Senior Backend Engineer, Security @Shelf
Software Development
Salary unspecified
Remote Location
Job Type contract
Posted 2d ago

[Hiring] Senior Backend Engineer, Security @Shelf

2d ago - Shelf is hiring a remote Senior Backend Engineer, Security. 💸 Salary: unspecified 📍Location: Poland

Role Description

This role is for a senior backend engineer who will focus full-time on security work. We are not looking for a policy-only security person. We are looking for a hands-on engineer who can improve our security posture by changing real systems, fixing real problems, and following through until the work is fully implemented and maintained.

This role is embedded close to support and operational engineering, so it stays connected to real incidents, real customer impact, and real follow-through. The scope is broader than one team. You will work across the company’s engineering surface wherever security work needs to land.

What You Will Own

  • Find and fix concrete security issues in production systems, not just identify them.
  • Improve token lifecycle, revocation, auth flows, auditability, and access controls across backend systems.
  • Reduce or eliminate security-sensitive data exposure in logs, events, traces, and internal tooling.
  • Improve security detection, logging, and audit trails so incidents are easier to detect, investigate, and contain.
  • Rotate secrets, reduce long-lived credentials, tighten access, and relentlessly follow through on overdue security hygiene work.
  • Review security findings from scanners and assessments, separate signal from noise, fix valid issues quickly, and improve the underlying architecture where needed.
  • Sweep broadly when necessary, including across many repositories and services, rather than stopping at local ownership boundaries.
  • Contribute to AI-security and modern application-security work where relevant, including risks introduced by new AI initiatives.
  • Write useful technical documentation, post-incident follow-ups, and implementation notes that help security work stay real after the first fix lands.

What Strong Performance Looks Like

  • Security improvements actually land in production and stay maintained over time.
  • Important follow-through work does not get dropped because it is tedious, cross-cutting, or spread across many repos.
  • You can tell the difference between a theoretical issue and a real one, and you act with urgency when the risk is real.
  • Incidents lead to better systems, tighter controls, and faster detection instead of only better wording in a document.
  • Teams trust you because you improve security by doing the work, not by adding ceremony around it.

Qualifications

  • Strong senior-level backend engineering experience in production systems.
  • Real hands-on experience implementing security improvements in code, infrastructure, or operational workflows.
  • Experience with application-security topics such as auth, token handling, access control, audit trails, logging, secrets, vulnerability remediation, or incident follow-through.
  • Strong debugging and investigative instincts. You can trace ugly real-world issues through code, logs, and system behavior.
  • Comfort working across many services and repositories when the problem requires a broad sweep.
  • Ability to go from problem statement to implementation to enforcement with real ownership.
  • Clear written and verbal communication. You can explain risk, trade-offs, and follow-up work without hiding behind vague security language.
  • AI-native working style. You already use AI tools in your daily engineering workflow and know how to verify their output.

Strong Plus

  • Experience improving security posture after real incidents or near-miss events.
  • Experience with AI-security, OWASP AI topics, or securing LLM-enabled systems.
  • Experience improving queryability, logging, and forensic visibility for incident response.
  • Experience moving systems from weak defaults to safer patterns such as stronger token handling or better credential models.

How We Evaluate Fit

We care more about implementation, enforcement, and follow-through than about certifications, policy language, or security theater. If you are the kind of engineer who sees a real security gap and closes it across the codebase instead of writing a recommendation and walking away, we want to talk.

Benefits

  • B2B contract.
  • Company Stock Options.
  • Hardware: MacBook Pro.
  • Modern technical stack.
  • Develop open-source software.
  • GitHub Copilot subscription.
  • Access to Claude Code, OpenAI Codex, TypingMind, and MCP Servers.

Company Description

  • Our Leadership Team has deep knowledge management and AI domain expertise and enterprise SaaS background to execute this plan.
  • We love our customers and our customers love us. Ask a Shelf customer why, and they’ll tell you it’s because of our innovative capabilities, rock-solid reliability, they truly enjoy working with our people, but most of all – it’s the improvements they see in their business KPIs.
  • We have raised over $60 million in funding and our investors include Tiger Global, Insight Partners, Connecticut Innovations, and others.
  • We have high velocity growth powered by the most innovative product in our category, 3X growth for 3 years in a row.
  • We now have over 100 employees in multiple U.S. states and European countries, and we have ambitious hiring goals over the next few months.

Our Values

  • Quality: We’re united by our focus on world‑class Quality. Quality in all things – starting with everything that leaves your desk.
  • Momentum: For us means that you should know that the things you’re responsible for are moving forward.
  • Accountability: We expect every team member to feel that they are accountable for more than anyone might normally expect.
  • Hard Work: We’re here to do something difficult together. We care intensely about the mission and we expect that from our teammates.
  • Learning Agility: We’re innovating in one of the fastest‑moving spaces in history at a time of accelerating global change.
  • Adapt and Thrive: Overcoming challenges lives deep in our DNA.
  • Win Together: We win or lose as a team. Always.
Before You Apply
remote Be aware of the location restriction for this remote position: Poland
Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Senior Backend Engineer, Security @Shelf
Software Development
Salary unspecified
Remote Location
Job Type contract
Posted 2d ago
Apply for this position
Did not apply
Applied
Sent Follow-Up
Interview Scheduled
Interview Completed
Offer Accepted
Offer Declined
Unlock 152,720 Remote Jobs
remote Be aware of the location restriction for this remote position: Poland
Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply
Applied
Sent Follow-Up
Interview Scheduled
Interview Completed
Offer Accepted
Offer Declined
Unlock 152,720 Remote Jobs