Applying for
Software Engineer – Node.js & React (Full Stack)
At Siemba, we believe security should be a catalyst for innovation, not a barrier to it. Our mission is to move the industry beyond reactive defense toward a future of Preemptive Security.
Featured across multiple Gartner® Hype Cycle reports and recognized as a Global Top 250 MSSP, Siemba is building a next-generation platform ecosystem that helps organizations continuously discover, validate, and remediate risks before attackers can exploit them.
Our platform suite powers a Continuous Threat Exposure Management (CTEM) approach to security. It includes GenPT, our AI-native security platform for one-click visibility and autonomous testing; GenVA for continuous vulnerability assessment; EASM (External Attack Surface Management) for discovering and monitoring internet-facing assets; and PTaaS (Penetration Testing as a Service) that combines expert-led testing with continuous validation.
From Big 4 consulting firms and global government agencies to fast-growing technology companies, organizations trust Siemba to deliver the continuous visibility and resilience required in today’s threat landscape.
At Siemba, you will work with passionate security researchers, engineers, and innovators who are redefining offensive security and shaping the future of proactive cybersecurity.
Welcome to Siemba. Build the future of security with us.
The Role
Build scalable platform experiences by collaborating with senior engineers, understanding security research, customer needs, and product objectives, and translating complex penetration-testing workflows into reliable, production-ready full-stack features that power Siemba’s security platform.
What you will do
- Develop end-to-end product capabilities by designing, building, and maintaining features across the stack using React (frontend) and Node.js / Nest.js (backend).
- Translate security research and testing methodologies into automated, intuitive platform functionality that simplifies complex cybersecurity operations for users.
- Shape performant data experiences by designing efficient schemas and optimizing access patterns across PostgreSQL (relational) and DocumentDB (NoSQL) environments.
- Ensure platform integrity through clean, maintainable, and secure coding practices, actively participating in peer reviews to uphold stability, scalability, and security standards.
- Collaborate closely with product, engineering, and security teams to iterate quickly, refine workflows, and continuously improve feature usability and performance.
- Contribute to building cloud-native services using AWS infrastructure, enabling resilient, distributed, and highly available security automation pipelines.
You should apply if you have
- Have 2–3 years of professional experience in full-stack web development and enjoy building production-grade applications.
- Are highly proficient in React, including hooks, state management, and modern CSS, with a strong focus on responsive, user-centric interfaces.
- Possess strong backend development skills in Node.js (Express or Nest.js) and experience designing robust RESTful APIs.
- Have hands-on experience working with both SQL and NoSQL databases, understanding performance, modeling, and scalability trade-offs.
- Are familiar with AWS services such as ECS, Lambda, SQS, and S3, along with Git-based development workflows and modern DevOps practices.
- Are a proactive communicator who thrives in a collaborative, remote-first engineering culture and enjoys solving complex technical challenges.
- Can think systemically about large problems while maintaining strong attention to implementation detail.
What You Will Enjoy: Tech & Learning at Siemba
- The Cyber-Developer Hybrid Path: Move beyond traditional CRUD development and gain practical exposure to cybersecurity concepts, including OWASP Top 10, vulnerability assessment logic, and automated penetration testing workflows.
- AI-Driven Security Innovation: Work with AI-native security capabilities powered by AWS Bedrock (Claude / LLMs) to help build intelligent, context-aware security automation.
- Modern Cloud & Microservices Architecture: Develop expertise in serverless and containerized systems using AWS ECS, Lambda, and event-driven patterns with SQS - building scalable microservices designed for real-world security operations.
Bonus Points (Good to Have)
- Experience with or interest in Python (used for security automation) or GoLang.
- Familiarity with vulnerability scanning concepts, penetration-testing workflows, or general cybersecurity tooling.