Cloudflare
Cloudflare
Cloudflare provides a connectivity cloud that helps organizations secure and connect employees, devices, applications, networks, and data across on-premise environments, public clouds, SaaS platforms, and the internet. Its platform brings together application security, network protection, performance optimization, and visibility tools, helping teams reduce technical complexity while building and delivering software more efficiently. Cloudflare’s work spans cloud and edge delivery, secure networking, and resilient digital infrastructure, making it relevant to professionals working across cybersecurity, networking, cloud platforms, and application performance.

Vulnerability Defense Software Engineer at Cloudflare (Hybrid)

Build scalable security software for Cloudflare’s Cloudforce One threat operations team. Turn vulnerability research and defensive expertise into practical systems, services, and investigative workflows.

Description

  • Build, operate, and scale distributed tools and services that turn security expertise into evidence-based systems and workflows.
  • Work with security practitioners to map their processes, identify bottlenecks, and uncover opportunities for automation.
  • Strengthen the architecture of internal and customer-facing services to improve reliability, performance, and maintainability.
  • Evaluate complex technical topics, explain them clearly, and help teams set priorities.
  • Coach fellow developers while advancing shared expertise and practices for modular, reusable, thoroughly tested code.
  • Help resolve technical incidents, including potential on-call support outside regular working hours.
  • Convert sophisticated security requirements and investigative techniques into resilient, scalable, high-performance applications.

Requirements

  • Working knowledge of cybersecurity principles, including threat modeling, attack techniques, trust boundaries, exploitability, and defensive controls.
  • Familiarity with incident response processes, network containment, and remediation practices.
  • Hands-on experience researching vulnerabilities or developing exploits and turning findings into actionable mitigations.
  • Experience using AI-assisted development tools and designing agentic AI workflows.
  • At least five years of experience developing large-scale software applications, ideally distributed systems.
  • Experience designing and integrating RESTful APIs and/or gRPC services.
  • Knowledge of SQL and widely used relational databases such as PostgreSQL.
  • Ability to define and deliver solutions independently in ambiguous environments.
  • Professional experience writing production software in Go and/or TypeScript.
  • Strong debugging and performance optimization abilities.
  • Expertise in producing well-tested code.
  • Interest in serving as a technical mentor to teammates.
  • May require authorization to receive software or technology controlled by U.S. export laws without employer sponsorship for an export license.

Benefits

  • Participation in an equity plan.
  • Medical and prescription drug insurance.
  • Dental insurance.
  • Vision insurance.
  • Flexible spending accounts.
  • Commuter spending accounts.
  • Fertility and family-forming benefits.
  • On-demand mental health support and an Employee Assistance Program.
  • Global travel medical insurance.
  • Short- and long-term disability insurance.
  • Life and accident insurance.
  • 401(k) retirement savings plan.
  • Employee stock participation plan.
  • Flexible paid time off for vacation and sick leave.
  • Leave programs covering parental, pregnancy health, medical, and bereavement needs.

Related Jobs