الوصف الوظيفي
مهندس برمجيات — التقنية المالية (خلفية في المصرفية والأمان) الشركة: شركة رائدة في مجال التجزئة والتقنية المالية مقرها الخليج عن الشركة: نحن شركة رائدة في مجال التجزئة والتقنية المالية مقرها الخليج، نعمل على بناء منتجات المحافظ الرقمية للمستهلكين وأدوات التجارة الإلكترونية للتجار.
تتضمن منصتنا تطبيق هاتف محمول نشطًا وموجّهًا باللغة العربية أولاً للمستهلكين، ولوحة قيادة برمجيات كخدمة (SaaS) متعددة المستأجرين تخدم التجار، وتعمل بنهج استباقي في الالتزام والامتثال التنظيمي.
يثق بنا عملاؤنا بخصوص قيمة مالية حقيقية — فالدقة والأمان ليسا أمراً اختيارياً.
الدور الوظيفي: ستكون أحد أوائل المهندسين المعينين، حيث ستعمل مباشرة مع المؤسس المشارك التقني عبر كامل الطبقات (Full Stack): خدمات الخلفية، تطبيق الهاتف للمستهلك، ولوحة قيادة التجار.
ستتولى تقديم الميزات من البداية إلى النهاية — بدءاً من تصميم واجهات برمجة التطبيقات (API) وحتى النشر — على منتج يجب أن يكون فيه كل رصيد دقيقاً وكل نقطة نهاية آمنة.
نبحث بشكل خاص عن شخص يتمتع بخلفية في القطاع المصرفي أو المؤسسات المالية وعقلية أمنية قوية.
أنت تدرك لماذا يجب أن يتوازن دفتر الأستاذ، ولماذا يجب أن تكون العمليات متكافئة القوة (Idempotent)، ولماذا يجب التعامل مع كل نقطة نهاية وعملية رفع وسير تسجيل دخول كسطح هجوم محتمل.
ما ستفعله • بناء وصيانة خدمات الخلفية (NestJS, TypeScript, PostgreSQL/Prisma, Redis, BullMQ) • المساهمة في تطبيق الهاتف للمستهلكين (React Native / Expo) ولوحة قيادة التجار (Next.
js) • بناء وتعزيز التكاملات: واجهات برمجة تطبيقات منصات التجارة الإلكترونية الخارجية (OAuth, webhooks)، مزودي خدمات SMS/OTP، تغذيات أسعار السوق المباشرة، ومزودي خدمات الدفع • تحمل مسؤولية سلامة المعاملات لعمليات المحفظة: الأرصدة، سجلات المراجعة، والمطابقة • تطبيق أفضل الممارسات الأمنية عبر جميع الطبقات: عمليات المصادقة ورمز OTP، تحديد معدل الطلبات (rate limiting)، التحقق من المدخلات، التعامل الآمن مع الملفات، وحماية بيانات العملاء • المشاركة في المراجعات الأمنية وتعزيز أمان الخدمات الحالية • المساهمة في تطوير الميزات المدفوعة بالامتثال (تراخيص الدفع، التكامل مع هيئات الضرائب، ومستلزمات مكافحة غسيل الأموال) • نشر وتشغيل الخدمات في بيئة الإنتاج (الانضباط في Linux, PM2, nginx, وهجرات PostgreSQL) المتطلبات • خبرة من 2 إلى 4 سنوات في هندسة البرمجيات، تتضمن خبرة في بنك أو شركة مدفوعات أو مؤسسة مالية (الأنظمة المصرفية الأساسية، القنوات الرقمية، المدفوعات، أو ما شابه) • إتقان قوي لـ TypeScript/Node.
js؛ خبرة في بيئة الإنتاج باستخدام NestJS أو إطار عمل مماثل • أساسيات أمنية قوية: الوعي بمعايير OWASP، المصادقة الآمنة وإدارة الجلسات، إدارة الأسرار، والتعامل الآمن مع بيانات المستخدم والملفات المرفوعة • مهارات قوية في قواعد البيانات العلاقية (فضلًا PostgreSQL) والتعامل المنضبط مع هجرات الإنتاج • فهم الهندسة البرمجية ذات المعايير المالية: تكافؤ القوة (Idempotency)، المعاملات الذرية (Atomic transactions)، المطابقة، وتتسجيل المراجعة • خبرة في React Native / Expo، بما في ذلك مراحل التقديم والمراجعة في المتاجر • خبرة في تصميم واستخدام واجهات برمجة تطبيقات REST والتكاملات مع الأطراف الخارجية (تدفقات OAuth، webhooks، وتدوير الرموز) • إتقان اللغتين العربية والإنجليزية متطلبات إضافية • خبرة عملية في الأمان: التعرض لاختبار الاختراق، التدقيق الأمني، أو أعمال تعزيز الأمان في مؤسسة مالية • خبرة في Redis وزمام مهام الخلفية (BullMQ أو ما شابه) • دراية بمنظومة التقنية المالية في الخليج: الأطر التنظيمية، شبكات الدفع المحلية، والمصرفية المفتوحة • خبرة في التكامل مع منصات التجارة الإلكترونية الإقليمية • أساسيات DevOps: nginx, PM2, CI/CD، وإدارة الخوادم
Job description
Software Engineer — Fintech (Banking & Security Background) Company: A leading Gulf-based retail & fintech company About the Company: We are a leading Gulf-based retail and fintech company building consumer digital wallet products and merchant e-commerce tools.
Our platform includes a live, Arabic-first consumer mobile app and a multi-tenant SaaS dashboard serving merchants, operated with a proactive regulatory and compliance posture.
Our customers trust us with real financial value — correctness and security are not optional.
The Role You'll be one of the first engineering hires, working directly with the technical co-founder across the full stack: backend services, the consumer mobile app, and the merchant dashboard.
You'll ship features end-to-end — from API design through deployment — on a product where every balance must be exact and every endpoint must be secure.
We're specifically looking for someone with a banking or financial institution background and a strong security mindset.
You understand why a ledger must balance, why operations must be idempotent, and why every endpoint, upload, and login flow must be treated as a potential attack surface.
What You'll Do • Build and maintain backend services (NestJS, TypeScript, PostgreSQL/Prisma, Redis, BullMQ) • Contribute to the consumer mobile app (React Native / Expo) and the merchant dashboard (Next.
js) • Build and harden integrations: third-party e-commerce platform APIs (OAuth, webhooks), SMS/OTP providers, live market price feeds, and payment providers • Own transactional integrity for wallet operations: balances, audit trails, reconciliation • Apply security best practices across the stack: authentication and OTP flows, rate limiting, input validation, secure file handling, and protection of customer data • Participate in security reviews and hardening of existing services • Contribute to compliance-driven feature work (payments licensing, tax-authority integration, AML requirements) • Deploy and operate services in production (Linux, PM2, nginx, PostgreSQL migrations discipline Requirements • 2–4 years of software engineering experience, including experience at a bank, payments company, or financial institution (core banking, digital channels, payments, or similar) • Strong TypeScript/Node.
js; production experience with NestJS or a comparable framework • Solid security fundamentals: OWASP awareness, secure authentication and session handling, secrets management, and safe handling of user data and uploads • Solid relational database skills (PostgreSQL preferred) and disciplined handling of production migrations • Understanding of financial-grade engineering: idempotency, atomic transactions, reconciliation, and audit logging • React Native / Expo experience, including store submission and review cycles • Experience designing and consuming REST APIs and third-party integrations (OAuth flows, webhooks, token rotation) • Fluent Arabic and English Additional Requirements • Hands-on security experience: penetration testing exposure, security audits, or hardening work at a financial institution • Redis and background job queues (BullMQ or similar) • Familiarity with the Gulf fintech ecosystem: regulatory frameworks, local payment networks, open banking • Experience integrating with regional e-commerce platforms • DevOps fundamentals: nginx, PM2, CI/CD, server administrationf