HimalayasHimalayas logo
BitMEXBI

Senior Offensive Security Engineer

BitMEX is a cryptocurrency exchange and derivative trading platform founded in 2014, offering a range of financial products for professional traders. It is owned and operated by HDR Global Trading Limited and is registered in Seychelles.

BitMEX

Employee count: 51-200

Hong Kong only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

About BitMEX

BitMEX stands as a globally leading exchange for crypto derivatives, offering traders a professional-grade trading platform. Since its inception in 2014, BitMEX has maintained an impeccable security record with “no coin lost, ever!”.

Our platform caters to cryptocurrency derivatives traders by providing low latency, deep liquidity, and maximum availability. Currently, BitMEX offers more than 100 derivatives contracts, 16 pairs for spot trading, and an easy covert function between 30+ different cryptocurrencies.

In 2015, BitMEX revolutionised the market by inventing the Perpetual Swap, which has since become the most widely traded crypto product. Demonstrating a commitment to transparency, since 2021, BitMEX has been among the first exchanges to regularly publish its on-chain Proof of Reserves and Proof of Liabilities, ensuring that the funds available exceed the total client balances."

For more information on BitMEX, company initiatives and our products, please visit the BitMEX Blog or www.bitmex.com, and follow LinkedIn, Discord, Telegram and X.

Overview

This is an opportunity for an intermediate/senior level Offensive Security Professional to join our Product Security team. As an experienced researcher you will help maintain critical security systems within our architecture, as well as assisting the wider engineering and devops practices with their activities. In Product Security our mission is to continuously improve the security posture of BitMEX from the inside, and we are looking for someone capable and flexible who can work with our excellent staff on that mission!

A crypto trading exchange is a security environment that is fairly rare in the infosec industry: we regularly get attacked by nation-state APT groups, we have continuous attempts by everyone from script kiddies to our own users trying to find ways to illegitimately extract money from us, and we protect vast amounts of crypto. All at the same time having a software stack that requires extreme uptime, minimal latency, and absolute accuracy in how it takes and processes orders.

If you want to help protect an environment where the threats are very real and continuous, this is the job for you. We will check that you are not from the DPRK, be warned; it would not be the first (or second, or third) time.

Key Responsibilities

  • Manage our bug bounty program, reviewing reports, engaging with researchers and cooperating with software engineering to fix bugs
  • Reviewing the outcomes of external penetration tests, replicating issues and again, working with engineering to fix findings
  • Conducting internal penetration tests on our software and infrastructure stack
  • Red and purple team exercises to test our monitoring
  • Security research & threat Intelligence, working with security response
  • Application security & code reviews, internal training of engineers
  • Being part of incidents to help triage and investigate issues

Qualifications

  • 5+ Years in Information Security.
  • Proven expertise in offensive security either through certifications, recognition, or referees.
  • Strong communication skills and work ethic: contribute actively to the company and become ‘known’
  • Candidates with less experience will be considered for an Offensive Security Engineer position.

Nice to have

  • Experience with Kubernetes, Istio, Envoy and the AWS cloud platform would be useful. Advanced skills in these (and affiliated technologies) are a bonus but not required.
  • Experience with GitHub CI/CD / Actions and/or ArgoCD is a bonus but not required
  • Experience with derivatives and cryptocurrency is a bonus but not required.
  • Development expertise in Go is a bonus but not required

Why BitMEX?

BitMEX offers a dynamic environment that blends intense work, a vibrant culture, and diversity. We actively recruit across time zones to meet growing demands and attract top global talent.

We're seeking determined, responsible, and collaborative individuals to join us in building a leading cryptocurrency ecosystem. We value meticulousness, agility, and simplicity. As a 24/7 global exchange, we look for adaptable team players who can excel in a diverse, cross-market environment.

In addition, we offer an industry leading benefits package to our permanent employees. Here’s a peek into what we offer:

  • Work from home to help you find the perfect balance between work, family and personal life
  • 25 days of annual leave, on top of public holidays, as well as maternity, paternity and childcare leave… etc to accommodate your growing responsibilities
  • A top tier & comprehensive medical, dental and vision policy for you and your dependents
  • Professional development allowance to support your career advancement
  • Access to our annual wellness benefits to cultivate your physical and mental growth
  • Don’t forget the advantage of our Beyond BorderRemote Working policy, where you get to work away from your home country
  • Team building & offsite events to bring our global team closer
  • Life insurance coverage to provide a safety net for your family’s future

Does this sound like the type of working culture you can thrive in? Apply online now!

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Experience

5 years minimum

Location requirements

Hiring timezones

Hong Kong +/- 0 hours

About BitMEX

Learn more about BitMEX and their company culture.

View company profile

BitMEX, which stands for Bitcoin Mercantile Exchange, is a cryptocurrency exchange and derivative trading platform. It is owned and operated by HDR Global Trading Limited, which is registered in the Seychelles. Founded in 2014 by Arthur Hayes, Ben Delo, and Samuel Reed, BitMEX was established to provide a professional-grade Bitcoin derivatives trading platform. The company quickly became known as a preferred leveraged trading platform for Bitcoin traders. Innovation has been a key focus for BitMEX, aiming to offer users optimal trading opportunities. The platform caters to cryptocurrency derivatives traders by providing low latency, deep liquidity, and maximum availability.

BitMEX offers a variety of cryptocurrency-based financial products, including perpetual contracts, futures contracts, and options contracts. These products enable traders to speculate on the price movements of cryptocurrencies like Bitcoin and Ethereum without owning the underlying assets. In 2016, BitMEX introduced perpetual leveraged swap contracts on Bitcoin, allowing trading with up to 100x leverage and no expiry date, a product that became widely popular. The platform supports trading for over 100 derivatives products and also offers spot trading for numerous pairs and a conversion function for over 30 cryptocurrencies. Since its inception, BitMEX states it has maintained a strong security record with no customer funds lost due to intrusion or hacking. The company emphasizes its commitment to protecting client assets through a combination of cold and hot wallets, industry-strength cryptography key management, and rigorous operational security measures. BitMEX was also among the first exchanges to publish its Proof of Reserves and continues to provide regularly updated Proof of Reserves and Liabilities.

The company's headquarters are in Mahé, Seychelles. While registered in Seychelles, BitMEX has had significant operations and offices in other locations, including Hong Kong, and has served a global customer base. The platform is designed for professional and institutional traders, offering advanced trading features, a customizable trading interface, and robust security measures. BitMEX has also focused on transparency, being one of the initial exchanges to regularly publish its on-chain Proof of Reserves and Proof of Liabilities. Despite its technological advancements and market position, BitMEX has faced legal and regulatory challenges, including charges related to the U.S. Bank Secrecy Act for failing to implement adequate anti-money laundering (AML) and know-your-customer (KYC) programs. The company and its founders have faced significant fines and legal consequences as a result.

Employee benefits

Learn about the employee benefits and perks provided at BitMEX.

View benefits

Flexible time off

Flexible time off.

Home office set-up allowance

Home office set-up allowance.

Beyond Border Remote Working policy

Work away from your home country.

Team building & offsite events

Team building & offsite events to bring our global team closer.

View BitMEX's employee benefits
Claim this profileBitMEX logoBI

BitMEX

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

10 remote jobs at BitMEX

Explore the variety of open remote roles at BitMEX, offering flexible work options across multiple disciplines and skill levels.

View all jobs at BitMEX

Remote companies like BitMEX

Find your next opportunity by exploring profiles of companies that are similar to BitMEX. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan