CloudLinux Security Engineer
Cloudlinux
The mission
We protect web hosting providers and the sites running on their infrastructure through a defense-in-depth stack: web-server-layer WAF, runtime application self-protection for PHP, deep application integrations (WordPress plugins and similar), a malware scanner with cleanup capability, and network-layer firewalls and IP reputation. The pieces talk to each other, and the threat intelligence they generate at scale powers detection across the stack.
Node.js is the segment of the hosting market growing fastest, and the next layer we want to build for it is runtime protection inside the Node.js process itself. Most Node.js workloads on managed hosting today are AI-generated web apps deployed by non-technical owners who can't, won't, and shouldn't be expected to patch their own code or audit their own dependencies. We're going to defend those apps anyway — at runtime, without their cooperation, without breaking them.
You'll build that runtime protection layer end-to-end.
What you'll own
- The product. A brand-new product line, yours to define — what we intercept, what we don't, what the customer-visible surface looks like.
- The technical approach. Instrumentation strategy, deployment shape, programming language — all open. You'll consult with our architects but the direction is yours.
- Implementation, end to end. You'll have the full tooling stack we provide — LLM subscriptions, modern dev infrastructure, the works. Use what makes you fast.
- Methodology. How you build conviction in your detection logic — your call.
- Cross-layer signal. Our existing stack produces threat intelligence at unmatched scale: tens of millions of monitored sites, petabyte-scale malware sample storage, real-time domain and URL reputation, IP-level attack feeds. These are available for you to plug into. Use what helps.
How we'll measure success
The product is held to four numbers: runtime overhead, false positives, false negatives, and customer-escalation volume. They reflect what hosting providers and their customers care about. Hit them well and the product runs inside a meaningful slice of the modern Node.js web.
What we're looking for
An experienced researcher or engineer who can build and iterate on a brand-new product, driving both the research and the development. The hard part of this work is knowing what's malicious, what's vulnerable, and what's just an unusual but legitimate pattern — and being right about it across the long tail of frameworks, libraries, and customer code we'll encounter in production.
Requirements
Must have:
- Familiarity with the Node.js runtime and the JavaScript ecosystem.
- Strong web application security fundamentals and current knowledge of practical exploitation.
- A working sense of how detection rules behave at scale — what catches attackers without flagging the long tail of legitimate code.
- Ability to start as the PM, architect, lead engineer, and QA for this product. You ask for resources or help when you need them; you don't wait to be told what to do.
Nice to have:
- Comfort directing AI coding agents to high-quality output — most of our engineering does this now.
- Prior work on runtime-protection products, application firewalls, or instrumentation tooling.
- Background in malware analysis or incident response.
- Familiarity with managed-hosting environments.
- Public security research, vulnerability disclosures, or detection rulesets you've authored.
What it's not
- Not a scope-and-handoff role — you drive the work and own the outcome.
- Not a "platform team will productize this later" role — you ship to real customer fleets and watch the telemetry quickly.
- Not a spec-and-review role — you are hands-on every day.
Why this matters
- Most managed-hosting customers are not developers. They cannot patch their apps. They cannot audit their dependencies. They will keep deploying vulnerable code from AI assistants because that's how modern web apps get built now. The textbook advice — "secure your code, audit your dependencies" — does not apply to them.
- If we don't intercept exploits at runtime, nobody will. The numbers you hit on detection, performance, and false positives will materially affect how much of the modern web stays online when the next exploit class drops.
Benefits
What's in it for you?
- A focus on professional development.
- Interesting and challenging projects.
- Fully remote work with flexible working hours, that allows you to schedule your day and work from any location worldwide.
- Paid 24 days of vacation per year, 10 days of national holidays, and unlimited sick leaves.
- Compensation for private medical insurance.
- Co-working and gym/sports reimbursement.
- Budget for education.
- The opportunity to receive a reward for the most innovative idea that the company can patent.
- ...web. What we're looking for An experienced researcher or engineer who can build and iterate on a brand-new product, driving both... ...and the JavaScript ecosystem. Strong web application security fundamentals and current knowledge of practical exploitation....SuggestedFull timeRemote workWorldwideFlexible hours
- ...ICS/OT Cybersecurity Engineers and ICS/OT Network Security Engineers support clients in assessing, improving, and maintaining the cybersecurity posture of their ICS/OT environments to mitigate security risks (e.g., insider and external threats, intentional and accidental...SuggestedFull timeWork at officeRemote work
- Washington DCTechnology - Security /RemoteThe Senior Security Engineer II will be responsible for designing, implementing, and maintaining security services that support our business. You will understand data and automation are important ingredients to our mission and...SuggestedTemporary workWork at officeRemote workWork from homeFlexible hours
- Senior Security Engineer- Product SecurityAugusta, GaWork Location & ScheduleThis is a hybrid position based in our Augusta, GA office. Team members are expected to work on-site two days per week in our Augusta office and remotely three days per week. This schedule supports...SuggestedFull timeTemporary workFor contractorsFixed term contractWork at officeRemote workFlexible hours2 days per week3 days per week
$266k
...artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are... ...engaging a robust security culture. About the RoleAs a Security Engineer, Application Security you will be responsible for identifying and...SuggestedWork at officeRemote workRelocation packageFlexible hours- Hi, we're Oscar. We're hiring a Senior Product Security Engineer 1 to join our Security Team.Oscar is the first health insurance company built around a full stack technology platform and a relentless focus on serving our members. We started Oscar in 2012 to create the kind...Full timeWork experience placementWork at officeRemote work
$178.4k - $226.7k
AHAS reduces the risk of human and operator access to AWS production systems and customer environments. As the Senior Security Engineer embedded with an AHAS software development team, you own the security design decisions for the operator-access tooling this team builds...InternshipRemote workFlexible hours$159.3k - $212.8k
The AWS Security Hub team is looking for a passionate and innovative security engineer with a focus on compliance and security best practices for AWS, Azure, and GCP services. AWS Security Hub is the security and compliance center for AWS customers. One of its main functions...InternshipFlexible hours$165k - $242k
...CRWV) in March 2025. Learn more at .What You’ll Do:The Enterprise Security team at CoreWeave is responsible for securing how our people... ..., this is the team to join.About the Role:As a Senior Security Engineer, Enterprise Security, you’ll design and ship the security controls...Permanent employmentFull timeTemporary workFor contractorsCasual workWork at officeRemote workFlexible hours$120k - $140k
...Security Engineer We're looking for a Security Engineer to join our InfoSec team and become the primary security partner for our software engineering organization. Reporting to the Security Engineering Manager, you'll operate application security across the SDLC, champion...Temporary workWork at officeImmediate startRemote workWork from home- ...with the opportunity to work within an innovative and collaborative environment. Join our Technology Team as an Identity and Security Engineer located in various offices.We are seeking a professional who thrives in a fast-paced, deadline-driven environment. The ideal candidate...Full timeRemote workFlexible hours
$153k - $376k
...together in real time from anywhere in the world. If you're excited to shape the future of design and collaboration, join us!As a Security Engineer you will identify and drive impactful projects to improve the security of Figma’s product, platform, and IT systems. We are...Minimum wageFull timeLocal areaRemote workFlexible hours$120k - $130k
Job DescriptionEverforth ECS is seeking an Identity Security Engineer to work in our Washington, DC office / remote. The role is contingent upon additional funding.We are seeking a technically experienced Identity Security Engineer to join our security operations division...Work at officeRemote work$99k - $225k
Boundary Security EngineerThe Opportunity:A well-designed secure network is critical to move data and enable the Department of Defense... ...careful planning. That’s why we need you, a Boundary Security Engineer who knows how to utilize your craft to facilitate the needs of...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Technology and Business consulting services. We are in search of a highly motivated candidate to join our talented Team. Job Title: Security Engineer Location(s): Sacramento, CA Top Skills PANW Firewall (FW) expertDay-to-day maintenance and cleanup (Cisco experience)...Full timeRemote work
- ...seeking a highly technical, hands-on Senior Non-Human Identity Engineer to lead the engineering, automation, onboarding, remediation, and... ...teams to ensure non-human identities are properly secured, monitored, and managed throughout their lifecycle.The ideal candidate...Temporary workWork at officeHome officeFlexible hours3 days per week
$208k - $312k
...products that help builders move from idea to production with speed, security, and exceptional developer experience.Now, software is entering... ...what comes next.About the Role:We are looking for a Security Engineer to join our Detection Response team. In this role, you will be...Work at officeRemote workWork from homeWorldwideMonday to FridayFlexible hoursShift work- Position Description:ASRC Federal is actively hiring an Intermediate Okta Engineer in support of our Defense Counterintelligence Security Agency (DCSA) program based out of Quantico, VA.We are seeking a skilled and highly motivated Identity and Access Management (IAM) professional...Work at officeRemote work2 days per week
- ...project management, applications development, infrastructure, Cyber security, and enterprise content/data management services. We have... ...Washington, DCJob DescriptionThe Identity and Authentication Security Engineer/Admin will be responsible for technical support to security...Remote work
- ...all. Toll Brothers, America's leading luxury home builder, seeks a Security Engineerto join our team at our Corporate office in Fort Washington, Pennsylvania.What is the opportunity?The Security Engineer is a technical resource on the Cyber & Information Security team....Full timeWork at officeLocal area
- ...Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.SECURITY ENGINEER (EMBEDDED OT)SpaceX is looking for a Security Engineer to join our Information Security department to help protect and drive...Permanent employmentTemporary workRemote workWeekend work
$145.9k - $234.2k
...Role:Moderna is seeking an Operational Technology (OT) Response Engineer to strengthen our enterprise defense and incident response... ...the appropriate cross-functional partners to help keep Moderna secure. Here’s What You’ll DoIncident Response & Investigation Strong...Permanent employmentFull timeWork at officeWork from home$165k - $200k
...single API, Merge Agent Handler, which empowers AI agents with secure access to thousands of third-party tools, and Merge Gateway,... ...product development, unblock sales, reduce customer churn, and save engineering resources—allowing them to focus on their core product.Merge...Full timeWork at officeHome office$10k
...billions, Ramp is the place to do it.About the RoleThe Product Security team helps make Ramp the most secure place for our customers... ...issues across our technology stack: collaborating with other engineers to triage and fix vulnerabilities discovered internally, through...Full timeWork at officeHome officeFlexible hours- ...Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.SECURITY ENGINEER (BLUE TEAM) SpaceX is targeted by sophisticated adversaries determined to disrupt or obtain the cutting-edge technology it...Permanent employmentTemporary workWork at officeRemote workMonday to FridayWeekend work
$102.1k - $202.2k
...officeRole type: Individual ContributorTravel: Less than 25%Profession: Security EngineeringDiscipline: Security Operations EngineeringCompany:... ...’s Cloud Operations & Innovation (CO+I) is the engine that powers our cloud services. As a Physical Security Engineer...Ongoing contractWork at officeLocal areaWorldwide3 days per week$86.9k - $198k
Mission Security EngineerThe Opportunity:Everyone knows security needs to be “baked in” to a system architecture—you actually know how... ...reduce their attack surface. What if you could use your cyber engineering skills to design and develop secure systems for the Department...Full timeContract workPart timeWork at officeLocal areaRemote work- ...tools such as Claude, ChatGPT, and others, to work smarter, move faster, and optimize processes. Who you are:You are a hands-on Security Engineer who can translate security and compliance requirements into practical technical solutions. You communicate clearly with...Currently hiringWork at officeRemote workVisa sponsorshipWork visaFlexible hours
- ...Modernisation, and Industry-Specific Software Solutions, DXC modernises, secures, and operates some of the world’s most complex technology... ...and New Zealand market, we are enhancing the Security Engineering Team who work within the Secured Infrastructure capacity to deliver...Full timeLocal area
$100k - $145k
...changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. We work on... ...the Role:CrowdStrike is looking for a Vulnerability Detection Engineer for our Exposure Management group. This is an Individual Contributor...Full timeWork experience placementWork at officeLocal areaRemote work2 days per week3 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to CloudLinux Security Engineer. Be the first to apply!
- security engineer Remote
- principal security engineer Remote
- sr information security engineer Remote
- information technology security engineer Remote
- senior cloud security engineer Remote
- cloud security engineer Remote
- senior application security engineer Remote
- application security engineer Remote
- aws cloud security engineer Remote
- network security engineer Remote



