About the role
As a Security Engineer at Vorpcel, you will turn real attack behavior into reliable product protections. You will design detection and enforcement logic, investigate evasions and use production evidence to improve coverage without creating unacceptable false positives.
Your work will span application and network security, attack and abuse detection, testing tooling, telemetry and the services that deliver protections safely at scale. Performance, reliability and explainability are part of the security outcome, not afterthoughts.
You will collaborate closely with penetration testing, threat intelligence, product and platform engineering, and you will own changes from initial research through production validation.
What you will do
- Design, implement and tune detection rules, security controls and enforcement logic.
- Translate vulnerabilities, attack techniques and threat intelligence into production protections.
- Measure detection coverage, false positives, latency and operational impact using representative traffic.
- Investigate bypasses, evasions, abuse patterns and unexpected production behavior.
- Build automated test harnesses, replay tools and quality gates for security logic.
- Analyze HTTP, TLS, network and application telemetry to identify gaps and new protection opportunities.
- Write secure, tested and maintainable services and tooling in Go and Python.
- Participate in design reviews, code reviews, incident response and post-incident hardening.
- Document detection behavior, assumptions, limitations and safe operational procedures.
- Partner with research and product teams to prioritize security improvements with measurable outcomes.
What we look for
- Strong foundation in application security, network security, detection engineering or abuse prevention.
- Deep understanding of HTTP, TLS, authentication and common attacks against modern web applications and APIs.
- Ability to write clean, tested production code in Go, Python or both.
- Experience reasoning about detection quality, false positives, performance and reliability together.
- Ability to investigate complex technical behavior using logs, metrics, traces and packet-level evidence.
- Familiarity with automated testing, version control, code review and production change practices.
- Clear technical communication and ownership from investigation through production validation.
- Practical security judgment and care when working with customer traffic and sensitive data.
- Nice to have: experience with WAFs, bot management, rate limiting or high-throughput network systems.
- Nice to have: experience with cloud security, containers, eBPF or machine-learning-assisted detection.