Mindpex is an AI-powered HR intelligence platform built using Next.js, Node.js, Python, AI/LLM pipelines, PostgreSQL, and cloud infrastructure.
Our engineering team is in the final integration phase, and we're looking for an experienced
DevSecOps / Security Engineer
to perform the
final security and deployment review
before production.
This is
not a feature development role
.
Your responsibility is to independently verify that the platform is secure, production-ready, and safe to deploy.
Responsibilities
You will:
- Review the complete application architecture.
- Perform end-to-end functional testing.
- Perform application security testing.
- Perform basic penetration testing.
- Review authentication and authorization (JWT, sessions, access control).
- Review API security across Node.js and Python services.
- Review cloud deployment configuration.
- Review Docker, workplace variables, and secrets management.
- Review database security and access controls.
- Review AI/LLM API security and sensitive data handling.
- Identify security vulnerabilities and production risks.
- Validate production deployment readiness.
- Re-test fixes provided by the engineering team.
Final Deliverables
Provide a structured report containing:
✅ Functional Testing Report
- Major bugs found
- Regression issues
- Critical blockers
Categorize findings as:
- Critical
- High
- Medium
- Low
✅ Final Recommendation
One of the following:
- ?
GO
– Ready for production deployment
- ?
GO with Conditions
– Ready after specified fixes
- ?
NO-GO
– Critical issues must be resolved before deployment