Senior Full Stack Engineer at Nomad | CA | Rezi

Senior Full Stack Engineer at Nomad

Senior Full Stack Engineer

Nomad · CA

1 months ago

Senior Full Stack Engineer

Nomad · CA

2 months ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

Nomad is building the financial operating system for fleets, offering fuel cards, real-time transaction processing, invoicing, and working-capital finance, enhanced by AI. We are a small, fast-moving team dedicated to customer success, prioritizing accuracy in all financial operations.

Responsibilities

  • Design, develop, and maintain secure REST APIs using Node.js.
  • Architect and implement cloud solutions using Google Cloud Platform (GCP) services, particularly Compute Engine, Cloud CDN, and Identity Platform.
  • Collaborate with front-end teams to develop user-centric applications using React.
  • Review code and provide technical guidance to team members.
  • Troubleshoot and resolve production issues.
  • Implement and maintain security best practices across the application stack.
  • Handle client and customer information in accordance with Nomad’s information security and data protection policies.
  • Apply the principle of least privilege when designing, granting, and reviewing access to systems, data, and production environments.
  • Manage application secrets, credentials, and encryption keys securely.
  • Identify, triage, and remediate security vulnerabilities, including timely patching and dependency updates.
  • Manage CI/CD pipelines through Bitbucket and related DevOps tools.
  • Follow defined change management processes, including peer code review, testing, and documented approval before changes are released to production.
  • Maintain separation between development, testing, and production environments and ensure deployment controls are enforced.
  • Implement and maintain logging, monitoring, and alerting across applications and infrastructure.
  • Participate in incident detection, response, and post-incident reviews, and escalate security incidents through designated channels.
  • Create and maintain accurate, current technical documentation, including system architecture, data flows, API specifications, and security configurations.
  • Document all production changes, deployments, access grants, and security-relevant decisions.
  • Maintain runbooks and operational procedures for the systems this role supports.
  • Adhere to and help maintain IT and engineering controls relevant to SOC 2.
  • Support SOC 2 and other audits by providing requested documentation and evidence.
  • Escalate decisions that materially affect security posture or client data to the Chief Product Officer.

Requirements

  • 5–7+ years of professional software development experience.
  • Advanced Node.js expertise, including Express.js or similar frameworks, asynchronous programming patterns, event-driven architecture, Node.js clustering and PM2, and proficiency in the npm ecosystem.
  • Strong TypeScript/JavaScript skills, including ES6+ features, modern JavaScript patterns, TypeScript type system, interfaces, generics, JavaScript build tools (Webpack, Babel), and unit testing with Jest or Mocha.
  • Front-end development with React, including building and maintaining single-page applications, React hooks, state management, lifecycle methods, integration of RESTful APIs and real-time data streams, and component-driven architecture.
  • Demonstrated Google Cloud Platform (GCP) expertise, including Identity Platform (user management, authentication, OAuth2, JWT), Compute Engine (instance groups, auto-scaling, load balancing, VPC networking, custom images), and Cloud CDN (content delivery, cache optimization, origin configuration, SSL/TLS, edge functions).
  • Deep understanding of web security, including OAuth 2.0, OpenID Connect, JWT, XSS, CSRF, SQL injection prevention, rate limiting, DDoS protection, security headers, and CORS configuration.
  • API development expertise, including RESTful API design principles, API versioning, request validation, error handling, API documentation (Open API/Swagger).
  • Security, compliance, and documentation practices, including familiarity with SOC 2, ISO 27001, experience in formal change management and audit-evidenced environments, and secure software development lifecycle (SDLC) practices.
  • Bitbucket pipeline expertise, including YAML configuration, multi-environment deployment strategies, artifact management, and integration with third-party tools.
  • Version control proficiency, including Git branching strategies, code review processes, merge conflict resolution, and repository maintenance.

Skills

  • Node.js
  • Express.js
  • TypeScript
  • JavaScript
  • React
  • Google Cloud Platform (GCP)
  • Compute Engine
  • Cloud CDN
  • Identity Platform
  • REST APIs
  • OAuth 2.0
  • OpenID Connect
  • JWT
  • Web Security
  • Bitbucket Pipelines
  • Git
  • Jest
  • Mocha
  • Webpack
  • Babel
  • SOC 2
  • ISO 27001

Location

  • Remote

Work Type

  • Full-time

Experience Level

  • Senior

Benefits

  • Competitive compensation plan
  • Flexible work schedule
  • Growth and development opportunities
  • Team outings and social events
  • Excellent extended medical, dental, and vision benefits plan

About the Company

  • Nomad is building the financial operating system for fleets: fuel cards, real-time transaction processing, invoicing, and working-capital finance, increasingly automated by production AI.
  • We are a small, fast-moving team that cares deeply about doing right by our customers, which in our business means getting the numbers exactly right, every time.