Senior Web Engineer | Product Security | Remote, 1-2 times per month in London | Salary up to £95,000
I’m working with a high-growth technology business looking for a Senior Web Engineer to join the team. This is a highly technical role combining both Web Engineering and Security, for this role they are comfortable within finding a really strong Mobile Engineer who has some exposure to security, application protection, authentication, biometrics etc.
What you'll be doing:
- Build and evolve security-focused technologies that strengthen the resilience of browser-based products and applications.
- Engineer defensive controls designed to safeguard software executing in untrusted client environments.
- Develop mechanisms that detect and respond to unauthorised modification, inspection, manipulation, and automated interaction.
- Create performance-critical browser components using native and compiled-to-web technologies, including Rust, C++, AssemblyScript, and WebAssembly.
- Explore the internals of modern browsers and execution environments to understand how applications behave under both legitimate and adversarial conditions.
- Identify weaknesses across client-side application architectures and turn security research into deployable engineering solutions.
- Investigate new approaches used to analyse, manipulate, instrument, or circumvent browser-delivered software, and develop appropriate countermeasures.
- Work alongside software engineers, security specialists, offensive security teams, and product stakeholders to ensure defensive requirements are incorporated from initial design through production.
- Lead technical investigations into complex security issues, establishing underlying causes and engineering preventative solutions rather than short-term fixes.
- Influence architectural decisions around application security, resilience, performance, and client-side trust boundaries.
- Share specialist knowledge across the engineering organisation, helping teams adopt stronger approaches to secure software design and implementation.
What they're looking for:
- 5+ years of professional web development experience.
- JavaScript/Typescript or C++ Or Rust
- Some Experience with App Security, cryptography, secure communications and authentication.
Nice to have:
- JavaScript obfuscation and de-obfuscation
- WebAssembly (WASM) binary analysis
- Static and dynamic code analysis
- Anti-debugging, anti-tamper, and software protection techniques
- Runtime integrity verification and secure code signing
- Secure SDLC practices
- Browser engine internals, including V8, SpiderMonkey, JavaScriptCore, or Chromium
- WebGPU, WebRTC, or WebCodecs
- Binary instrumentation and compiler toolchains
- SDK and developer platform development
- Mobile browser security
- Biometrics, identity verification, or fraud prevention technologies
- Open-source security contributions or published security research
What's on offer:
- Up to £95,000
- Equity/share options
- Up to 10% bonus
- Remote Working- 1-2 a month in London
- Private healthcare and wellbeing benefits
- Pension and life assurance
- Professional development and training
- Enhanced annual leave and flexible benefits
If you're a Web engineer that has an interest in the world of Cyber Security then please click apply now!