Location
Remote
About the Role
Exploitless is seeking a Solana Offensive Security Engineer to identify, exploit, and help remediate vulnerabilities in Solana-based protocols and applications. You will work closely with our security researchers and auditors to perform deep technical reviews of Solana programs, simulate real-world attacks, and strengthen the security posture of high-value Web3 systems.
Responsibilities
- Conduct offensive security assessments of Solana programs and protocols
- Identify and exploit vulnerabilities in Rust-based smart contracts
- Perform manual code reviews and security analysis of Solana programs
- Develop proof-of-concept exploits for discovered vulnerabilities
- Analyze protocol architecture, transaction flows, and state transitions
- Collaborate with auditors to deliver high-quality security reports
- Research emerging Solana attack vectors and exploit techniques
- Contribute to internal security tooling and testing frameworks
Requirements
Strong experience with Solana program security
Solid proficiency in Rust
Deep understanding of Solana runtime, accounts model, and transaction mechanics
Experience identifying and exploiting smart contract vulnerabilities
Background in offensive security, auditing, or exploit development
Strong understanding of blockchain security fundamentals
Ability to write clear technical reports and vulnerability documentation
