Product Security Engineer improving security of Lattice’s applications and services through engineering partnerships and security operations. Contributing to secure coding practices and AI/LLM security assessments.
Responsibilities
Partner with engineers to identify, triage, and remediate security issues in product features and services
Participate in security reviews and threat modeling for new features and systems
Perform security-focused code reviews and help identify common vulnerabilities
Help implement and operate security tooling (SAST, DAST, dependency scanning, etc.)
Support vulnerability management workflows, including internal findings and bug bounty reports
Assist in investigating security issues and assessing risk and impact
Collaborate with platform and infrastructure teams to improve application and cloud security posture
Contribute to improving security practices in AWS-based environments
Assist in identifying and mitigating risks in AI/LLM-powered features, including prompt injection, data leakage, and unsafe output handling
Apply emerging best practices (OWASP Top 10 for LLM Applications) to real product use cases
Contribute to security guidance, documentation, and training for engineering teams
Help improve how security is integrated into the development lifecycle.
Requirements
1–3+ years of experience in product security, application security, or software engineering
Experience writing and maintaining code in JavaScript/TypeScript (or similar languages like Python or Ruby)
Familiarity with common web and API vulnerabilities (e.g., OWASP Top 10)
Exposure to security testing tools (SAST, DAST, dependency scanning, etc.)
Experience working in or with cloud environments (AWS or similar).
Buildings, development and security Analyst supporting fire prevention, facility safety, and building management at Desjardins. Analyzing risks, developing safety plans, and implementing physical security systems.
BMO banking associate providing bilingual credit and lending sales and service remotely in Quebec. Handling customer contacts, credit decisions, compliance, and suspicious - activity reporting.
Principal Information Security Engineer defining scalable security strategy, architecture, automation, cloud, identity, and AI controls. Helping Arctic Wolf protect organizations worldwide and end cyber risk.
Consultant cybersécurité hybride à Montréal chez I - TRACING, pure - player indépendant en sécurité informatique. Conception, déploiement et support de solutions IAM, réseau, systèmes et applications.
Desjardins property technician supporting fire prevention, building safety, management, and build - out projects. Providing technical support, process coordination, user training, and operational guidance.