Staff Security Engineer - Bot & Traffic Defence
Core
Own the technical strategy and roadmap for bot, scraping, and application-layer DDoS defence end-to-end, building controls and signals to protect a high-traffic wholesale marketplace.
Role type
Staff Security Engineer (Bot & Traffic Defence)
Builds
Scalable, reusable frameworks for edge security, distributed rate limiting, and bot detection signals.
Domain
Cybersecurity, Bot Mitigation, DDoS Defence, Edge Security
Deliverable
production ML models
Required skills
Hands-on operational ownership of CDN/edge security platforms, defending high-traffic sites against scraping and DDoS, bot detection signal design, distributed layer 7 rate limiting, quantitative detection rigor, code-based traffic problem solving, OOP programming (Kotlin/Java/Python/TypeScript), infrastructure as code, incident response leadership, cross-team ownership modeling, executive risk communication.
Preferred skills
Experience with TLS/HTTP fingerprinting, mobile device attestation, Terraform, AWS/GCP, Kubernetes.
Technologies
Kotlin, TypeScript, Python, WAF, rate limiting, bot management, challenge policies, AWS, OCI, Terraform, Kubernetes, HTTP, JSON, Protocol Buffers
Responsibilities
Author and tune edge security controls as code, build higher-confidence bot and trust signals, design and operate distributed layer 7 rate limiting, make incident response for bot and DDoS events a solved problem, lead post-incident reviews, build tooling for service teams, land a durable ownership model across teams, make bot posture legible to leadership.
Seniority
Staff, hands-on IC with strategy & mentorship
