Smart Contracts Auditor
We are looking for a Smart Contract Auditor to join our security team. You will audit DeFi protocols, identify critical vulnerabilities, and work directly with development teams to secure their code before deployment. This is not a "run Slither and generate a report" role—we need someone who thinks like an attacker, understands EVM internals, and can deliver clear, actionable findings.
What You'll Do
Conduct full-scope audits of Solidity smart contracts, including manual line-by-line review, automated scanning (Slither, Mythril), and fuzz testing (Foundry/Echidna)
Identify and exploit vulnerabilities such as reentrancy, oracle manipulation, access control flaws, economic attacks, and governance risks
Write Foundry-based Proofs of Concept (PoCs) demonstrating each critical finding with reproducible test cases
Produce detailed audit reports with clear severity classifications, exploit paths, and specific remediation recommendations
Collaborate with client dev teams during the remediation phase—explain findings, review fixes, and ensure vulnerabilities are properly addressed
Stay current with emerging attack vectors, EIPs, and DeFi primitives
What We're Looking For
Must-Have:
2+ years of experience in smart contract auditing or blockchain security engineering
Expert-level Solidity and deep understanding of the EVM (storage layout, opcodes, gas mechanics, proxy patterns)
Strong Foundry/Forge skills—you write fuzz tests and invariants as part of your audit workflow
DeFi domain expertise—lending protocols, AMMs, liquid staking, governance modules, tokenomics
Ability to write clear, concise reports that explain technical risks to both engineers and non-technical stakeholders
Upper-Intermediate English or higher—you'll communicate directly with international clients
Nice-to-Have:
Experience with formal verification (Certora, Halmos)
Track record on public audit contest platforms (Code4rena, Sherlock)
Knowledge of Rust/Cairo for non-EVM chains
CTF experience (Ethernaut, Damn Vulnerable DeFi)
What We Offer
Competitive salary (discussed privately) + performance bonuses for critical findings
Fully remote—work from anywhere within Ukraine or EU timezone
Flexible working hours—focus on results, not clock-watching
Professional development—budget for conferences, courses, certifications
Work on cutting-edge protocols—you'll see code before it hits mainnet
No micromanagement—you own your audit process from start to finish
How to Apply
Please submit:
Your CV and/or LinkedIn profile + Github account
Links to public audit reports, Code4rena/Sherlock profile, or bug bounty findings (anonymized if under NDA)