CloudLinux Security Engineer
Cloudlinux
The mission
We protect web hosting providers and the sites running on their infrastructure through a defense-in-depth stack: web-server-layer WAF, runtime application self-protection for PHP, deep application integrations (WordPress plugins and similar), a malware scanner with cleanup capability, and network-layer firewalls and IP reputation. The pieces talk to each other, and the threat intelligence they generate at scale powers detection across the stack.
Node.js is the segment of the hosting market growing fastest, and the next layer we want to build for it is runtime protection inside the Node.js process itself. Most Node.js workloads on managed hosting today are AI-generated web apps deployed by non-technical owners who can't, won't, and shouldn't be expected to patch their own code or audit their own dependencies. We're going to defend those apps anyway — at runtime, without their cooperation, without breaking them.
You'll build that runtime protection layer end-to-end.
What you'll own
- The product. A brand-new product line, yours to define — what we intercept, what we don't, what the customer-visible surface looks like.
- The technical approach. Instrumentation strategy, deployment shape, programming language — all open. You'll consult with our architects but the direction is yours.
- Implementation, end to end. You'll have the full tooling stack we provide — LLM subscriptions, modern dev infrastructure, the works. Use what makes you fast.
- Methodology. How you build conviction in your detection logic — your call.
- Cross-layer signal. Our existing stack produces threat intelligence at unmatched scale: tens of millions of monitored sites, petabyte-scale malware sample storage, real-time domain and URL reputation, IP-level attack feeds. These are available for you to plug into. Use what helps.
How we'll measure success
The product is held to four numbers: runtime overhead, false positives, false negatives, and customer-escalation volume. They reflect what hosting providers and their customers care about. Hit them well and the product runs inside a meaningful slice of the modern Node.js web.
What we're looking for
An experienced researcher or engineer who can build and iterate on a brand-new product, driving both the research and the development. The hard part of this work is knowing what's malicious, what's vulnerable, and what's just an unusual but legitimate pattern — and being right about it across the long tail of frameworks, libraries, and customer code we'll encounter in production.
Requirements
Must have:
- Familiarity with the Node.js runtime and the JavaScript ecosystem.
- Strong web application security fundamentals and current knowledge of practical exploitation.
- A working sense of how detection rules behave at scale — what catches attackers without flagging the long tail of legitimate code.
- Ability to start as the PM, architect, lead engineer, and QA for this product. You ask for resources or help when you need them; you don't wait to be told what to do.
Nice to have:
- Comfort directing AI coding agents to high-quality output — most of our engineering does this now.
- Prior work on runtime-protection products, application firewalls, or instrumentation tooling.
- Background in malware analysis or incident response.
- Familiarity with managed-hosting environments.
- Public security research, vulnerability disclosures, or detection rulesets you've authored.
What it's not
- Not a scope-and-handoff role — you drive the work and own the outcome.
- Not a "platform team will productize this later" role — you ship to real customer fleets and watch the telemetry quickly.
- Not a spec-and-review role — you are hands-on every day.
Why this matters
- Most managed-hosting customers are not developers. They cannot patch their apps. They cannot audit their dependencies. They will keep deploying vulnerable code from AI assistants because that's how modern web apps get built now. The textbook advice — "secure your code, audit your dependencies" — does not apply to them.
- If we don't intercept exploits at runtime, nobody will. The numbers you hit on detection, performance, and false positives will materially affect how much of the modern web stays online when the next exploit class drops.
Benefits
What's in it for you?
- A focus on professional development.
- Interesting and challenging projects.
- Fully remote work with flexible working hours, that allows you to schedule your day and work from any location worldwide.
- Paid 24 days of vacation per year, 10 days of national holidays, and unlimited sick leaves.
- Compensation for private medical insurance.
- Co-working and gym/sports reimbursement.
- Budget for education.
- The opportunity to receive a reward for the most innovative idea that the company can patent.
- ...web. What we're looking for An experienced researcher or engineer who can build and iterate on a brand-new product, driving both... ...and the JavaScript ecosystem. Strong web application security fundamentals and current knowledge of practical exploitation....SuggestedFull timeRemote workWorldwideFlexible hours
- ...ICS/OT Cybersecurity Engineers and ICS/OT Network Security Engineers support clients in assessing, improving, and maintaining the cybersecurity posture of their ICS/OT environments to mitigate security risks (e.g., insider and external threats, intentional and accidental...SuggestedFull timeWork at officeRemote work
- Position: Senior Security Engineer - PKI & Detection, Aircraft SecurityLocation: Fort Worth Texas (Hybrid - onsite Tuesday through Thursday; remote Monday and Friday)Duration: ContractJob ID: 178660Job Overview:We are seeking a Senior Security Engineer to support aircraft...SuggestedFull timeRemote workMonday to Friday
$165k - $242k
...CRWV) in March 2025. Learn more at .What You’ll Do:The Enterprise Security team at CoreWeave is responsible for securing how our people... ..., this is the team to join.About the Role:As a Senior Security Engineer, Enterprise Security, you’ll design and ship the security controls...SuggestedPermanent employmentFull timeTemporary workFor contractorsCasual workWork at officeRemote workFlexible hours- ...enterprise software architectures that support the bank’s information security operations functions. This role performs feedback and... ...bank. The position serves as a technical resource for security engineering initiatives, applying advanced knowledge to evaluate, build, and...SuggestedRemote work
$100k - $140k
...innovation, its integrated solutions deliver value across enterprise security performance, digital supply chains, cyber insurance, and data... ...are looking for a skilled and passionate Cybersecurity Engineer to strengthen and scale our security capabilities in response to...Full timeRemote workFlexible hours$234.4k - $385k
...artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are... ...engaging a robust security culture. About the RoleAs a Security Engineer, Application Security you will be responsible for identifying and...Work at officeRemote workRelocation packageFlexible hours$107.93k - $188.9k
Position Summary Deloitte’s Cyber Defense and Resilience offering is seeking a SIEM Engineer to support security monitoring, detection engineering, and incident analysis across complex enterprise environments. This role will focus on building and optimizing SIEM...Remote work$178.4k - $226.7k
AHAS reduces the risk of human and operator access to AWS production systems and customer environments. As the Senior Security Engineer embedded with an AHAS software development team, you own the security design decisions for the operator-access tooling this team builds...InternshipRemote workFlexible hours- ...who can provide you more specific details for this role.Line of Business:Technology SolutionsJob Description:The Senior Engineer, Network Security role is responsible for the engineering and design of TD's cloud SaaS Secure Web Gateway (SWG) and Secure Access Service...Full timeLocal areaWork from homeFlexible hours
$169.98k
Security Engineer III (Common Criteria) - Rockville, MDIntertek, a leading provider of quality and safety solutions to many of the world’s top-recognized brands and companies, is actively seeking a Security Engineer III (Common Criteria) to join our Connected World team...Permanent employmentTemporary workWork at officeRemote workWorldwide- ...developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars.SECURITY ENGINEERSpaceX is looking for a Security Engineer to join our Information Security department to help protect and drive the SpaceX mission.Information drives...Permanent employmentRemote workWeekend work
$230k - $385k
...artificial general intelligence benefits all of humanity. The Security team protects OpenAI’s technology, people, and products. We are... ...customers in the public sector. As a Forward Deployed Security Engineer (FDSecE) you will be responsible for securing these novel applications...Work at officeLocal areaRemote workRelocation packageFlexible hours- ...future. We welcome candidates who can contribute to the excellence of our academic community. Description The Federated Security Engineer is a detail-oriented and proactive technical professional, with Identity and Access Management (IAM) expertise and a...Work at officeRemote work
$145.9k - $234.2k
The Role: As a Cybersecurity Engineer, you will help design, implement, and mature Moderna’s approach to API security across modern applications, platform services, and AI-enabled use cases. This role is primarily focused on securing APIs and the systems that expose and...Permanent employmentFull timeWork at officeWork from home- Job DescriptionEverforth ECS is seeking a Security Engineer to work in our Portland, OR office or remotely. Note: This position is contingent upon contract award.The Security Engineer supports the design, implementation, configuration, and maintenance of cybersecurity technologies...Contract workWork at officeRemote work
- ...with the opportunity to work within an innovative and collaborative environment. Join our Technology Team as an Identity and Security Engineer located in various offices.We are seeking a professional who thrives in a fast-paced, deadline-driven environment. The ideal candidate...Full timeRemote workFlexible hours
$153k - $376k
...together in real time from anywhere in the world. If you're excited to shape the future of design and collaboration, join us!As a Security Engineer you will identify and drive impactful projects to improve the security of Figma’s product, platform, and IT systems. We are...Minimum wageFull timeLocal areaRemote workFlexible hours$293k - $385k
...that artificial general intelligence benefits all of humanity.The Security team protects OpenAI’s technology, people, and products. We are... ...engaging a robust security culture.About the RoleAs a Security Engineer on Detection & Response, you’ll help protect OpenAI’s most...Work at officeLocal areaRemote workFlexible hours- Title:Associate Security Engineer, Identity SecurityKBR is seeking an Associate Security Engineer to join our Identity Security Services team within a global cybersecurity organization supporting complex, highly regulated enterprise environments. This hands-on role provides...Permanent employmentFull timeLocal areaRemote work
- ...colleagues. Those stories are part of what makes this such a special place to work.Job OverviewMacy’s is seeking a Staff Information Security Engineer to join its Cloud Security team. This position plays a pivotal role in designing, implementing, and operating secure solutions...Work experience placementFlexible hoursShift work
$210k - $260k
...journey toward becoming the world's top retail-focused trading platform in the world. What you'll do:We're looking for aStaff Security Engineer, Application Security to help scale and mature our security program. You'll own key security domains and initiatives end-to-end...Work at officeRemote workWorldwideMonday to FridayFlexible hours$99k - $225k
Virtru Security EngineerThe Opportunity:As a Virtru Security Engineer you’ll play a critical role in the world of zero trust. You will support the cyber architecture development, implementation, and sustainment across multiple networks of different classification levels...Full timeContract workPart timeWork at officeLocal areaRemote work$240k - $270k
...experiences, and perspectives can build careers within this exciting and growing industry.Job DescriptionCybersecurity Engineer - Infrastructure & Endpoint Security Engineer (Tech Lead) Job Family: Cybersecurity Engineering Direct Reports: None Position Summary:We are seeking...Full timeContract workTemporary workWork experience placementWork at officeLocal areaFlexible hours$159k - $201k
...incident response capabilities. Working within our technical security operations team, you'll tackle the complex challenges of securing... ...runbooks that scale alongside company growth.Collaborate with engineering teams to conduct threat modeling, security design reviews, and...Full timeWork at officeLocal areaRemote workWork from homeWork visa$114.39k - $240.35k
...information systems. The position provides certified and licensed security support to ensure systems meet FAA, federal, and NIST security... ...life cycle.Position SummaryThe Information Systems Security Engineer/Analyst provides security engineering, analysis, and compliance...Full timeContract workPart timeLocal areaRemote work$112.8k - $257k
Security EngineerThe Opportunity: We need a technical professional responsible for designing, building, and maintaining systems that protect an organization’s data, networks, and IT infrastructure from cyber-attacks. In this position, you will focus on proactive defense...Full timeContract workPart timeWork at officeLocal areaRemote work- ...us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Security Engineer- Hybrid to join our team in Fort Washington, Pennsylvania (US-PA), United States (US).The Security Engineer is a hands-on...Work at officeLocal areaRemote workFlexible hours
- Atos is the Atos Group brand dedicated to AI-powered, secure, end-to-end digital services. Atos designs, develops, and operates critical digital environments that drive performance, resilience and sovereignty, helping public and private organizations worldwide retain control...Full timeRemote workWorldwide
$10k
...to build systems that directly shape how companies move and manage billions, Ramp is the place to do it.As Ramp’s founding Privacy engineer, you will build a privacy program that powers Ramp’s growth while earning trust from customers and prospects.What You’ll DoBuild...Full timeWork at officeRemote workHome officeFlexible hoursShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to CloudLinux Security Engineer. Be the first to apply!
- offensive security engineer Remote
- staff security engineer Remote
- cloud security engineer Remote
- IT security engineer Remote
- information technology security engineer Remote
- security engineer Remote
- senior application security engineer Remote
- product security engineer Remote
- sr information security engineer Remote
- principal security engineer Remote


