1.Intentionally breaking things — conducting threat modeling and internal reviews of Solidity contracts, blockchain state transition functions (Rust), and other critical systems
2.Tracking the latest hacks, exploits, and attack vectors across the industry, and translating lessons learned into actionable security improvements
3.Embedding security best practices across development teams and influencing secure design
4.Taking ownership of protocol components with a focus on secure architecture and implementation
5.Participating in security investigations and incident response, often under time-sensitive and high-pressure conditions