North AmericaFull TimeEngineering
Remotely
pythonrestawstypescript.netnode.jsgraphqlopenapi
Job Description
📋 Description
- Adversarially test our AI and LLM-backed features. Design and run attacks against LLM-backed
- Build and operate production security services. Backend services and internal tooling — APIs
- Find new ways to automate the work. Notice when something we do by hand has become automatable
- Review pull request vulnerability findings. Triage what scanning and AI-assisted review surface
- Threat model from product designs. Review PRDs and technical designs before code exists, infer
- Test by hand and validate what you find. Manual testing of web applications and APIs, triage for
🎯 Requirements
- You ship production code. Strong backend engineering in at least one modern language, with at least
- You can read code you didn’t write, across more than one language and stack, well enough to judge
- You know how identity and authorization actually fail: token exchange and scope handling, session
- You understand API standards and how to secure them: REST and GraphQL in practice, OpenAPI and
- Hands-on testing of web applications and APIs — manual, not just scanner-driven — plus the triage
- Threat modeling from written designs. You can read a PRD in an unfamiliar domain, infer trust
Back to all jobs