About the Role
About the Role
The Senior Web Security Engineer role involves securing high-performance web applications by designing and developing secure JavaScript and WebAssembly components. This hands-on position requires tackling sophisticated client-side threats and collaborating with various teams to embed security throughout the software development lifecycle.
What You'll Do
- Design and develop secure JavaScript and WebAssembly components for production applications
- Build anti-tamper, integrity verification and runtime protection mechanisms
- Develop high-performance WebAssembly modules using C++, Rust or AssemblyScript
- Research and mitigate emerging client-side attack techniques
- Analyse browser behaviour, JavaScript engines and WebAssembly runtimes
- Investigate vulnerabilities and lead root-cause analysis and remediation
- Work closely with engineering, product and red teams to embed security throughout the SDLC
- Help shape technical architecture and mentor other engineers
Who You Are
- 5+ years' software engineering experience
- Expert-level JavaScript/TypeScript and strong production WebAssembly experience
- Experience with Rust, C++ or another systems language used to produce WASM
- Deep understanding of browser internals and modern web APIs
- Experience defending applications against reverse engineering, runtime modification, instrumentation and code injection
- Knowledge of areas such as WASM binary analysis, obfuscation/de-obfuscation, anti-debugging, anti-tamper and runtime integrity
- Strong testing, debugging, profiling and CI/CD experience
- Excellent communication skills and the ability to explain complex technical concepts clearly
Compensation
£95,000 base salary with a 10% bonus and shares.
Benefits
This position is remote within the UK.
Requirements
Software Engineering Experience
5+ years' software engineering experience is required.
JavaScript/TypeScript Expertise
Expert-level knowledge of JavaScript and TypeScript is essential.
WebAssembly Production Experience
Strong production experience with WebAssembly is necessary.
Rust or C++ Knowledge
Experience with Rust, C++, or another systems language used to produce WASM is required.
Browser Internals Understanding
A deep understanding of browser internals and modern web APIs is needed.
Nice to Have
Experience defending applications against reverse engineering and runtime modification is a plus.
Knowledge of WASM binary analysis and obfuscation techniques is beneficial.
Benefits
Remote Work
This position is fully remote within the UK.
Bonus Structure
The role includes a 10% bonus on top of the base salary.
Equity Shares
Employees are offered shares as part of the compensation package.