Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Deliverit

Full-Stack Developer, React/Node.js – Security Focus

Deliverit

. Review and validate vulnerabilities in React, TypeScript, JavaScript, and Node.js code .

Posted 9/29/2026full-timePorto Alegre • BrazilMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in securing Node.js services and APIs, with a strong focus on React, TypeScript, and JavaScript development. Proficient in vulnerability remediation, secure coding practices, and collaboration with cross-functional teams in DevSecOps environments.

Highest-signal resume keywords
Node.js SecurityReact DevelopmentVulnerability RemediationApplication SecurityDevSecOps Experience

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Node.jsReactTypeScriptJavaScriptHTMLCSSAPIsSQLNoSQLSecurity Testing
Soft Skills
CollaborationCommunicationAnalytical ThinkingProblem Solving
Tools & Technologies
BitbucketJiraCheckmarxVeracodeFortifySonarQubeSnyk CodeSemgrep
Industry Keywords
DevSecOpsVulnerability ManagementSecure CodingAI SecurityWeb Application Security

Tech Stack

Tools & technologies
JavaScriptNode.jsNoSQLReactSQLTypeScript

About the role

Key responsibilities & impact
  • Review and validate vulnerabilities in React, TypeScript, JavaScript, and Node.js code
  • Trace source-code vulnerabilities from Bitbucket through APIs, browser behavior, and deployment configurations
  • Implement fixes in front-end and Node.js applications
  • Use AI to analyze large codebases
  • Work with security controls for AI agents that interact with enterprise systems
  • Create unit, integration, end-to-end (E2E), and security regression tests
  • Rerun security scans and provide evidence for closure in Jira, Security Workbench, Archer, or equivalent tools
  • Collaborate with developers, Product, AppSec, QA, DevOps, and Platform Security teams
  • Identify recurring patterns and create reusable secure development guidance or automated fixes
  • Improve controls in pull requests, branch policies, build pipelines, and release gates
  • Investigate false positives and document risk-based decisions
  • Support security reviews, penetration testing, incident remediation, and vulnerability trend monitoring

Requirements

What you’ll need
  • Strong experience securing Node.js services, APIs, and Backend-for-Frontend (BFF) applications
  • Knowledge of React components, hooks, context, routing, state management, and SSR where applicable
  • Knowledge of securely handling user-controlled data in components, forms, URLs, query parameters, and client-side state
  • Ability to analyze pull requests, branches, commit history, and repository configurations
  • Familiarity with XSS, dangerouslySetInnerHTML, DOM-based XSS, client-side open redirects, browser storage, source maps, CSP, front-end authorization, data leakage, dependencies, and the software supply chain
  • Knowledge of secure handling of SQL and NoSQL queries, command execution, uploads/downloads, path and URL parameters, HTTP headers, serialization/deserialization, sessions/tokens, and SSRF
  • Experience with Checkmarx, Veracode, Fortify, SonarQube, Snyk Code, or Semgrep
  • 5+ years of experience in front-end or full-stack software engineering
  • 3+ years working directly with application security, secure coding, or vulnerability remediation in DevSecOps environments
  • Strong experience with React, TypeScript, JavaScript, Node.js, HTML, CSS, and HTTP
  • Experience with Git and Bitbucket in enterprise environments
  • Proven experience tracking vulnerabilities from identification through remediation and closure validation
  • Experience with web applications that handle sensitive data
  • Ability to work with application, security, QA, DevOps, and infrastructure teams
  • Advanced English proficiency for daily communication
  • Preferred qualifications: security of AI assistants/agents, AI agents for code development, agentic platforms, LLM security, GitHub/GitLab, security research, security automation, and the use of AI for vulnerability discovery and remediation

Benefits

Comp & perks
  • Meal and/or food allowance (VA/VR)
  • Well-Being Program: psychological, legal, social, and financial support
  • Health and dental insurance
  • Life insurance
  • Wellhub
  • Discount partnerships with Sucesu, Target Trust, Sesc, and Seprorgs
  • Work anniversary bonus
  • Employee referral bonus for successful hires
  • Childcare assistance
  • A relaxed, friendly, collaborative, and diverse culture
  • A enriching environment with innovative projects, connection, and knowledge sharing