
Founding RASP Engineer β Node.js
Posted Jun 24

Posted Jun 24
This is a fully remote position, open to applicants in Poland.
β’ You will create an end-to-end runtime protection layer.
β’ The product involves a new product line that you will define β including what we intercept, what we exclude, and the customer-visible surface.
β’ The technical approach is flexible. You will determine the instrumentation strategy, deployment shape, and programming language while consulting with our architects.
β’ Implementation will be comprehensive. You will have access to the complete tooling stack we provide β including LLM subscriptions and modern development infrastructure. Utilize tools that enhance your efficiency.
β’ Methodology is up to you, as you decide how to build conviction in your detection logic.
β’ Cross-layer signal integration is key. Our existing stack generates threat intelligence at an unparalleled scale: monitoring tens of millions of sites, storing petabytes of malware samples, providing real-time domain and URL reputation, and offering IP-level attack feeds. You can leverage these resources as needed.
β’ The product is measured by four key metrics: runtime overhead, false positives, false negatives, and customer escalation volume. These metrics reflect the priorities of hosting providers and their clients. Achieving them effectively will ensure the product operates within a significant portion of the modern Node.js web.
β’ Familiarity with the Node.js runtime and the JavaScript ecosystem is essential.
β’ Strong fundamentals in web application security and up-to-date knowledge of practical exploitation techniques are required.
β’ A solid understanding of how detection rules perform at scale is necessary β knowing what captures attackers without flagging legitimate code is crucial.
β’ You should be capable of taking on roles as the PM, architect, lead engineer, and QA for this product. You are proactive in seeking resources or assistance when needed, rather than waiting for directions.
β’ Comfort in directing AI coding agents to produce high-quality results is important, as much of our engineering relies on this approach now.
β’ Previous experience with runtime protection products, application firewalls, or instrumentation tools is preferred.
β’ A background in malware analysis or incident response is valuable.
β’ Familiarity with managed hosting environments is beneficial.
β’ Contributions to public security research, vulnerability disclosures, or authored detection rulesets are a plus.
β’ Emphasis on professional development.
β’ Engaging and challenging projects.
β’ Fully remote work with flexible hours, allowing you to organize your day and work from anywhere globally.
β’ Paid vacation of 24 days per year, plus 10 national holidays, and unlimited sick leave.
β’ Compensation for private medical insurance.
β’ Reimbursement for co-working spaces and gym/sports activities.
β’ Budget allocated for education purposes.
β’ The chance to earn a reward for the most innovative idea that the company can patent.
Somnio Software
Pearster
Hyperativa
AML Consulting
Get handpicked remote jobs straight to your inbox weekly.