StickmanCyber
Website:
stickmancyber.com
Job details:
StickSecure is a cybersecurity SaaS platform helping organizations manage compliance (ISO 27001, SOC 2, Essential Eight, NIST), risk, and penetration testing — all in one place. Our platform integrates with tools like CrowdStrike, Okta, Jira, Cloudflare, ServiceNow, Intune, Google Workspace, Google SecOps, and Detectify to deliver automated evidence collection and real-time security posture reporting.
Summary:
We're looking for a backend-focused full-stack developer to join our small, fast-moving engineering team. Your primary focus will be on our .NET 9 API - building and maintaining features across our modular backend, writing integrations with third-party security platforms, and fixing bugs. You'll also own frontend tickets alongside our dedicated frontend developer, working across our React 19 / TypeScript SPA built on Ant Design, Redux Toolkit, and TanStack React Query - so genuine full-stack capability is a must, even if most of your time sits on the backend.
Responsibilities:
- Building and extending RESTful APIs in ASP.NET Core (.NET 9)
- Developing and maintaining integrations with security platforms (CrowdStrike, Okta, Jira, Cloudflare, ServiceNow, Intune, Google Workspace/SecOps, Detectify)
- Working across our modular architecture - Compliance, Risk Management, Penetration Testing, and Dashboard modules
- Contributing to compliance automation pipelines including evidence collection, AI-assisted assessments, and report generation (PDF/Word/Excel)
- Building and maintaining background job workflows using Hangfire with multi-tenant queue isolation
- Writing queries and migrations using Entity Framework Core and Dapper against SQL Server
- Debugging performance and reliability issues across the full stack
- Frontend development in React 19 / TypeScript using Ant Design, Redux Toolkit, and TanStack React Query - picking up tickets alongside our dedicated frontend developer
Skills & Qualifications:
- Strong C# and .NET (ideally .NET 8/9, but .NET 6+ considered)
- ASP.NET Core - REST API design, middleware, auth pipelines
- Entity Framework Core and relational database design (SQL Server)
- Experience with clean / layered architecture (Domain, Application, Infrastructure separation)
- Working knowledge of multi-tenancy patterns
- React 19 and TypeScript (not just "React/TypeScript (Vite)" - be specific)
- Ant Design (antd v6) - the entire UI is built on it, knowing it is non-negotiable
- Redux Toolkit + React Redux - app-wide state management
- TanStack React Query (v5) - all server state / API data fetching goes through this
- React Router (v7) - routing
- Experience consuming and building integrations against third-party REST APIs
- Comfortable with Azure services - Blob/Queue Storage, Key Vault, Application Insights
- Git and PR-based development workflow
Desired Skills:
- 4+ years of industry experience in backend development.
- Bachelor’s degree in computer science, Software Engineering, Information Technology, or a related technical discipline — or equivalent practical experience.
- Experience with Steampipe (writing or maintaining plugins/mods)
- Powerpipe mod development (compliance benchmarks, dashboards)
- Knowledge of Hangfire multi-tenant/concurrency patterns
- SignalR real-time communication
- Redis caching and distributed locking
- QuestPDF or OpenXML document generation
- Familiarity with security compliance frameworks: ISO 27001, SOC 2, Essential Eight, NIST CSF
- AI/LLM integration experience (we use AI-assisted control assessments)
- FluentValidation, Ardalis.Specification, MediatR or similar
- Understanding of background job patterns (Hangfire or equivalent)
- Auth0 or similar OAuth2/OIDC identity platform experience
- Familiarity with Serilog, structured logging, and observability tooling
You'll Thrive Here If You:
- Are comfortable navigating a large, modular codebase independently
- Can take a loosely defined feature or bug report and drive it to completion
- Care about clean code and sensible abstractions without over-engineering
- Have an interest in or background in cybersecurity, compliance, or SecOps tooling
- Are happy working async with a small, senior-leaning team
Click on Apply to know more.