Remote Otter LogoRemoteOtter

Software Engineer - Certified Packages - Remote

Posted 2 days ago
Software Development
Full Time
USA

Overview

Join Socket's Certified Packages team to build and scale our patching infrastructure that delivers secure, vetted packages to developers worldwide. You'll be at the forefront of supply chain security, creating patches for critical vulnerabilities and building the systems that help the entire open source ecosystem stay secure.

In Short

  • Master Socket's Certified Packages workflows, tools, and patching processes
  • Lead patching efforts for high-impact vulnerabilities across npm packages
  • Scale patch production to dozens or hundreds of patches per week
  • Help select and prioritize high-value patches for free community release
  • Provide technical input on patch prioritization based on ecosystem and customer impact
  • Build and improve automated patching infrastructure and tooling
  • Design and implement scalable patch generation and delivery systems
  • Develop automated vulnerability detection and patch creation workflows
  • Build APIs and integrations to deliver certified packages
  • Create tooling for patch quality assurance and testing

Requirements

  • 3+ years of software engineering experience with production systems
  • Strong proficiency in Node.js, JavaScript, and TypeScript
  • Experience with package managers (npm, yarn, pnpm) and the JavaScript ecosystem
  • Understanding of software security concepts and vulnerability management
  • Experience building and scaling APIs and data processing pipelines
  • Familiarity with automated testing, CI/CD, and deployment systems

Benefits

  • Provide free access to patches for the top 100 most critical CVEs
  • Give developers quick, safe remediation options for widely-used packages
  • Help secure the software supply chain for millions of developers
Socket logo

Socket

Socket is a forward-thinking company dedicated to empowering developers and security teams by streamlining the process of shipping software while minimizing security-related busywork. With a mission to help organizations safely discover, audit, and manage their open source code, Socket has garnered a loyal customer base, including notable names like Figma and Vercel. Founded by Feross Aboukhadijeh, a seasoned expert in open source software, the company has successfully raised $65 million in funding from top investors in the industry. Socket prides itself on its commitment to excellence, urgency, rigorous thinking, trust, ownership, and a customer-centric approach, making it a leader in securing software supply chains.

Share This Job!

Save This Job!

Similar Jobs:

Astral logo

Software Engineer, Package Management - Remote

Astral

42 weeks ago

Join Astral to develop high-performance developer tools in a remote, collaborative environment.

United States
Full-time
Software Development
Nava logo

Software Engineer (C#) - Remote

Nava

3 weeks ago

Nava is seeking a Software Engineer (C#) to design and build effective software solutions for government services.

Worldwide
Full-time
Software Development
Lingraphica logo

Software Engineer - C# - Remote

Lingraphica

4 weeks ago

Join Lingraphica as a Software Engineer to develop innovative AAC devices that enhance communication for individuals with speech impairments.

USA
Full-time
Software Development
84,000 - 100,000/year
Invicti Security logo

Software Engineer C++ - Remote

Invicti Security

24 weeks ago

Join Invicti as a Software Engineer specializing in C++ to develop core product components and enhance your skills in a dynamic team.

Brno, Czech Republic
Full-time
Software Development
Veeva Systems logo

Software Engineer - C# - Remote

Veeva Systems

25 weeks ago

Join Veeva Systems as a Software Engineer specializing in C# to develop innovative Windows applications in a flexible work environment.

USA
Full-time
Software Development
$85,000 - $225,000/year