Senior Security Engineer managing security initiatives for R&D and production applications. Collaborating closely with teams to enhance security practices within a cloud environment.
Responsibilities
Evolve and expand our existing security activities – threat modeling, risk mitigation, observability, incident response. Manage and execute security projects based on internal and external inputs such as our bug bounty program, pentesting, or other gap analysis.
Implement security improvements as an individual contributor as well as in collaboration with our teams. Set the standard for how new code being shipped meets our security needs.
Advocate for security. Build a culture of security ownership rooted in shared values
Managing security roadmaps from a corporate-wide perspective to meet the needs of various stakeholders including enterprise sales enablement.
Work in a predominantly AWS cloud environment with some Google Cloud Platform services. Our services are built on Django and get continuously deployed.
Requirements
5+ years of experience in application security or related fields, with a strong ability to collaborate with application development teams.
Familiar with modern security practices and technologies
You understand security in a cloud provider context (we use primarily AWS with some GCP services as well) and can help move us toward a Zero Trust architecture.
Familiar with managing infrastructure as code with automation tools such as Terraform
Proficient in threat modelling, architecture design review processes, and familiar with common attack vectors and exploitation techniques.
Strong communication skills, capable of articulating security concerns and solutions to both technical and non-technical stakeholders.
Knowledge of development security best practices for mobile and web applications.
Bachelor’s degree in Computer Science, Engineering, or a related discipline, or an equivalent combination of education and experience.
Benefits
A noble mission that creates meaningful, fulfilling work
A team that cares deeply for customers and for each other
Flexible, remote first work environment
Professional learning and development for all role levels
An awesome and welcoming Toronto HQ
Competitive health benefits that start on day one
A management team focused on performance, growth, engagement and connection
Our winning strategy and market potential
Innovative PTO policy with lots of time and space for self-care
Passionate customers that believe in us—and what we do
A chance to work with new tech like generative AI—and see the customer impact
Information Security Specialist strengthening technology controls, security governance, and risk management at TD, a major North American bank. Advising partners, assessing controls, supporting audits, and responding to incidents.
Buildings, development and security Analyst supporting fire prevention, facility safety, and building management at Desjardins. Analyzing risks, developing safety plans, and implementing physical security systems.
BMO banking associate providing bilingual credit and lending sales and service remotely in Quebec. Handling customer contacts, credit decisions, compliance, and suspicious - activity reporting.
Principal Information Security Engineer defining scalable security strategy, architecture, automation, cloud, identity, and AI controls. Helping Arctic Wolf protect organizations worldwide and end cyber risk.
Consultant cybersécurité hybride à Montréal chez I - TRACING, pure - player indépendant en sécurité informatique. Conception, déploiement et support de solutions IAM, réseau, systèmes et applications.
Desjardins property technician supporting fire prevention, building safety, management, and build - out projects. Providing technical support, process coordination, user training, and operational guidance.