Alpen Labs is a New York-based startup focused on creating a scalable, private, and programmable Bitcoin ecosystem through innovative technologies. The Security Protocol Engineer will be responsible for overseeing security across protocol-layer components, leading threat modeling, and ensuring the integrity of code before deployment.
Responsibilities:
- Own security across protocol-layer components (L2, bridge, custody)
- Act as the final gatekeeper before code hits main
- Lead threat modeling, design reviews, and mitigation planning
- Write critical patches and drive hardening when bandwidth is limited
- Maintain security CI tooling: sig-verification, SAST, fuzzing, secrets scanning
- Review 100% of protocol-relevant PRs and enforce automated checks
- Run secure coding workshops and pair-program during critical sprints
- Interface with auditors and bounty researchers to scope, triage, and fix issues
- Authority to block merges or deploys on security grounds
- Direct commit access for emergency fixes
Requirements:
- 5+ years in security engineering with hands-on software experience
- Strong background in Rust, Go, or Solidity
- Deep knowledge of threat modeling and real-world exploit paths
- Experience owning or maintaining CI-based security automation
- Comfortable leading security without direct org ownership
- Bonus: protocol-level blockchain experience, audits, bounties, or custody systems