09 Aug
|
Manticoreai
|
Bengaluru
09 Aug
Manticoreai
Bengaluru
Role & responsibilities
Remote, anywhere in India. Full time, working with a small senior team across Singapore and the US.
ManticoreAI is an AI-native offensive security company. Our platform runs real penetration tests using AI agents, proves what is actually exploitable instead of pattern matching, and delivers CREST-certified, audit-grade findings in 48 hours that Big 4 auditors accept for SOC 2, PCI DSS and ISO 27001. Then we close the loop no one else closes. We generate the virtual patch that blocks the exploit and the code fix that removes it.
The platform is in production with paying enterprise customers across APAC and the US. You would be the first dedicated engineer on our customer-facing SaaS application, reporting to the founder.
What you would own
- The Nuxt 4 / Vue 3 application, 100+ pages and hundreds of typed API routes, running on Cloudflare Workers
- Supabase PostgreSQL with deep row-level security, multi-tenant including a white-label mode
- The AWS side of assessments: the EC2 lifecycle that launches, provisions and tears down the machines our scanner runs on, plus S3 for artifacts and reports
- Stripe billing: subscriptions, credit packs, vouchers and invoices
- Async orchestration on Trigger.dev: assessment launches, report generation, email digests, ticketing sync
- Integrations with Jira, ServiceNow, Slack, GitHub, GitLab and Azure DevOps
- How all of it looks and feels. We have no designer. You take a rough spec to a screen a CISO takes seriously.
This is a senior individual contributor role with real ownership of one large surface, and a clear path to leading the pod as we grow it. It is not a ticket-taking role. You propose what ships next, and usually why.
One thing to be honest about: we are a small team moving fast. This is not a 9 to 6 queue, and some weeks something breaks on a Friday night and we fix it. We do not manufacture urgency and we are not asking you to burn out. But if you want a predictable backlog handed to you, this is not the right seat.
Preferred candidate profile
Must have
- 5+ years shipping production TypeScript across the full stack, with Vue or React on the front end
- Strong PostgreSQL. Schema design, query performance and row-level security. You can read a policy, explain why it is slow, and rewrite it correctly.
- Built and shipped multi-tenant B2B SaaS, including the unglamorous parts: invitations, roles, billing edge cases, downgrade paths
- Real AWS experience. EC2, IAM, S3, and you have debugged something in production that was not in the documentation.
- Design sense you can prove. You have shipped interfaces that look considered, without a designer holding your hand. Be ready to send a link.
Good to have:
- Nuxt specifically (about two weeks to ramp if you are coming from React)
- Supabase rather than roll-your-own Postgres
- Cloudflare Workers
- Stripe or comparable billing
- Trigger.dev or another background job system
- Any interest in offensive security. We are a security company and it is more fun if you care.
We also look for:
- Daily use of AI coding tools such as Claude Code, Cursor or Copilot. This codebase is built to be worked that way.
- Robust written English. The team is async across timezones and most decisions happen in writing.
- You read documentation and you update it. Our codebase is heavily documented and we expect it to stay that way.
📌 Senior Full-Stack Engineer (Remote, India) (Bengaluru)
🏢 Manticoreai
📍 Bengaluru