuit engineers, tokenomics designers, crypto legal counsel, Web3 community managers, and blockchain data analysts all find their next role here. New crypto job listings are added daily across Ethereum, Solana, Polygon, Arbitrum, Base, Cosmos, Sui, Aptos, and every emerging blockchain ecosystem.

Looking to start a web3 career? Explore our guides on web3 salaries, blockchain interview questions, and the top web3 companies hiring in 2026. New to blockchain? Start with our What Is Web3 guide and learn web3 development from scratch. Employers can post a web3 job or browse our web3 talent pool to hire blockchain developers directly.