Skip to main content
CloudLinux
CloudLinux

Security Engineer - Node.js Proactive Defense

RemoteNot specified. Estimate: worldwide · 90% confidence
Published
Role
Security
Employment
Full-time
Salary not disclosed
Check eligibility

The listing doesn't say where it hires from. It may be open worldwide (90% confidence). This is an estimate, not an eligibility rule; verify before applying.Signals: company workplace model and company offices.

No BS summary

Experienced researcher or engineer needed to build and iterate on a new Node.js runtime protection product. Must have proven experience shipping new products from scratch, strong web application security knowledge, and an understanding of how detection rules scale. Ability to act as PM, architect, lead engineer, and QA is required.

Core skills

Node.js runtime protection

Required skills

Node.js

Optional skills

runtime-protection productsapplication firewallsinstrumentation toolingmalware analysisincident responsemanaged-hosting environmentsNode.js runtimeJavaScript ecosystem

What you'll do

  • Build the runtime protection layer end-to-end.
  • Define the product: what we intercept, what we don't, what the customer-visible surface looks like.
  • Define the technical approach: instrumentation strategy, deployment shape, programming language.
  • Consult with architects but drive the direction.
  • Implement end to end.
  • Use the full tooling stack provided — LLM subscriptions, modern dev infrastructure, etc.
  • Define the methodology for building conviction in detection logic.
  • Plug into existing cross-layer signal: threat intelligence at scale, tens of millions of monitored sites, petabyte-scale malware sample storage, real-time domain and URL reputation, IP-level attack feeds.
  • Drive the work and own the outcome.
  • Ship to real customer fleets and watch the telemetry quickly.
  • Be hands-on every day.

What they require

  • Proven experience building and shipping a new product, security solution, major feature, or technical system from scratch.
  • Strong evidence of end-to-end technical ownership, from initial investigation and architecture through implementation, release, and production iteration.
  • Strong web application security knowledge and current knowledge of practical exploitation.
  • A working sense of how detection rules behave at scale — what catches attackers without flagging the long tail of legitimate code.
  • Ability to start as the PM, architect, lead engineer, and QA for this product.
  • You ask for resources or help when you need them; you don't wait to be told what to do.
  • Comfort directing AI coding agents to high-quality output.

Benefits

  • A focus on professional development.
  • Interesting and challenging projects.
  • Fully remote work with flexible working hours, that allows you to schedule your day and work from any location worldwide.
  • Paid 24 days of vacation per year, 10 days of national holidays, and unlimited sick leaves.
  • Compensation for private medical insurance.
  • Co-working and gym/sports reimbursement.
  • Budget for education.
  • The opportunity to receive a reward for the most innovative idea that the company can patent.

CloudLinux provides tools and solutions for web hosting providers, agencies, developers, and site owners to improve Linux server stability, security, performance, and website reliability. Its portfolio includes CloudLinux, Imunify security products, KernelCare, WordPress optimization tools, and lifecycle support offerings for hosting infrastructure.

🇺🇸 United StatesInformation Technologycloudlinux.com
Salary not disclosed