
201 - 500 employees
Founded 2021
👥 HR Tech
☁️ SaaS
🤝 B2B
HR Tech • SaaS • B2B
RemoFirst is a global HR platform and Employer of Record (EOR) provider that helps companies hire, onboard, pay, and manage employees and contractors in 185+ countries without creating local entities. The company combines AI-powered tools (recruiter agent, payroll reconciliation, HR task manager) with services such as global payroll in multiple currencies, contractor payments in 150+ countries, visas and work permits in 110+ countries, international health insurance, background checks, and compliance support. RemoFirst targets fast-growing teams and enterprises, offering a single SaaS platform for global hiring, payroll, benefits, and workforce management, plus resources and integrations for HR and finance teams.
🔥 0 minutes ago
AWS
Cloud
Django
Java
Kafka
Kubernetes
MongoDB
Postgres
Python
RabbitMQ
SDLC
Spring
Spring Boot
SpringBoot
Terraform
Improve your chances of getting an interview by checking your resume score before you apply.

201 - 500 employees
Founded 2021
👥 HR Tech
☁️ SaaS
🤝 B2B
HR Tech • SaaS • B2B
RemoFirst is a global HR platform and Employer of Record (EOR) provider that helps companies hire, onboard, pay, and manage employees and contractors in 185+ countries without creating local entities. The company combines AI-powered tools (recruiter agent, payroll reconciliation, HR task manager) with services such as global payroll in multiple currencies, contractor payments in 150+ countries, visas and work permits in 110+ countries, international health insurance, background checks, and compliance support. RemoFirst targets fast-growing teams and enterprises, offering a single SaaS platform for global hiring, payroll, benefits, and workforce management, plus resources and integrations for HR and finance teams.
• Run regular internal penetration tests and vulnerability scans against Python/Django, FastAPI, and Java/Spring Boot services • Coordinate independent third-party penetration tests, including scoping, assessing findings, and driving remediation • Identify multi-tenancy and authorization vulnerabilities • Partner with engineers on code review and threat modeling • Own and maintain the internal security library • Own SAST/DAST tooling and dependency security posture • Secure PostgreSQL, MongoDB, Kafka, and RabbitMQ infrastructure layers • Build secure SDLC guardrails and paved roads • Enforce least privilege across AWS IAM, Service Control Policies, EKS, RDS, and S3 • Harden container and Kubernetes workloads and secrets handling • Instrument cloud security controls and alert on misconfigurations • Own the architecture and security of the Auth0 implementation • Extend internal authentication to support SCIM provisioning • Implement OIDC federation with enterprise identity providers • Own API security, including authorization logic, token handling, and multi-tenant failure modes • Define guardrails for AI initiatives and control data flows to LLM prompts • Secure and shape the model pipeline
• Deep hands-on application security experience in an engineering organization, including code review, threat modeling, and offensive testing • Ability to read and assess Python and Java code • Familiarity with Django, FastAPI, Spring Boot, Kafka, RabbitMQ, PostgreSQL, and MongoDB • Strong AWS security experience with IAM, Service Control Policies, EKS, RDS, and S3 • Practical experience securing customer-facing identity using Auth0 or equivalent • Working understanding of SAML, OIDC, and API-based security • Ability to explain security decisions in terms of risk and business need • Ability to build and maintain security tooling and automation • Comfortable with REST APIs, webhooks, and Terraform or similar configuration-as-code tools • AI/LLM security experience is nice to have • Fintech, payroll, or high-stakes personal-data domain exposure is nice to have • Experience in a globally distributed, remote-first company is nice to have • Familiarity with the EOR or global employment space is nice to have • English proficiency is required
• 100% remote work — Work from anywhere, with PTO regulated by local statutory requirements • No office required, ever • Up to 90 days paid parental leave for new parents, with additional protections as required locally • Monthly wellbeing stipend for fitness, mental health, or downtime • Startup environment with opportunities to influence decisions and grow quickly • Build and scale from scratch in a hyper-growth environment • Work for a market leader trusted by companies like Microsoft and Mastercard • Respectful, kind, diverse, and inclusive culture • English proficiency support through clear communication and globally distributed collaboration
Apply Now🕒 June 24
10,000+ employees
Application Engineer in HVACR providing technical support and training on refrigeration systems and technologies across Africa. Engaging with customers and collaborating with multicultural teams.
Swift