Назад
Company hidden
20 часов назад

Security Researcher Engineer (Node.js)

Формат работы
remote (Global)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Poland/Spain/Romania +3 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Security Researcher Engineer (Node.js): Building a runtime protection layer inside the Node.js process for managed hosting environments with an accent on web application security, detection logic, and runtime instrumentation. Focus on designing and implementing a new product that intercepts exploits at runtime without breaking applications, leveraging large-scale threat intelligence.

Location: Fully remote, work from any location worldwide with offices in Poland, Bulgaria, Spain, Romania, Portugal, and Czechia.

Company

hirify.global is a global remote-first company delivering high-volume, low-cost Linux infrastructure and security products focused on hosting providers.

What you will do

  • Define and own a brand-new runtime protection product line for Node.js workloads.
  • Lead technical approach including instrumentation strategy, deployment, and programming language choice.
  • Implement the product end-to-end using modern development tools and AI-assisted coding.
  • Develop detection logic leveraging large-scale threat intelligence from existing security layers.
  • Measure success by runtime overhead, false positives/negatives, and customer escalation volume.

Requirements

  • Familiarity with Node.js runtime and JavaScript ecosystem.
  • Strong web application security fundamentals and practical exploitation knowledge.
  • Experience designing detection rules that balance catching attacks and minimizing false positives.
  • Ability to act as product manager, architect, lead engineer, and QA for the product.

Nice to have

  • Experience directing AI coding agents.
  • Background in runtime-protection products, application firewalls, or instrumentation tooling.
  • Malware analysis or incident response experience.
  • Familiarity with managed-hosting environments.
  • Public security research or vulnerability disclosures authored.

Culture & Benefits

  • Focus on professional development and challenging projects.
  • Fully remote work with flexible hours and worldwide location freedom.
  • 24 days paid vacation, 10 national holidays, and unlimited sick leave.
  • Private medical insurance compensation.
  • Co-working and gym/sports reimbursement.
  • Education budget and rewards for innovative ideas.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →