Professional experience as a backend software engineer, with hands-on delivery of production systems in a SaaS or similarly cloud-based environment
Strong curiosity about security-related topics
Strong experience building features that protect users and improve product security
Solid understanding of application security best practices, including secure design principles and threat modeling
Experience working closely with a CISO, Security team, or equivalent security stakeholders
Proficiency in backend development with modern languages and frameworks, ideally Node.js and TypeScript
Experience designing APIs, integrating external systems, and operating services in production
Good communication skills and the ability to work effectively in a cross-functional environment, particularly with Web/Client engineers, Product Managers, and Product designers
Fluency in English
Strong knowledge in cryptography
Familiarity with Identity and Access Management frameworks and protocols, such as Passkeys, SAML, OAuth, SCIM, or similar experience in working with other security-related features
Experience building enterprise security features for administrators and managed business environments
Experience with authentication hardening, account recovery flows, access governance, or fraud and abuse prevention
Familiarity with modern passwordless authentication patterns and user identity lifecycle management
Experience contributing to security reviews, incident follow-ups, or remediation plans
Exposure to consumer-scale and business-scale product constraints in the same environment
Backend: Node.js, TypeScript
Infrastructure: AWS, ECS, RDS, Redis, S3
Tooling: GitLab, Terraform, SonarQube
Observability: ELK, Datadog