Conduct attacker-driven security research on Aave protocol changes, smart contracts, integrations, and critical dependencies. Review architecture and code before audits or deployment, identify exploitable protocol risks, contribute to AI-assisted security tooling, and translate findings into invariants, testing, monitoring, and incident-response improvements. Collaborate with engineers, auditors, and monitoring teams while communicating risk, severity, uncertainty, and trade-offs clearly.
About us
Aave Labs began with a simple question: how do we make financial services like borrowing, saving, and earning more accessible globally?
We built the Aave Protocol, now the world’s largest and most trusted onchain lending market, connecting decentralized finance with individuals, traditional finance, and fintech.
Today, we build trusted, high-quality products that expand access to lending, credit, and savings globally
Our culture
We build trusted products that help people access and discover economic opportunities.
We hold a high bar for quality and craftsmanship. No detail is too small. Trust depends on it.
We’re a global team building products people can actually use, turning complex technology into something simple and reliable.
We stay aligned, move quickly, and think long term, while keeping teams lean and focused on impact.
About the Role
Aave is looking for a Protocol Security Researcher to help build its internal protocol security function.
The role sits at the intersection of smart contract security, protocol design, adversarial research, and AI-assisted review. You will help assess major protocol changes before deployment, maintain security context across Aave’s deployed systems, and reason about the risks introduced by critical dependencies, integrations, and Aave-adjacent infrastructure.
This is not a narrow audit role. The goal is to improve Aave’s ability to understand and reduce protocol risk continuously.
How you can make an impact:
- Review major Aave protocol changes before external audit or deployment
- Perform attacker-driven analysis of smart contracts, protocol mechanisms, and integrations
- Participate in design and architecture discussions early enough to influence security-relevant decisions
- Identify risks in Aave-adjacent systems, including assets, bridges, oracles, adapters, and critical dependencies
- Contribute to AI-assisted security tooling and evaluate its effectiveness in real review workflows
- Turn review findings into reusable knowledge, invariants, assumptions, and testing or monitoring ideas
- Work with monitoring and incident response teams when review findings imply operational detection or response needs
- Collaborate with external auditors by helping define scope, known risks, and areas of concern
Let's connect if you have:
- 5+ years of relevant security experience
- Strong smart contract security background
- Ability to independently review complex codebases and reason about protocol-level failure modes
- Attacker mindset: you can move from “this looks wrong” to “this is how it could be exploited”
- Strong understanding of DeFi mechanisms, including lending, liquidations, accounting, oracles, collateral, governance, and integrations
- Evidence that you are actively using AI to improve security research, review quality, or review throughput
- Clear written communication: you can explain risk, impact, uncertainty, and trade-offs to engineers and non-security stakeholders
- Good judgment about severity, exploitability, and when a finding matters
Nice to haves:
- Experience with formal methods, fuzzing, invariant testing, or custom security tooling
- Experience building internal tools for security review, code understanding, or knowledge management
- Experience working with external audit firms or leading audit engagements
- Familiarity with governance payloads, upgrade systems, permissioning, and incident response
- Open-source security research, published findings, CTFs, bug bounties, or prior public vulnerability research
Haven’t quite met all the criteria? Let’s not miss out on the chance to speak. Whilst you might not meet every single requirement, you might bring other, more exciting skills to the companies!
Equal opportunities statement:
Aave Labs celebrates diversity and views each and every team member as a separate individual with their own unique identity. No matter your race, religion, gender, ethnicity, age, disability, sexual orientation or even the wallet you use, we welcome you at Aave Labs. As an equal opportunities employer, we take accountability and believe in everyone's potential to build, create and inspire changes. With a mission to build a diverse workforce, we are proud to foster a working environment in which everyone can feel safe and valued for who they are.
Similar Jobs
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Leads strategic feasibility analytics for global clinical trials, developing evidence-based country, site, enrollment, and protocol optimization strategies. Partners with cross-functional teams to assess recruitment assumptions, competitive intelligence, real-world data, site performance, and clinical trial technologies. Oversees feasibility outreach, site selection, scenario planning, portfolio intelligence, and KPI delivery while improving study startup and recruitment processes. Provides senior-level recommendations and influences stakeholders across Pfizer’s clinical development organization.
Top Skills:
Decentralized Clinical Trial (Dct) TechnologiesProtocol SimulationsReal-World Data AnalyticsSite Predictability Engine
Food • Retail • Agriculture • Manufacturing
Manages regional food service sales activities across Greece and Cyprus, develops distributor and customer relationships, converts leads, achieves revenue targets, promotes products, analyzes market trends, and supports new product launches. The role includes sales proposals, product demonstrations, distributor collaboration, competitor reporting, and cross-functional coordination with marketing, product development, and operations.
Top Skills:
Crm SoftwareMS Office
Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Leads Pfizer’s strategic technology initiatives across eight Digital Core Platforms, aligning enterprise architecture, AI programs, reuse, governance, and delivery. Oversees Senior Technical Architects, sets portfolio priorities, resolves cross-program trade-offs, advises executive stakeholders, and develops senior technical talent. Establishes responsible AI-enabled delivery practices and ensures reliability, security, documentation, operational excellence, and measurable outcomes across a complex global technology portfolio.
Top Skills:
Artificial IntelligenceAutomationCloud PlatformsCybersecurityData IntegrationEnterprise ArchitectureModern Engineering PracticesReliability Engineering
What you need to know about the San Francisco Tech Scene
San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.
Key Facts About San Francisco Tech
- Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Google, Apple, Salesforce, Meta
- Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
- Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
- Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine


