At Cloudera, we empower people to transform complex data into clear and actionable insights. With as much data under management as the hyperscalers, we're the preferred data partner for the top companies in almost every industry. Powered by the relentless innovation of the open source community, Cloudera advances digital transformation for the world’s largest enterprises. We are seeking a highly skilled and motivated Staff Full Stack Engineer (contract position) to join our Product Security team, focusing on the development and enhancement of Heimdall, our internal vulnerability metrics and dashboard capability. This role demands an engineer with end-to-end full lifecycle development experience, adept at translating requirements, UI mockups, and specifications into a robust, reliable product that our internal stakeholders can trust for critical security insights. As a Staff Full Stack Engineer you will… Learn and Adapt Get familiarized with Cloudera’s products and services end-to-end and gain a full appreciation for the product and development lifecycle. Understand our open source and proprietary ecosystem, and identify areas for improvement in terms of current CVE remediation efforts. Design and Development: Identify tooling and frameworks for improving developer productivity - AI/ML Tools that can expedite in remediating CVE fixes Design and develop POCs to enterprise-class solutions to enable the delivery of high-quality remediation across the entire customer-facing Cloudera stack. Process: Work alongside the product security team to evaluate and enhance existing security tools (SCA, SAST, DAST, etc.) and explore new technologies to improve vulnerability detection and remediation speed/accuracy. Integrate enhanced security scanning into CI/CD pipelines. Contribute to the development of a proactive dependency management strategy. Participate in defining and enforcing clear CVE SLAs and accountability. Collaboration & Communication: Work closely with cross-functional teams including Product Security, Engineering Component Teams, QE, Release Engineering, and Customer Support. Contribute to regular reporting on CVE debt reduction, SLA adherence, and other key metrics. Actively participate in daily stand-ups and other team meetings.