Security Engineer / Staff Engineer
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
Role Overview
Build a new runtime protection product for Node.js applications from scratch.
Own the product outcome and make key architectural decisions at senior, staff, or architect level.
The mission is to provide automatic, transparent, real-time protection without requiring client-code changes.
Key Skills for This Role
Full Job Posting
About Imunify360
Imunify360 develops Linux infrastructure and security solutions for shared hosting, VPS, and dedicated-server environments.
The product serves more than 4,500 customers globally, including Dell, GoDaddy, IBM, and Zoom.
Role Overview
Build a new runtime protection product for Node.js applications from scratch.
Own the product outcome and make key architectural decisions at senior, staff, or architect level.
The mission is to provide automatic, transparent, real-time protection without requiring client-code changes.
Responsibilities
- Define runtime protection architecture inside the Node.js process.
- Design detection logic to identify and block attacks during execution.
- Build and launch the first product version in production.
- Prevent legitimate applications from breaking while avoiding client-code changes.
- Improve the product using telemetry, production feedback, and real-world incidents.
- Optimize runtime overhead, false positives, false negatives, and customer escalation volume.
Must-Have Requirements
- Security engineering or security research experience with deep knowledge of attack vectors and defense methods.
- Independent end-to-end product or solution delivery from idea through production.
- Ability to solve ambiguous problems and deliver without constant supervision.
- Architecture design and key technical decision-making experience.
- Intermediate or higher written and spoken English.
- Hands-on coding capability, personally or with AI-assisted development tools.
Nice-to-Have Experience
- Node.js security experience, including vulnerability analysis or securing Node.js applications.
- Linux experience in production and development environments.
- Knowledge of runtime protection, WAF, instrumentation, malware analysis, or incident response.
- Managed hosting or VPS experience.
- Experience with AI coding agents such as Copilot or Cursor.
Work Format
- The role is 100% remote and can be performed from anywhere in the world.
- The legal setup is B2B through a sole proprietorship or company.
Compensation
- The budget is up to $12,000 gross per month before taxes under a B2B agreement.
Working Mindset
The role requires a builder mindset, high ownership, hands-on practice, and an understanding of detection engineering at scale.
Candidates without shipped real products or with general Node.js experience but no security component are not considered.
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career