Lead Blockchain Security Developer (Canton)
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About the role
OpenZeppelin is the security standard onchain finance is built on. Founded in 2015, our mission is to accelerate the world's transition to an open financial system, built on open standards and secured by rigorous research. Our open-source Contract Libraries have facilitated over $35 trillion in onchain value and are used by 10 of the top 10 tokenized money market funds and 9 of the top 10 stablecoins by market cap. We combine AI-native security tooling with deep research and a decade of audit expertise to support leading institutions and crypto-native teams shaping the next generation of digital assets like DTCC, Fidelity, Coinbase, Uniswap, Aave, the Ethereum Foundation, and many more across the full secure development lifecycle. Please note: Always refer to OpenZeppelin's official job page for the most accurate information about our open roles, as we have seen multiple third party job sites posting inaccurate information. The Secure Development team ❤️ OpenZeppelin is the security partner of choice for the most important protocols in Web3. Our Secure Development team sits at the intersection of building and breaking: we design, implement, and harden production-grade libraries and smart contracts for leading projects across EVM, Starknet, Stellar/Soroban, Arbitrum Stylus, Aptos, and beyond, often as an embedded extension of the client's engineering team. We work the way the rest of the industry will five years from now. Every developer on the team is a fully AI-native engineer, supported by outstanding internal AI tooling built for every phase of secure development. Developers own their workstreams end-to-end - agents amplify their effectiveness, and peers, security researchers, and external auditors provide rigorous review on every piece of work that ships. The Canton Network engagement This role joins us at the start of a 24-month, multi-million-dollar commitment to build the open-source DeFi foundations of the world's most institutional blockchain, approved by the Canton Foundation. The scope: 8 production-ready Reference Implementations . Privacy-preserving DEX, lending protocol, cross-chain stablecoin settlement, confidential auction launchpad, and four more defined in year two. End-to-end blueprints that other teams will fork. The OpenZeppelin Contracts Library for Daml . The audited foundation Canton developers will import - vaults, hooks, RBAC, credentials, modular multi-sig accounts, standardized messaging gateway, DeFi math, staking, vesting, auctions, more. The same role our Solidity library plays today, on Canton. Canton standards implementation . Audited Daml implementations of CIP-56 (Token Standard), CIP-86 (ERC-20 Compatible Interface), CIP-103 (dApp Standard), and CIP-104 (Traffic-Based App Rewards) - designed to interoperate cleanly with the broader Splice ecosystem and with ChainSafe's CIP-86 middleware. 55 researcher-weeks of dedicated security capacity . Smart-contract audits, full-stack reviews, pen tests - amplified by OpenZeppelin's AI security agent in the workflow. Every release ships with a published audit report. AI-native developer experience for a new ecosystem . Contracts Wizard, UI Builder, MCP Server, Claude Plugin, AI Skills - all built for Canton, all AI-native end-to-end. You'll help define how AI-native engineering looks on a non-EVM stack. You'll work alongside Digital Asset, the Canton Foundation, and ChainSafe. The deliverables become the standard others build on. The work is public; the impact is measurable; the partners are the institutions reshaping how capital moves. Canton is your first focus, but you'll keep contributing across the broader Secure Development portfolio as the work demands. Within this, you will: Own the development of the OpenZeppelin Contracts Library for Daml end-to-end: vaults, hooks, RBAC, credentials, messaging gateway, accounts, and more. The audited primitives Canton developers will import. Lead the technical design and implementation of the year-1 Reference Implementations: privacy-preserving DEX, lending protocol, cross-chain stablecoin settlement, and confidential auction launchpad. Implement and shepherd the OZ Daml versions of CIP-56, CIP-86, CIP-103, and CIP-104. Coordinate with Digital Asset on spec evolution and with ChainSafe on middleware alignment. Run client-facing roadmap, design, and milestone discussions with Digital Asset, the Canton Foundation, and ChainSafe. Collaborate with OpenZeppelin's auditors and security researchers on threat models, audit prep, and full-stack reviews for every Reference Implementation. Use AI systems as core daily tools. Extend them: build agents, skills, and workflows that compound the team's leverage on the Canton engagement and beyond. Apply AI directly to security work and share what works back to the team: audit assistance, invariant generation, spec analysis, fuzzing harnesses, custom evals Contribute developer-experience and security feedback upstream into
Benefits
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at openzeppelin? Share your experience