Seeking Application Security Engineer for Clio, a leading legal AI technology firm. Focus on security vulnerabilities and building partnerships with development teams.
Responsibilities
Write, review, debug, and implement tools to help developers avoid security flaws;
Build partnerships with development teams and advise on security best practices;
Contribute to collective developer education by driving security awareness and knowledge amongst the product organization;
Provide detailed guidance and support to teams in vulnerability remediation, and develop frameworks, guidelines, and systematic fixes for recurring vulnerabilities;
Resolve issues, navigate ambiguity, and maintain positive working relationships with researchers in our Bug Bounty program;
Identify and implement tools for automated application scanning, static analysis and related tools;
Perform penetration testing, and offensive campaigns against internal assets;
Perform reactive incident response and forensics when a security event occurs;
Perform proactive research to detect new attack vectors;
Elevate and educate our security culture within Clio, contributing to our cultural values;
Requirements
Experience in Application or Product Security, with a focus on offensive security and penetration testing
COMSEC and Security Specialist at Telesat coordinating security for COMSEC materials and Contract Security Programs. Collaborating with government agencies and leading security audits.
Systems and Data Security Manager at Mod Op overseeing IT security operations and compliance. Managing SOC 2 Type II compliance and cloud security across systems and environments.
AWS Cloud Security Engineer strengthening cloud security posture at Fluent, Inc. Focused on implementing security controls and maintaining compliance across AWS.
Senior Advisor assisting in property management and building safety at Desjardins. Involves development projects, strategic initiatives, and stakeholder interaction in a hybrid work environment.
Security Engineer enhancing security in Java - based enterprise applications at TopQuadrant. Designing and implementing security solutions while maintaining compliance with data protection regulations.
Senior IT security advisor helping protect IT hardware, software, and data at Desjardins. Leading initiatives, advising clients, and developing policies for strategic projects.
Business strategy analyst developing plans and business intelligence for Desjardins. Analyzing business needs and solutions for various organizational initiatives with a hybrid work setup.
Security Consultant on TELUS's Cybersecurity Platforms Operations team. Providing hands - on support for critical security services and collaborating with industry - leading vendors.
Senior Cloud Cybersecurity Engineer responsible for cloud security engineering at Tanium. Collaborate to protect cloud infrastructure against threats in Azure, AWS, and Kubernetes.
Managing Consultant in Cybersecurity and NERC Compliance at Guidehouse. Leading client management and project workstreams within the electric utility sector in Canada.