Product Security Engineer improving security of Lattice’s applications and services through engineering partnerships and security operations. Contributing to secure coding practices and AI/LLM security assessments.
Responsibilities
Partner with engineers to identify, triage, and remediate security issues in product features and services
Participate in security reviews and threat modeling for new features and systems
Perform security-focused code reviews and help identify common vulnerabilities
Help implement and operate security tooling (SAST, DAST, dependency scanning, etc.)
Support vulnerability management workflows, including internal findings and bug bounty reports
Assist in investigating security issues and assessing risk and impact
Collaborate with platform and infrastructure teams to improve application and cloud security posture
Contribute to improving security practices in AWS-based environments
Assist in identifying and mitigating risks in AI/LLM-powered features, including prompt injection, data leakage, and unsafe output handling
Apply emerging best practices (OWASP Top 10 for LLM Applications) to real product use cases
Contribute to security guidance, documentation, and training for engineering teams
Help improve how security is integrated into the development lifecycle.
Requirements
1–3+ years of experience in product security, application security, or software engineering
Experience writing and maintaining code in JavaScript/TypeScript (or similar languages like Python or Ruby)
Familiarity with common web and API vulnerabilities (e.g., OWASP Top 10)
Exposure to security testing tools (SAST, DAST, dependency scanning, etc.)
Experience working in or with cloud environments (AWS or similar).
Financial Security Advisor at RBC Insurance connecting clients with comprehensive insurance solutions. Building client relationships and leveraging RBC’s brand to grow the market.
Senior IAM Systems Support Analyst responsible for deploying and improving IAM services at RBC. Supporting MFA systems and ensuring platform reliability while collaborating with various teams.
Senior Manager overseeing IAM initiatives and strategic roadmap execution at RBC. Partnering with stakeholders to enhance organizational capabilities in Identity and Access Management.
Senior Internal Controller in information security defining security strategies and conducting risk analysis. Participating in audits and controls for a multidisciplinary firm in Canada.
Product Manager responsible for managing Microsoft Security Services portfolio at Softchoice. Engaging with customers, Microsoft and stakeholders to drive market success and growth.
Program Manager leading AI and data security initiatives at Canadian Tire Corporation. Maintaining compliance and aligning security strategies with business objectives.
Senior Information Security Governance Advisor at TEHORA defining security strategies and conducting risk analyses. Participating in audits and controls while supporting organizational and technological changes.
Senior Security Advisor at Intact managing cybersecurity across cloud and endpoint environments. Working to protect critical assets like cloud infrastructure and identity landscape.