Security Engineer designing security architecture for AI-native customer data platform. Collaborating with engineers to map agent workflows and defining enterprise-scale security primitives.
Responsibilities
Design-Time Threat Modeling: Collaborate alongside product and platform engineers to map new agent types, multi-agent workflows, and AI toolkits while architecture is still fluid to shape trust boundaries and threat models at design time.
Agentic Security Primitives: Define the primitives necessary to make systems safe at enterprise scale, addressing unsolved problems regarding delegation models, multi-agent trust chains, data minimization in RAG workflows, and identity boundaries across customer-built agents.
Architectural Hardening: Own outcomes for complex security areas, ranging from hardening Kubernetes or AWS Bedrock controls to designing trust boundaries for MCP integrations and tackling zero-day risks.
Golden Path Engineering: Design policy-as-code and CI/CD controls for agent-assisted workflows to engineer secure defaults that act as velocity multipliers, enabling flawless engineering movement without routing around security.
Structural Improvements: Lead the effort to detection, respond, and mutate architecture following control failures to turn incidents into structural improvements that prevent recurrence.
Knowledge Codification: Maintain the security playbook for next-generation paradigms by producing opinionated guides, reference repositories, and posture telemetry that compounds over time.
Requirements
A minimum of 5 years of experience in security engineering and architecture at a senior level
Possess a deep understanding of cloud-native architecture at the identity, networking, and data-protection levels (specifically AWS or equivalent)
Proficiency in writing production-grade Python, Terraform, or TypeScript to prototype controls, script policy checks, and review AI-generated code
Demonstrated default to leverage, preferring automation by systems or agents over repeatable human tasks
Ability to earn trust through rigorous logic and influence rather than authoritative mandate.
Benefits
Competitive compensation packages
Restricted Stock Units (RSU)
Paid vacation and sick time
Paid volunteer and mental health days
Up to 26 weeks paid parental leave including a post-partum night nurse
16 Company holidays (includes 2 floating holidays)
RRSP with 6% company match
Employer provided Supplemental medical, dental, disability & life coverage
Comprehensive support and access to care for everyone, everywhere through Carrot - our global reproductive health and family-building benefit
Enterprise Security Architect securing technology for Vancity, a member - owned Canadian credit union. Designing enterprise application security frameworks, controls, and risk - based cybersecurity solutions.
Director leading IT and cybersecurity operations for the Azrieli Foundation, a Canadian philanthropic organization. Assessing technology risks, overseeing infrastructure, vendors, incident response and executive technology strategy.
Data Security Specialist protecting Sun Life’s financial - services data through DLP, CASB and insider - threat programs. Investigating cyber risks and advancing enterprise data protection.
Senior SaaS Security Manager protecting RBC’s banking platform from third - party cloud risks. Leading controls, vulnerability management, compliance, and security transformation initiatives.
Développeur.euse sécurité cloud protégeant l’infrastructure de nesto, plateforme de financement hypothécaire canadienne. Conception de contrôles cloud, automatisation DevSecOps et réponse aux incidents.
Lead SCADA and cybersecurity engineer designing compliant electric - substation systems for GE Vernova. Coordinating multidisciplinary teams, vendors, testing, estimates, and project risk for decarbonized energy infrastructure.
Join RBC's Application Security Group to develop innovative security solutions, mentor junior staff, and collaborate across teams to enhance decision - making and automate tasks.
Lead SCADA and cybersecurity engineer designing compliant substation systems for GE Vernova. Guiding project teams, vendor designs, estimates, and acceptance testing for cleaner energy infrastructure.
Senior security advisor simulating cyber threats and strengthening defenses for Desjardins, North America's largest cooperative financial group. Leading complex initiatives, methodologies and cybersecurity risk mitigation.