Lead security engineering team at Float, focusing on application security and DevSecOps. Collaborate across teams to enhance security practices and ensure safe feature delivery.
Responsibilities
Build, mentor, and lead a high-performing security engineering team with a strong emphasis on Application Security and DevSecOps.
Develop and execute the security engineering roadmap, balancing long-term architecture with near-term delivery needs.
Partner with engineering and product leadership to ensure security is integrated into planning, design, and execution.
Own and enhance CI/CD and developer-workflow security, including OIDC signing, pipeline hardening, artifact integrity, secret distribution, and container security.
Define secure architecture patterns and baseline configurations for cloud services, backend systems, and infrastructure-as-code (Terraform).
Build scalable, measurable controls that enforce least privilege and prevent misconfigurations.
Embed secure SDLC practices across engineering through automated code scanning, dependency scanning, secrets management, and threat modeling.
Develop secure patterns for authentication, authorization, API design, and sensitive data handling.
Support engineers in evaluating high-risk features and designing effective mitigation strategies.
Partner with Infrastructure and Operations teams to mature detection and response capabilities, including alerting, logging, tuning, and automation.
Lead incident response readiness through simulations, playbooks, and post-incident improvements.
Automate vulnerability management, cloud posture monitoring, and compliance evidence collection for SOC 2 and PCI DSS 4.0.
Partner with IT to maintain strong endpoint, identity, and device-trust baselines across the organization.
Support third-party risk management efforts as they relate to application and platform security.
Requirements
Experience leading security engineering teams with a strong focus on Application Security and DevSecOps, and exposure to infrastructure and operational security.
Strong technical depth in AWS security, IAM, network design, CI/CD hardening, and cloud-native architectures.
Hands-on experience with infrastructure-as-code, cloud posture tooling, and vulnerability management workflows.
Deep understanding of secure software development practices and common application-layer risks (e.g., OWASP Top 10).
Familiarity with PCI DSS 4.0, SOC 2, and automating evidence or control enforcement.
Experience with identity platforms such as Auth0, Okta, and OIDC.
Proficiency in scripting (Python preferred) for automation, metrics, and integrations.
Excellent communication and stakeholder management skills.
Experience in fintech, payments, or other correctness-critical domains is strongly preferred but not required.
Benefits
Competitive compensation, equity options, and benefits
Hybrid work model – we are based in Toronto with in-office days for connection and collaboration
Enjoy catered team lunches every Tuesday, Wednesday and Thursday
Bring your pup to our dog-friendly office
Thrive in a high-trust, high-performance culture where your work truly matters
Head of Engineering at AgencyAnalytics empowering marketing agencies with cutting - edge reporting tools. Leading engineering operations and fostering an AI - first culture in a high - trust environment.
Project Engineering Director leading civil engineering and drafting capabilities for nuclear projects at AtkinsRéalis. Overseeing multidisciplinary teams and ensuring project deliverables align with strategic goals.
Engineering Manager leading a small team at Sourcegraph to enhance products used by developers. Oversee technical guidance and drive product and operational excellence.
Hiring a Finance Transformation Manager in North York for a contract role. Requires expertise in financial systems, ERP, FP&A, process automation, and transformation.
Seeking experienced BIM Architectural Manager for global architectural firm. Must have strong engineering instincts, communication skills, and BIM expertise.
Our client is hiring a Manager, Financial System on a 6 - month contract to support growth. This in - office role involves system controls, financial integrity, and GAAP reporting.
Manager, Software Engineering managing Developer Environments at Affirm, enhancing developer productivity and system reliability across engineering teams.
Senior Engineering Manager overseeing Data Science & Data Engineering teams at Xsolla. Focused on innovation in data infrastructure and ad tech for smarter decision - making.