Security Researcher Engineer (Node.js)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Researcher Engineer (Node.js): Building a runtime protection layer inside the Node.js process for managed hosting environments with an accent on web application security, detection logic, and runtime instrumentation. Focus on designing and implementing a new product that intercepts exploits at runtime without breaking applications, leveraging large-scale threat intelligence.
Location: Fully remote, work from any location worldwide with offices in Poland, Bulgaria, Spain, Romania, Portugal, and Czechia.
Company
is a global remote-first company delivering high-volume, low-cost Linux infrastructure and security products focused on hosting providers.
What you will do
- Define and own a brand-new runtime protection product line for Node.js workloads.
- Lead technical approach including instrumentation strategy, deployment, and programming language choice.
- Implement the product end-to-end using modern development tools and AI-assisted coding.
- Develop detection logic leveraging large-scale threat intelligence from existing security layers.
- Measure success by runtime overhead, false positives/negatives, and customer escalation volume.
Requirements
- Familiarity with Node.js runtime and JavaScript ecosystem.
- Strong web application security fundamentals and practical exploitation knowledge.
- Experience designing detection rules that balance catching attacks and minimizing false positives.
- Ability to act as product manager, architect, lead engineer, and QA for the product.
Nice to have
- Experience directing AI coding agents.
- Background in runtime-protection products, application firewalls, or instrumentation tooling.
- Malware analysis or incident response experience.
- Familiarity with managed-hosting environments.
- Public security research or vulnerability disclosures authored.
Culture & Benefits
- Focus on professional development and challenging projects.
- Fully remote work with flexible hours and worldwide location freedom.
- 24 days paid vacation, 10 national holidays, and unlimited sick leave.
- Private medical insurance compensation.
- Co-working and gym/sports reimbursement.
- Education budget and rewards for innovative ideas.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →