Staff Application Security Engineer

Staff Application Security Engineer

Full-Time No working from home possible
B

At a Glance

  • Tasks: Lead the design and implementation of our application security programme in a fast-paced crypto environment.
  • Company: Join Bitwise, a pioneering firm at the forefront of the crypto revolution.
  • Benefits: Enjoy unlimited PTO, competitive salary, and a supportive work culture with great perks.
  • Other info: Work in a dynamic team with excellent growth opportunities and a vibrant company culture.
  • Why this job: Be a key player in shaping application security for innovative crypto solutions.
  • Qualifications: Experience in application security and a passion for tech and crypto.

It’s rare that a new asset class is born. Nevertheless, we’re witnessing exactly that with the rise of crypto. Over just the last few years, since Bitwise was founded, crypto has evolved from an embryonic $50B market to a growing $3T+ juggernaut. This is an exciting moment for Bitwise as a firm. For eight years, we have established a track record of excellence managing a broad suite of index and active solutions across ETFs, separately managed accounts, private funds, institutional staking, and hedge fund strategies. This year, we crossed $15B in client assets and are growing quickly. Thousands of financial advisors, family offices, and institutional investors partner with Bitwise to understand and access the opportunities in crypto. We are known for providing unparalleled client support through expert research and commentary, a nationwide client team of crypto specialists, and deep access to the crypto ecosystem. Currently, Bitwise is a close-knit team of 100+ global professionals. Think of us as a mix of an asset manager and a tech start‑up. We’re backed by some of the most accomplished investors in venture capital and veterans of the financial services world. We love working together, we love what we do, and we’re excited about what’s ahead.

About The Role

Our engineering organization is growing, and with that growth comes an expanding application and infrastructure footprint that requires dedicated application security ownership. This role exists to build that function from the ground up. As our first dedicated Staff Application Security Engineer, you will own the design and implementation of our application security program, from SAST and DAST tooling to secure SDLC practices, threat modeling, dependency security, and penetration testing coordination. You will work directly with engineering teams across a cloud‑based environment securing both customer‑facing products and internal systems. You will be reporting directly to the Head of Security and will have the autonomy and organizational support to build an application security program that is practical, scalable, and aligned to the risk profile of a company operating in the digital asset space.

Primary Responsibilities

  • Static short‑and long‑term disability plans
  • Company‑funded 401(k) plan, no matching required
  • Unlimited PTO
  • 10 paid company‑wide holidays
  • Company‑wide winter break for most roles
  • Office spaces in San Francisco, New York, and London
  • Meals and snacks provided in office
  • Paid company cell phone or stipend
  • Bitwise “Buddy” Program (30‑day new‑hire success program)
  • Annual anniversary gifts
  • Company‑wide events including annual holiday party
  • Internal Women of Bitwise (WOB) group with fun events

Our Values

  • Create “a ha” moments
  • Move fast, with informed rationale
  • Ask “What would the client want?”
  • Show gratitude

Your Interview Process

  • Recruiter Interview
  • Hiring Manager Interview
  • Work Sample
  • Meeting the Team
  • Executive/Founders Interview
  • References
  • Offer!

Bitwise is an equal opportunity employer. We are committed to building a team of people with a variety of backgrounds, perspectives, and skills. It is the policy of Bitwise to ensure equal opportunity. All candidates are considered without regard to race, color, religion, national origin, age, sex, sexual orientation, gender identity, marital status, ancestry, physical or mental disability, veteran status, or any other legally protected characteristics. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records. Please note that we do not sponsor visas for persons without work authorization in the United States. This role is for full‑time employees only (no B2B or contractors). Thank you!

The Pay Range For This Role Is 185,000 - 260,000 USD per year (Remote), 185,000 - 260,000 USD per year (NYC Office), 185,000 - 260,000 USD per year (SF Office), 185,000 - 260,000 USD per year (London Office)

Staff Application Security Engineer employer: Bitwise Asset Management

Bitwise is an exceptional employer, offering a dynamic work environment that blends the agility of a tech start-up with the stability of an established asset manager. Employees benefit from unlimited PTO, a company-funded 401(k) plan, and a supportive culture that prioritises personal growth and collaboration, all while working at the forefront of the rapidly evolving crypto market. With office locations in major cities like San Francisco, New York, and London, Bitwise fosters a close-knit community where innovation thrives and every team member's contributions are valued.

B

Contact Details:

Bitwise Asset Management Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Staff Application Security Engineer

Tip Number 1

Network like a pro! Reach out to folks in the crypto and security space on LinkedIn or at industry events. A friendly chat can open doors that a CV just can't.

Tip Number 2

Show off your skills! Create a portfolio showcasing your application security projects, tools you've used, and any cool hacks you've pulled off. This is your chance to shine beyond the written application.

Tip Number 3

Prepare for those interviews! Research Bitwise and its approach to application security. Be ready to discuss how you can build their security program from the ground up—show them you're the perfect fit!

Tip Number 4

Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining the Bitwise team.

We think you need these skills to ace Staff Application Security Engineer

Application Security
SAST Tooling
DAST Tooling
Secure SDLC Practices
Threat Modeling
Dependency Security
Penetration Testing Coordination

Some tips for your application 🫡

Tailor Your Application:Make sure to customise your CV and cover letter for the Staff Application Security Engineer role. Highlight your relevant experience in application security, SAST/DAST tooling, and secure SDLC practices. We want to see how your skills align with what we're looking for!

Showcase Your Passion:Let your enthusiasm for crypto and application security shine through in your application. Share any personal projects or experiences that demonstrate your commitment to the field. We love seeing candidates who are genuinely excited about what they do!

Be Clear and Concise:When writing your application, keep it clear and to the point. Use bullet points where appropriate and avoid jargon unless it's relevant. We appreciate straightforward communication, so make it easy for us to see why you're a great fit!

Apply Through Our Website:Don't forget to submit your application through our website! This helps us keep everything organised and ensures your application gets the attention it deserves. We can't wait to hear from you!

How to prepare for a job interview at Bitwise Asset Management

Know Your Stuff

Make sure you brush up on your application security knowledge. Familiarise yourself with SAST, DAST, secure SDLC practices, and penetration testing. Being able to discuss these topics confidently will show that you're not just a candidate, but a potential leader in building their application security programme.

Understand the Company Culture

Bitwise values teamwork and client focus, so be prepared to discuss how you can contribute to their culture. Think about examples from your past experiences where you've moved fast with informed rationale or created 'a ha' moments for clients. This will help you connect with the interviewers on a personal level.

Prepare Questions

Interviews are a two-way street! Prepare insightful questions about their current security challenges or how they envision the application security programme evolving. This shows your genuine interest in the role and helps you assess if Bitwise is the right fit for you.

Show Your Passion for Crypto

Since Bitwise operates in the exciting world of crypto, make sure to express your enthusiasm for the industry. Share any relevant projects or experiences you've had in the crypto space, and demonstrate how your skills can help them navigate this rapidly evolving market.