Cloudwave API Security Patch

Employer not named by the sourceRemote

Cyber SecurityFull Stack

Apply on the company’s site

Frontier is not the employer and does not collect applications.

About this role

Web Security, Software Testing, Penetration Testing, Cloud Security, Regression Testing, API Development, API Integration, API Testing, Incident Response, Security Auditing · Cloudwave needs an immediate security refresh focused solely on patching the API layer. Current scans flag several exploitable endpoints, so I need an experienced security-minded developer to:

• Audit the existing API codebase, reproduce the reported weaknesses, and document each finding. • Develop and apply patches that fully remediate those vulnerabilities without breaking current functionality. • Supply regression and penetration test reports that prove the fixes hold up under load.

The back end is written in Node.js with Express and sits behind AWS API Gateway, so familiarity with OWASP, JWT handling, and common AWS security patterns will help you move quickly. I will provide repository access, scan results, and staging credentials once we agree on scope.

Acceptance criteria: every critical or high-severity issue in the supplied report is resolved, all unit and integration tests pass, and a follow-up scan returns a clean bill of health.

If you have recent experience hardening APIs and can turn around a solid patch set fast, let’s get started.