Too Long; Didn't Read
The Backend will be running on Node.JS. The security that will underlay the interfacing will be JSON Web Tokens. An interceptor is a service that will break any requests sent from Angular, clone it and add a token to it before it is finally sent. In the interceptor of the Angular App, all requests will be checked for a 401 status and upon receiving such a request, the token stored at Angular will be removed and the user will be logged out of all sessions, sending him to the login screen.