Remote job
Security Engineer II
Job details
About this role
Role overview Join a Security Engineering team safeguarding a large-scale multitenant cloud hosting platform. This mid-level engineering position blends hands-on security ownership with building the automation and tooling that amplify impact across development squads, focusing on Security by Design in agile and cloud-native environments.
Responsibilities - Author SIEM detection rules and response playbooks in Chronicle-style platforms (YARA-L) to expand monitoring coverage. - Build and maintain security automation pipelines in Python or Go, spanning vulnerability management tooling, GHAS workflows, and CI/CD security integrations. - Own end-to-end vulnerability identification, triage, and remediation coordination across SAST, DAST, SCA, and infrastructure layers. - Implement supply chain security controls (SLSA, dependency pinning) and integrate them into developer workflows. - Execute RBAC cleanup, access architecture implementation, periodic user access reviews, and GitHub org-level security policies. - Define DLP policies and run credential and secrets hygiene programs, including plaintext credential remediation in source repositories.
Requirements - 4+ years of overall experience, including 2+ years in Application Security or Security Engineering. - Demonstrated experience building security automation: vulnerability management scripts, CI/CD pipeline integrations, or detection rules used in production. - Hands-on experience with Secure by Design practices, including security architecture and design reviews. - Proficiency securing production systems in cloud environments (GCP preferred; AWS or Azure also valuable). - Ability to build maintainable components in Python or Go. - Experience with Jenkins, Cloud Build, CircleCI, or similar; containerization (Docker/OCI), Terraform, and Kubernetes. - Bachelor's degree in Computer Science or equivalent practical experience.
Nice to have - Familiarity with CodeQL, Wiz, or comparable SAST/DAST/SCA/CSPM platforms. - Experience with reusable CI/CD workflows.
Benefits and work setup - Listed compensation range: CAD $94,000–$118,000 base plus bonus and equity. - Flexible time off, sick days, and 13 paid holidays. - Comprehensive medical, dental, and vision insurance. - Paid parental leave plus fertility, adoption, and family planning benefits. - In-office workspace available (San Francisco and Chicago) with monthly wellness and learning allowance. - Team and company-wide events; visa sponsorship not available at this time.