FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in securing Node.js services and APIs, with a strong focus on React, TypeScript, and JavaScript development. Proficient in vulnerability remediation, secure coding practices, and collaboration with cross-functional teams in DevSecOps environments.
Highest-signal resume keywords
Node.js SecurityReact DevelopmentVulnerability RemediationApplication SecurityDevSecOps Experience
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Node.jsReactTypeScriptJavaScriptHTMLCSSAPIsSQLNoSQLSecurity Testing
Soft Skills
CollaborationCommunicationAnalytical ThinkingProblem Solving
Tools & Technologies
BitbucketJiraCheckmarxVeracodeFortifySonarQubeSnyk CodeSemgrep
Industry Keywords
DevSecOpsVulnerability ManagementSecure CodingAI SecurityWeb Application Security
Tech Stack
Tools & technologiesJavaScriptNode.jsNoSQLReactSQLTypeScript
About the role
Key responsibilities & impact- Review and validate vulnerabilities in React, TypeScript, JavaScript, and Node.js code
- Trace source-code vulnerabilities from Bitbucket through APIs, browser behavior, and deployment configurations
- Implement fixes in front-end and Node.js applications
- Use AI to analyze large codebases
- Work with security controls for AI agents that interact with enterprise systems
- Create unit, integration, end-to-end (E2E), and security regression tests
- Rerun security scans and provide evidence for closure in Jira, Security Workbench, Archer, or equivalent tools
- Collaborate with developers, Product, AppSec, QA, DevOps, and Platform Security teams
- Identify recurring patterns and create reusable secure development guidance or automated fixes
- Improve controls in pull requests, branch policies, build pipelines, and release gates
- Investigate false positives and document risk-based decisions
- Support security reviews, penetration testing, incident remediation, and vulnerability trend monitoring
Requirements
What you’ll need- Strong experience securing Node.js services, APIs, and Backend-for-Frontend (BFF) applications
- Knowledge of React components, hooks, context, routing, state management, and SSR where applicable
- Knowledge of securely handling user-controlled data in components, forms, URLs, query parameters, and client-side state
- Ability to analyze pull requests, branches, commit history, and repository configurations
- Familiarity with XSS, dangerouslySetInnerHTML, DOM-based XSS, client-side open redirects, browser storage, source maps, CSP, front-end authorization, data leakage, dependencies, and the software supply chain
- Knowledge of secure handling of SQL and NoSQL queries, command execution, uploads/downloads, path and URL parameters, HTTP headers, serialization/deserialization, sessions/tokens, and SSRF
- Experience with Checkmarx, Veracode, Fortify, SonarQube, Snyk Code, or Semgrep
- 5+ years of experience in front-end or full-stack software engineering
- 3+ years working directly with application security, secure coding, or vulnerability remediation in DevSecOps environments
- Strong experience with React, TypeScript, JavaScript, Node.js, HTML, CSS, and HTTP
- Experience with Git and Bitbucket in enterprise environments
- Proven experience tracking vulnerabilities from identification through remediation and closure validation
- Experience with web applications that handle sensitive data
- Ability to work with application, security, QA, DevOps, and infrastructure teams
- Advanced English proficiency for daily communication
- Preferred qualifications: security of AI assistants/agents, AI agents for code development, agentic platforms, LLM security, GitHub/GitLab, security research, security automation, and the use of AI for vulnerability discovery and remediation
Benefits
Comp & perks- Meal and/or food allowance (VA/VR)
- Well-Being Program: psychological, legal, social, and financial support
- Health and dental insurance
- Life insurance
- Wellhub
- Discount partnerships with Sucesu, Target Trust, Sesc, and Seprorgs
- Work anniversary bonus
- Employee referral bonus for successful hires
- Childcare assistance
- A relaxed, friendly, collaborative, and diverse culture
- A enriching environment with innovative projects, connection, and knowledge sharing
