> Markdown version of [/jobs/ext/486499-security-analyst](https://www.wearedevelopers.com/jobs/ext/486499-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Analyst - **Company:** Aptos, Inc - **Location:** United States (Remote available) - **Experience:** Experienced - **Salary:** $120,000.0 - $180,000.0 - **Contract:** Permanent contract - **Skills:** User Authentication, Business Systems, Software as a Service, Cyber Security, Identity and Access Management, Issue Tracking Systems, Local Security Policy, Open Web Application Security, Role-Based Access Control, Phishing, Web Applications, Large Language Models, Software Security, Spoofing, Web3.js - **Published:** June 5, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=1a83a611e839db23 ## About the Role Do you have experience in Cross-functional communication?, * 2+ years of experience in a security-focused role, such as security operations, IAM, application security support, operational security, or a similar domain. * Familiarity with core security concepts including phishing, authentication, access control, least privilege, and common vulnerability classes. * Ability to manage multiple concurrent workflows with strong attention to detail and reliable follow-through. * Clear written communication and confidence coordinating across technical and non-technical stakeholders. * Self-motivated, organized, and comfortable operating independently in a remote-first environment with minimal supervision. Nice to Have * Experience automating operational workflows using LLMs or AI tooling (e.g. Claude). * Familiarity with common web application vulnerabilities (e.g. OWASP Top 10). * Exposure to vulnerability disclosure / bug bounty workflows. * Experience with SaaS administration, access reviews, or IAM processes. * Experience in web3 environments or familiarity with common web3 threat patterns. The base salary range for this full-time position is $120k - $180k. The range displayed on each job posting reflects the minimum and typical maximum target for new hire salaries for the position of a candidate based in the Bay Area at any level. We do hire exceptionally talented professionals with decades of experience in their field. As such, our range may be higher than what is displayed. Our base salary ranges are determined by experience and location, and we hire at all levels for multiple roles. Within the range, individual pay is determined by work location, job-related skills demonstrated during the interviews, working experience, and relevant education or training. Please note that the compensation details listed in role postings reflect the base salary only and do not include equity, tokens, or benefits. ## Description Aptos Foundation is seeking a Security Analyst to help operate and scale security across the organization. Reporting to the Security Lead, this role will support core security workflows spanning phishing response, bug bounty operations, access governance, and operational security hygiene. This is a hands-on, cross-functional role offering broad exposure across security operations, access governance, and threat response-ideal for someone looking to develop a wide view of security in a fast-moving organization., * Respond to and triage alerts relating to phishing attacks, impersonation, scams, and brand abuse (e.g. Sublime, Doppel), escalating credible threats where appropriate. * Coordinate day-to-day operation of the bug bounty program, including communication with researchers, issue tracking, reporting, and internal follow-up. * Conduct user access reviews and review security settings, access configurations, and administrative controls across business systems, SaaS platforms, and internal infrastructure, tracking remediation where required. * Support recurring operational security workflows, including documentation, process tracking, and follow-up. ## Related Videos - [Get security done: streamlining application security with Aikido](https://www.wearedevelopers.com/videos/1638-get-security-done-streamlining-application-security-with-aikido) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [Smart Contract fundamentals - My first DApp](https://www.wearedevelopers.com/videos/52-smart-contract-fundamentals-my-first-dapp) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Getting under the skin: The Social Engineering techniques](https://www.wearedevelopers.com/videos/38-getting-under-the-skin-the-social-engineering-techniques) ## Related Articles - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [How Much Does a Software Engineer Make? Realistic Software Engineering Salaries](https://www.wearedevelopers.com/magazine/425-how-much-does-a-software-engineer-make-realistic-software-engineering-salaries) - [How to Ensure a Reasonable Salary Before an Interview](https://www.wearedevelopers.com/magazine/322-how-to-ensure-a-reasonable-salary-before-an-interview) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)