MulaJob

Product Security Engineer

Coinbase · Remote - Canada

Engineering🌍 Remote🇨🇦 CanadaPosted 2026-08-28
Apply on GreenhouseLet AI apply for me

You apply on Coinbase's own site — MulaJob never submits anything for you without your say-so.

div class= content-intro p Ready to do the most impactful work of your career? At a href= https://www.coinbase.com/?utm_campaign=mt_o_m_w_m_m__coi_0_jd-onchain utm_source=coinbase Coinbase /a , we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for good enough, you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” a href= https://www.coinbase.com/careers learn more about working at Coinbase /a . /p /div p As an Offensive Security Engineer on the Application Security team within Security, you'll pioneer how Coinbase uses frontier AI models to scale vulnerability discovery, red team AI systems, and automate security workflows. This role bridges traditional penetration testing with next-generation AI-augmented offensive security, directly accelerating our ability to protect products and customers. You'll own the development of AI-driven security tooling and collaborate across Vulnerability Management, Offensive Security, and Incident Response to fundamentally shift how we operate. /p

p strong What you'll do: /strong /p

ul

li Build, deploy, and maintain custom security scanners that leverage frontier models to detect vulnerabilities at scale across Coinbase's product surface. /li

li Lead red teaming efforts against internal AI systems, including jailbreak testing, prompt injection analysis, and tool abuse simulation. /li

li Develop AI-driven automation for vulnerability triage, validation, and remediation workflows to accelerate the bug bounty and vulnerability response pipelines. /li

li Partner with engineering teams to prioritize, remediate, and verify fixes for critical vulnerabilities discovered through AI-augmented and manual testing. /li

li Mentor junior security engineers on integrating AI into offensive security workflows to scale team capabilities. /li

/ul

p strong Required Skills and Experience: /strong /p

ul

li 3+ years of experience in application security, penetration testing, or offensive security with demonstrated ability to build custom security tooling. /li

li Hands-on experience using LLMs or frontier models to automate security tasks, scale vulnerability research, or build security scanners. /li

li Demonstrated experience red teaming AI-based systems (prompt injection, jailbreak testing, tool abuse). /li

li Deep understanding of common vulnerability classes (OWASP Top 10, SANS Top 25) and proven track record identifying and exploiting them in production environments. /li

li Proficiency in at least one programming language (Python, Go, or similar) with experience writing production-grade security tooling. /li

li Utilizes generative AI responsibly, maintaining human oversight to deliver business-ready outputs and drive measurable improvements in workflow efficiency, cost, and quality. /li

/ul div class= content-pay-transparency div class= pay-input div class= description p strong Pay Transparency Notice: /strong The target annual strong base /strong salary for this position can range as detailed below. Total compensation may strong /strong also include equity and bonus eligibility and benefits (including medical, dental, and vision). /p /div div class= title Annual base salary range (excluding equity and bonus): /div div class= pay-range span $154,000 /span span class= divider /span span $154,000 CAD /span /div /div /div div class= content-conclusion ul

li style= font-style: italic; font-size: 8pt; strong em Application Limit: /em /strong Candidates may submit a maximum of 3 applications within a 6-month period. /li

li style= font-style: italic; font-size: 8pt; span style= font-size: 8pt; em strong Equal Opportunity Employer: /strong Coinbase is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or genetic information. Applicants with criminal histories will be considered consistent with applicable federal, state, and local laws. /em /span /li

li style= font-style: italic; font-size: 8pt; span style= font-size: 8pt; em strong US Applicants: /strong View a href= https://www.dol.gov/sites/dolgov/files/WHD/legacy/files/eppac.pdf Employee Rights /a , a href= https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12.pdf Know Your Rights /a , and a href= https://static-assets.coinbase.com/e-verify.pdf E-Verify /a Notice of Participation. /em /span /li

li style= font-style: italic; font-size: 8pt; span style= font-size: 8pt; em strong Accommodations: /strong If you are an individual with a disability who needs a reasonable accommodation, email us your request and contact info at accommodations[at]coinbase.com. Need screen reading technology? a href= https://chromewebstore.google.com/detail/screen-reader/kgejglhpjiefppelpmljglcjbhoiplfn Click here /a to download a free compatible screen reader and view the a href= http://www.chromevox.com/tutorial/ strong /strong tutorial /a . /em /span /li

li style= font-style: italic; font-size: 8pt; span style= font-size: 8pt; em strong Data Privacy Arbitration: /strong By submitting your application, you agree to our a href= https://www.coinbase.com/legal/applicant_privacy_notice Candidate Privacy Notice /a . US applicants: By submitting your application, you agree to a href= https://www.coinbase.com/legal/application-arbitration-agreement Arbitration of Disputes /a . br /em /span /li

/ul

div id= fortidlp-input-element-parent /div /div

More Engineering roles