Senior Frontend Security Engineer – React/Next.js
ITDS
⚲ Krakow
24 150 - 32 550 PLN netto (B2B)
Wymagania
- frontend security
- React
- Cypress
- Next.js
- TypeScript
- Google Cloud Platform
- GraphQL
- Leadership
- CI/CD
- OAuth2/OpenID Connect
Opis stanowiska
Unleash the Future of Web Security — Shape Seamless, Safe User Experiences! Krakow-based opportunity with hybrid work model (up to 3 days remote per week).As a Senior Frontend Security Engineer – React/Next.js, you will be working for our client, a leader in innovative software security solutions. Your expertise will drive the adoption of engineering excellence across a cutting-edge security platform, transforming the way web applications safeguard user data and interactions. This role offers a unique chance to impact security architecture at the edge, ensuring seamless and secure digital experiences for thousands of users. Your main responsibilities: • Develop and deliver high-quality, production-ready code with a focus on React Server Components (RSC), Server Actions, and Partial Pre-rendering (PPR). • Architect and implement 'Security at the Edge' layers within Next.js to protect user interactions and enhance security posture. • Build and maintain Content Security Policies (CSP), secure cookie management, and robust authentication flows using OAuth2/OpenID Connect. • Prevent frontend vulnerabilities such as XSS, CSRF, and clickjacking through architectural best practices. • Connect frontend architectures to GCP-based microservices via type-safe API contracts utilizing REST, GraphQL, or gRPC. • Mentor teams on security best practices and foster a culture of quality, efficiency, and continuous improvement. • Lead efforts to automate security checks and optimize developer workflows for agility and security. • Stay up-to-date with evolving frontend and security trends, sharing insights and guiding teams toward innovative solutions. You're ideal for this role if you have: • At least 7 years of experience in frontend development, with deep expertise in React, Angular, or Vue. • Proven track record of mitigating security vulnerabilities at the code level, especially XSS, CSRF, and supply-chain attacks. • Strong proficiency in TypeScript, unit/e2e testing (e.g., Cypress, Playwright), and CI/CD processes. • Experience connecting frontend systems to GCP microservices with type-safe API contracts (REST, GraphQL, gRPC). • Demonstrated leadership in guiding engineering teams and influencing technology direction. • Broad technical skill set with the ability to apply the right tools for complex problems. • Passion for building better, faster, and safer solutions that make a real difference. It is a strong plus if you have: • Experience architecting solutions that identify and solve operational problems or opportunities. • Respected reputation for quality development and impactful contributions. • Holistic problem-solving mindset with a focus on long-term impact. Language required for the role: • Fluent English, both written and spoken. Eligibility to work on this role: • Only candidates with an existing legal right to work in the European Union will be considered for this role. #MAKEYourCareerBETTER Interested? Apply now and include your CV (preferably in English) along with a statement confirming your consent to the processing and storage of your personal data.