Back to Careers
EngineeringOpen
Smart Contract Security Auditor
Lead the security review of smart contracts and on-chain infrastructure as SBL Nova extends securities-based lending into tokenized collateral and on-chain settlement rails.
Remote (US)Full-time$150K – $210KSenior
About The Company
SBL Nova is the technology leader in securities-based lending (SBL) solutions, monitoring over $50B in collateral daily on a cloud-native, SOC 2 audited platform. As we expand into tokenized collateral, on-chain settlement, and digital asset custody integrations, we're building a dedicated blockchain security function to make sure every line of Solidity we ship — or rely on — is bulletproof.
About The Role
Lead the security review of smart contracts and on-chain infrastructure as SBL Nova extends securities-based lending into tokenized collateral and on-chain settlement rails.
Qualifications
- 5+ years of software engineering experience, with 2+ years focused specifically on smart contract security or auditing
- Deep understanding of Solidity and the EVM, including gas mechanics, storage layout, and bytecode-level behavior
- Proven track record identifying vulnerabilities such as reentrancy, integer overflow/underflow, access control flaws, oracle manipulation, and front-running/MEV risks
- Hands-on experience with static/dynamic analysis and testing tools (e.g. Slither, Mythril, Echidna, Foundry, Hardhat)
- Ability to write clear, actionable audit reports that both engineers and non-technical stakeholders can act on
- Strong understanding of token standards (ERC-20, ERC-721, ERC-1155) and common DeFi primitives (AMMs, lending pools, bridges, vaults)
- Comfortable working independently and owning security review from scoping through remediation verification
Bonus Qualifications
- Public audit contributions, CTF rankings, or bug bounty history (Code4rena, Sherlock, Immunefi, etc.)
- Experience auditing tokenized real-world assets (RWA), collateral, or lending/borrowing protocols
- Familiarity with formal verification tools (Certora, Foundry invariant testing)
- Experience in regulated financial services or working alongside compliance/audit teams
- Rust experience for non-EVM chains (Solana, Cosmos SDK) is a plus
Responsibilities
- Perform end-to-end security audits of internal smart contracts and third-party protocols we integrate with, from threat modeling through remediation sign-off
- Review architecture and code for tokenized collateral, on-chain settlement, and custody-adjacent smart contract systems before they reach production
- Build and maintain internal tooling, checklists, and automated test suites to continuously monitor deployed contracts
- Translate on-chain risk (key custody, validator behavior, token existence/ownership, contract dependencies) into audit-ready findings our compliance and engineering teams can act on
- Partner with engineering to design secure-by-default smart contract patterns and review pull requests touching on-chain logic
- Stay current on emerging attack vectors, exploits, and best practices across the EVM and adjacent ecosystems, and brief the team on relevant findings
- Support incident response and post-mortems in the rare event a vulnerability is identified in production
Benefits
- Competitive salary ($150K–$210K) plus meaningful equity participation in a growth-stage fintech company
- 100% remote within the US — work from anywhere, no relocation required
- Comprehensive medical, dental, and vision coverage with 401(k) match
- Unlimited PTO and a genuine no-burnout culture — we ship fast but don't expect nights and weekends
- Annual learning & conference budget (ETHGlobal, DEF CON, audit certifications, etc.)
- Latest hardware of your choice plus a home office stipend
- Direct impact: your findings gate what ships into a platform monitoring billions in collateral
- Flat, low-bureaucracy team — you'll work directly with founders and senior engineering, not layers of process