Staff Platform Security Engineer at Phantom · Web3Vacancy
Jobs Companies Blog About Contact
Post a job
Analysing Your CV...
Extracting your experience, skills, and details...

Staff Platform Security Engineer

Remote
$200,000–$250,000
◆ 9/10 cryptosecurityweb3Security Engineer
Join Talent Pool
About this role

Join Phantom as a Staff Platform Security Engineer to enhance security across AWS and Kubernetes environments. Work in a fully remote team focused on building an AI-native security culture.

Description

Phantom is on a mission to connect the world to the freedom of open markets. Tens of millions of people all over the world use Phantom to access global markets that never close, including perpetuals, prediction markets, tokenized assets, stablecoins and memes. Phantom users are able to discover the markets that matter and the cultural moments that shape them, building conviction through real-time data and the verified performance of top traders. With self-custody and access to open networks at its core, Phantom lets them control their financial moves in the same app they use to safely store or spend money worldwide. Phantom has reached #1 in Google Play's finance category and consistently ranks in the top 50 apps across all categories. Phantom partners with many of the most trusted and influential names in finance like Hyperliquid, Stripe, Kalshi and Visa, to make the most popular and innovative financial products accessible to everyone. We are around 180 people, fully remote, backed by a $150M Series C investment from a16z, Sequoia Capital and Paradigm.

Responsibilities
  • AWS Security: Own and improve security across Phantom’s multi-account AWS environment, including IAM, Identity Center, networking, compute, storage, secrets, logging, and organization-level guardrails.
  • Kubernetes Security: Secure production Kubernetes environments running on Amazon EKS, including cluster configuration, workload identity, RBAC, admission controls, network boundaries, secrets, container security, and tenant isolation.
  • Identity and Access: Design least-privilege access models for engineers, services, and automation. Build scoped, auditable, and time-bound access paths for sensitive production systems.
  • Mission-Critical Systems: Protect the infrastructure supporting products and services that handle sensitive data and high-value operations.
  • Cloud Security Architecture: Lead security design for new infrastructure, platform services, and major architectural changes.
  • Infrastructure and Policy as Code: Build reusable security controls using tools such as Pulumi, Terraform, Kubernetes policy engines, and automated configuration validation.
  • CI/CD and Supply Chain Security: Harden build, deployment, and release systems, including GitHub Actions, workload federation, build runners, dependencies, artifacts, signing, provenance, and access to production environments.
  • Security Automation: Build tools that identify and remediate cloud and Kubernetes risks at scale. Apply AI-assisted workflows where they materially improve analysis, coverage, or response speed.
  • Cross-Functional Leadership: Partner closely with Infrastructure, SRE, Developer Experience, and product engineering teams. Establish practical platform-security standards and help teams adopt them.
Requirements
  • 7+ years of experience in platform security, cloud security, infrastructure security, security engineering, or a closely related engineering role.
  • Deep, hands-on experience securing production AWS environments. You understand IAM and resource policies, workload identity, network security, secrets management, logging, organization-level controls, and the ways these systems fail in practice.
  • Deep experience securing Kubernetes in production, preferably Amazon EKS, including RBAC, workload identity, admission policy, network policy, pod security, secrets, and cluster hardening.
  • Experience designing or securing mission-critical systems where compromise, excessive privilege, or loss of availability could have significant customer or business impact.
  • Strong understanding of identity, authorization, least privilege, isolation, and blast-radius reduction across both human and machine access.
  • Experience securing CI/CD and software supply chains, including GitHub Actions or similar systems, build runners, workload federation, artifacts, and production deployment paths.
  • Experience writing and reviewing infrastructure as code using Pulumi, Terraform, CloudFormation, or similar tools.
  • Ability to write production-quality code or automation in a language such as TypeScript, Python, Go, or Rust.
  • High agency and ownership. You can take an ambiguous platform-security problem from initial investigation through implementation and verified remediation.
  • Clear communication and a strong track record of partnering with infrastructure and engineering teams while maintaining a high security bar.
Conditions & Benefits
  • Competitive salary and equity
  • Eligibility to participate in the company’s performance bonus program
  • Comprehensive medical, dental, and vision insurance with 100% coverage
  • Stipend for your ideal remote setup
  • Flexible hours and a supportive remote environment
  • Unlimited vacation—take time when you need it
  • 401(k) retirement plan
  • Monthly wellness benefit
  • Weekly meal benefit
  • Global off-sites
Job Details
Salary$200,000–$250,000
LocationRemote
AI Score★★★★★★★★★☆ 9/10
PostedSep 16, 2026 (3d ago)
Tags & Skills
cryptosecurityweb3Security Engineerremote
Tech Stack
AWSKubernetesTerraformPulumiTypeScriptPythonGoRust
Join Talent Pool

Similar Web3 Jobs

Browse Crypto Job Vacancies

The #1 Web3 Job Board for Crypto Jobs & Blockchain Careers

Web3Vacancy is the leading web3 job board for blockchain developers, DeFi engineers, smart contract auditors, NFT product managers, DAO operators, ZK researchers, and Web3 growth leads. We aggregate 2,400+ remote-first crypto jobs from top protocols, decentralized exchanges, layer-2 networks, AI-blockchain startups, and Web3 studios worldwide. Whether you are hiring or looking for your next blockchain job, Web3Vacancy is the go-to job board for the decentralized economy.

Find web3 jobs across every skill level and specialization. Solidity developers, Rust engineers, Move programmers, ZK circuit engineers, tokenomics designers, crypto legal counsel, Web3 community managers, and blockchain data analysts all find their next role here. New crypto job listings are added daily across Ethereum, Solana, Polygon, Arbitrum, Base, Cosmos, Sui, Aptos, and every emerging blockchain ecosystem.

Looking to start a web3 career? Explore our guides on web3 salaries, blockchain interview questions, and the top web3 companies hiring in 2026. New to blockchain? Start with our What Is Web3 guide and learn web3 development from scratch. Employers can post a web3 job.