NodeJS Developer with vulnerability - R01560256
About Brillio:
Brillio is one of the fastest growing digital technology service providers and a partner of choice for many Fortune 1000 companies seeking to turn disruption into a competitive advantage through innovative digital adoption. Brillio, renowned for its world-class professionals, referred to as "Brillians", distinguishes itself through their capacity to seamlessly integrate cutting-edge digital and design thinking skills with an unwavering dedication to client satisfaction.
Brillio takes pride in its status as an employer of choice, consistently attracting the most exceptional and talented individuals due to its unwavering emphasis on contemporary, groundbreaking technologies, and exclusive digital projects. Brillio's relentless commitment to providing an exceptional experience to its Brillians and nurturing their full potential consistently garners them the Great Place to Work® certification year after year.
Consultant
Primary Skills
- AWS Elastic Beanstalk, AWS Lambda, Amazon CloudFront, Amazon API Gateway, AWS Step Function
Specialization
- AWS Development: Senior Software Development Engineer
Job requirements
Job Title: Node JS Engineer – Application Security Remediation & Automation
Location: St. Louis, MO/ Dallas TX (Hybrid – 3 days onsite)
Experience Level: 6+ years
Must Have: NodeJS, vulnerability remediation, and security, Java
About the Role
· We are seeking a highly skilled Node Engineer with expertise in secure coding, vulnerability remediation, and security automation.
· The ideal candidate will have hands-on experience remediating vulnerabilities in Java and Node.js applications, with a strong grasp of automation techniques, and a proven ability to leverage Generative AI solutions such as AWS Bedrock to accelerate security workflows.
· This role requires close collaboration with InfoSec, QA, DevOps, and engineering teams to ensure application security posture is proactively strengthened through intelligent automation and continuous improvement.
Key Responsibilities
· Analyze, triage, and remediate vulnerabilities identified via SAST, DAST, and software composition analysis tools such as SonarQube, Veracode, Snyk, and Checkmarx.
· Refactor insecure Java and Node.js codebases to mitigate vulnerabilities such as SQL Injection, XXE, XSS, CSRF, Deserialization, and Authentication flaws.
· Patch and upgrade vulnerable third-party dependencies using Maven/Gradle, and validate post-remediation effectiveness.
· Leverage Generative AI tools (e.g., AWS Bedrock) to build or enhance automation workflows for:
· Auto-remediation of common vulnerability patterns
· Code recommendations and patch generation
· AI-driven security analysis and triage assistance
· Automate vulnerability remediation and validation within CI/CD pipelines, improving security velocity and reducing manual effort.
· Strengthen security configurations in Spring Boot, REST APIs, Node.js services, and Tomcat-based deployments.
· Perform secure code reviews, provide remediation guidance, and promote secure coding best practices across development teams.
· Collaborate with InfoSec and DevOps teams to validate fixes, perform re-scans, and close vulnerability tickets.
· Stay current on security advisories, OWASP Top 10, CWE/SANS 25, and Java/Tomcat ecosystem updates.
Required Skills
· Strong hands-on experience with Core Java, Spring Boot, Tomcat, and REST API development.
· Proficiency in secure coding principles and application vulnerability remediation.
· Experience remediating issues identified by tools like Veracode, Checkmarx, SonarQube, or Snyk.
· Knowledge of dependency management and patching practices using Maven or Gradle.
· Familiarity with Node.js security configurations and remediation techniques.
· Experience with OAuth2/JWT, input validation, encryption, and secure session management.
· Understanding of Docker, Kubernetes, and security considerations in cloud-native applications.
Preferred Qualifications
· Experience with automating vulnerability remediation using GenAI platforms (e.g., AWS Bedrock, Amazon CodeWhisperer).
· Exposure to DevSecOps pipelines, including automated security scans and policy enforcement.
· Strong understanding of Spring Security, secure API design, and infrastructure hardening.
· Certifications such as CEH, CSSLP, GSSP-Java, or similar are a plus.
Soft Skills
· Strong analytical, debugging, and problem-solving skills.
· Excellent communication and documentation abilities.
· A collaborative mindset with the ability to work across security, development, and operations teams.
· Self-motivated and proactive in driving secure development practices and automation.
$70 - $75 an hour
Know more about Brillio :
PPE:
Equal Employment Opportunity Declaration
Brillio is an equal opportunity employer to all, regardless of age, ancestry, colour, disability (mental and physical), exercising the right to family care and medical leave, gender, gender expression, gender identity, genetic information, marital status, medical condition, military or veteran status, national origin, political affiliation, race, religious creed, sex (includes pregnancy, childbirth, breastfeeding, and related medical conditions), and sexual orientation.
#LI-PS1
Know what it’s like to work and grow at Brillio: Click here
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Recommended Jobs
INTERNSHIP - SIMULIA CFD Industry Process Consultant
Role Descriptions & Responsibilities As an intern in the NAM Industry Process Consultant team, you will work with lead engineers in modeling real-world fluid problems in various industries. Such p…
Buyer (Alma)
Description: The Buyer will assist in sourcing materials, supplies and services for Legend Manufacturing, Inc. to fulfill production needs in the most favorable terms available. Using their analytica…
Cloud Administrator - Entry Level (MI)
As a Cloud Support Analyst specializing in AWS, you will be essential in ensuring the efficient operation of our AWS cloud services. You will serve as the first point of contact for customers facing …
Continuous Improvement Leader - Paw Paw Area
Job Description Job Description Continuous Improvement Leader | Paw Paw, MI Salary Range: $83,000 - $128,000 depending on experience Are you a skilled professional with a passion for e…
Meat Processing Plant Supervisor
Position Overview: We are seeking an experienced and dynamic General Manager/Head Butcher to oversee the daily operations of our meat processing plant. The ideal candidate will have 5–20 years of exp…
Supplier Quality Engineer
Position Title: Supplier Quality Engineer Reports To: Metallurgical Quality Manager Supervises : None Classification: Salaried, exempt, non-union Essential Duties & Responsibilities …
Manager, Global Finance Services Risk and Controls
What Global Business Services Risk and Controls contributes to Cardinal Health GBS Risk and Controls supports Global Business Financial Services by helping maintain a robust control environment, i…
Production Associate - Canton - 17hr
Quick Hire Staffing is currently seeking a dedicated and reliable Production Associate to join our team in Canton. As a Production Associate, you will be responsible for performing seat assembly oper…
Dry Van & Flatbed CDL Driver
Hiring Experienced OTR CDL-A Drivers – Dry Van & Flatbed Pay: Dry Van – $0.65 per mile Flatbed – $0.70 per mile + $25 per tarp Miles: Average 3,000–4,000 miles per week (all miles paid …
Account Manager - Commercial Landscaping
Job Description Job Description We are seeking an experienced Account Manager to oversee a portfolio of commercial landscaping accounts. This role serves as the primary client contact, ensuring…