Jobgether
Senior Software Engineer - Infrastructure Security
engineeringfull-timeCanada
SALARY
$221k – $256k/yr
WORK TYPE
remote
JOB TYPE
full-time
INDUSTRY
general
✦ AutoApply Sick of applying? We apply to roles like this for you, up to 20 a month.
Learn more
About the role
Accountabilities:
- Partner with engineering teams to review cloud and compute architecture changes and identify security implications.
- Develop threat models for cloud and compute platforms to identify risks and inform appropriate security controls.
- Build, adopt, and maintain tools that monitor and harden cloud infrastructure and operating systems.
- Develop security logging and monitoring pipelines and support intrusion detection capabilities.
- Apply AWS and Kubernetes security expertise to guide remediation efforts and shape the security control roadmap.
- Define and implement security policies, monitor compliance, and help ensure infrastructure remains aligned with established controls.
- Develop automation and security tooling for threat detection, incident containment, network access management, and other security requirements.
- Integrate security practices into engineering workflows and CI/CD environments to identify vulnerabilities earlier.
- Conduct initial security incident triage, assessing scope, urgency, and potential impact, and participate in incident response activities.
- Contribute to secure coding practices, technical standards, and knowledge sharing across engineering teams.
- Strong experience as a software engineer, with deep technical capability in at least one infrastructure or security domain.
- Hands-on experience securing large-scale cloud environments, particularly AWS.
- Strong understanding of infrastructure-as-code and tools such as Terraform or CloudFormation.
- Knowledge of AWS IAM policies, network segmentation, VPC design, cloud-native monitoring, and logging.
- Experience identifying cloud misconfigurations, assessing security risks, and driving remediation.
- Experience with security automation and integrating security tooling into CI/CD pipelines.
- Familiarity with SAST, DAST, dependency scanning, and secure software development practices.
- Strong Linux and systems security knowledge, including container security, POSIX capabilities, SECCOMP, and Linux Security Modules.
- Kubernetes security experience is valuable, as is familiarity with serverless architectures, OSQuery, or eBPF.
- Ability to balance technical detail with effective prioritization and right-size solutions for the problem at hand.
- Strong ownership, problem-solving, time management, communication, and ability to navigate complex technical challenges.
- Product security experience is a plus, including knowledge of secure web applications, APIs, OWASP Top 10, XSS, CSRF, and SQL injection.
- Availability for meetings and impromptu communication during coordination hours, Monday–Friday, 9:00 AM–3:00 PM Pacific Time.
- For Toronto and Vancouver-based candidates: $221,209–$256,433 CAD + equity + benefits.
- For candidates in other Canadian locations: $206,461–$239,337 CAD + equity + benefits.
- Flexible equity program in eligible countries, allowing a portion of equity compensation to be taken as cash.
- Medical, dental, and vision coverage.
- Equity refreshers.
- Remote work reimbursement.
- Paid time off.
- Employee assistance programs.
- Fully remote work within eligible locations in Canada.
- Opportunity to work across cloud infrastructure, systems security, automation, and product security.
- Broad technical ownership and collaboration with engineering teams on security-critical initiatives.
Requirements:
Benefits:
✦ Sick of applying to 40 jobs a month?
I rewrite your resume for ATS by hand first. Once you sign off on it, AutoApply applies to up to 20 roles like this a month, cover letter in your own voice each time. From $14.99/mo, cancel anytime.
Get AutoApply