AppSec Engineer
Job Description:
About the job
Security is more than a checklist hereit's embedded in how software is designed, developed, and delivered. A fast-growing digital platform company is seeking a Senior Security Engineer to help shape and implement proactive security strategies across its infrastructure and application stack.
In this role, youll be the technical partner for developers, designing secure systems by default, guiding architecture choices, and bringing clarity to complex risks. With a focus on detection, prevention, and response, you'll contribute directly to building safe, scalable software.
You'll also get hands-on with cloud-native security tooling, Infrastructure-as-Code (Terraform), and vulnerability assessmentsall while fostering a culture where security supports speed, not slows it down.
This is a remote-first opportunity open to professionals based in Canada, with a preference for those aligned to Pacific time zones.
Required Skills & Experience
- 5+ years in security engineering, application security, or infrastructure security roles
- Strong programming foundation and experience with threat modeling, secure code reviews, and security testing tools
- Proficiency in vulnerability and penetration testing practices, with clear communication of findings to both technical and non-technical audiences
Desired Skills & Experience
- AWS infrastructure provisioning via Terraform
- Integration of security checks into CI/CD (e.g., GitHub Actions)
- Experience facilitating incident response tabletop exercises
Daily Responsibilities
- Hands-On Engineering: 70%
- Team Collaboration & Cross-Functional Work: 30%