Security Engineer strengthening Relay’s digital banking platform through purple-team simulations, vulnerability testing, and defensive improvements. Driving security fixes across cloud, developer, and financial-data environments.
Responsibilities
Join Relay’s security organization and purple team
Help plan and run security simulations
Contribute to the security awareness program resulting from simulations
Review access to sensitive customer and financial data in Relay’s admin dashboards and help implement improvements
Strengthen security for developer environments, including tooling, packages, and production access
Work with delivery, IT, and business teams to turn test findings into tangible fixes and follow them through to completion
Develop and manage Cyber Awareness exercises, including internal phishing attacks
Research emerging threats such as AI misuse, supply chain risks, identity and access challenges, and Shadow IT
Share security findings in an educational, action-oriented way
Participate in a four-stage interview process including Talent, experience deep dive, live technical assessment, and Leadership interviews
Requirements
Roughly 2–4 years of experience in security or an adjacent technical role with meaningful security exposure
Solid grasp of security fundamentals
Ability to script in Python, Bash, PowerShell, JavaScript, or similar
Comfortable working in AWS, GCP, or Azure and developer environments such as GitHub and CI/CD
Hands-on experience with adversary simulation, detection engineering, penetration testing, incident response, or vulnerability management
Understanding of authentication and access protocols including SSO, OAuth, SAML, or OpenID Connect, or experience with zero trust principles
Experience using SIEM, IPS, WAF, EDR, vulnerability scanners, and security automation platforms
Ability to explain technical findings to non-security audiences
Cloud IAM, networking, or containerized systems experience is a bonus
Experience participating in purple, red, or blue team rituals is a bonus
Experience in fintech, SaaS, or scaling technology companies is a bonus
Public security contributions, CTF participation, home lab, bug bounties, talks, research, or OSS tooling are bonus qualifications
Successful background check and employment verification through Certn required for employment
Legally authorized to work in Canada and able to work from the office three days a week (Tues/Weds/Thurs)
Benefits
Mentorship and support to grow quickly
Compensation growth as impact increases, not limited to an annual review cycle
Accommodation support at any stage of the hiring process
Regional Health & Safety Manager leading health, safety, and regulatory compliance for GFL’s environmental services operations in Quebec. Conducting audits, incident management, training oversight, and regional site visits.
Information Security Student supporting vulnerability management and cloud security at Nasdaq Verafin. Assisting with remediation, security posture enforcement, and cloud environment protection.
Senior Principal Security Architect shaping enterprise security architecture for Invesco, a global investment - management firm. Leading cloud, identity, network, data - protection, and risk initiatives.
Principal Security Architect securing Menlo Security’s browser and AI - agent protection platform. Leading cryptography, cloud, vulnerability, and product security architecture.
BDC banking manager overseeing commercial loan security and disbursements across Western Canada. Coordinating due diligence, risk evaluation, lending partners and compliant loan funding.
Cybersecurity new graduate rotating through Intact’s 24 - month tech development program. Supporting threat detection, incident response, infrastructure security, and AI - enhanced security insights.