Application Security Engineer

1 month ago


Canada, CA Nomadgao Full time

Jul 27, 2024 - CoLab Software is hiring a remote Application Security Engineer. Salary: attractive compensation package with stock options. Location: USA, Canada.

At CoLab, we help engineering teams bring life-changing products to the world years sooner. Our product, CoLab, is the world’s first Design Engagement System (DES) - a category defining product that Engineering teams use to engage in meaningful, productive design conversations, catch preventable mistakes, and get to market faster. Our customers include the largest engineering organizations in the world such as Ford, Johnson Controls, Komatsu, and Polaris in the industrial equipment, consumer products, automotive, aerospace & defense, and shipbuilding industries.

As a Security Engineer you will work closely with product development teams to ensure security is a focus across all stages of our software development lifecycle. You will perform penetration tests, conduct security reviews, provide remediation guidance and continuously evolve our application security culture. Your work will be critical in ensuring what we build meets the highest security bar, protecting our customers and maintaining their trust.

What you’ll do:
  • Conduct frequent web app and integration penetration tests to identify vulnerabilities. Provide recommendations on architectural and code changes to mitigate findings.
  • Work as a core member of multiple development teams to review designs, stay updated on implementation changes, build trust, and identify security issues early in development.
  • Accurately convey complex risks to engineering, product and technical leadership, partnering with them to prioritize remediation of security issues.
  • Work with the Security team to help shape and evolve our application security processes and culture.
  • Become an offensive security subject matter expert. Utilize your skills to foresee security vulnerabilities in upcoming features and guide developers on how to avoid these issues.
  • Develop and maintain automated security tests to continuously improve security coverage in our CI/CD pipeline
  • Participate in the development and promotion of our internal Application Security resource library, equipping developers with the tools to conduct security audits of their own code.
What you’ll need:
  • 2-5 years of professional experience in a development or security role
  • Committed to continuous learning and self-improvement. Willing to work towards a technical penetration testing certification such as the OSCP, OSWA or similar.
  • Capable of using exceptional problem solving skills to identify minute technical issues.
  • Able to tactfully convey challenging issues and risks to developers and management.
  • Able to self manage and prioritize competing tasks, escalating issues to senior resources as needed.
  • A determined individual, capable of persevering when success indicators are not clearly defined.
Success measured by:
  • Accurately and effectively evaluating and testing product designs, architecture, and developed features
  • Calmly and professionally communicating security bugs and vulnerabilities, as well as design and architecture concerns/risks, to the respective application development and product management teams
  • Clear, concise and well structured verbal and written communications
  • Ability to proactively identify and comprehend risk
  • Taking ownership and responsibility for their work, their actions and commitment timelines
  • Constant proactive improvement of application security processes and guidance
  • Maintaining a culture of security awareness across the product development teams, and across the company
The extra details:
  • Compensation: This is a full-time, permanent position with an attractive compensation package that includes a stock options package.
  • Benefits:
  • Canada: This role offers an extended health and benefits package that includes unlimited paid vacation and RRSP matching.
  • USA: This role offers health and dental insurance (covered at 100% for the employee) and unlimited PTO.
Remote/Hybrid Work: Our main office location is in St. John’s, NL where we offer hybrid and remote opportunities. This role has the flexibility to work from anywhere within eastern Canada or eastern USA. #J-18808-Ljbffr

  • Canada, CA Abnormal Security Corporation Full time

    About The RoleAbnormal Security is looking for a Software Engineer II who is a solid software developer with a strong interest in Security & Privacy to join the Platform Security team. The Platform Security team owns the Security and Privacy platform services and infrastructure to uphold industry standards for the company’s security posture and customer...

  • Principal Product

    1 month ago


    Canada, CA Sophos Full time

    About Us Sophos is a worldwide leader and innovator of advanced cybersecurity solutions, including Managed Detection and Response (MDR) and incident response services and a broad portfolio of endpoint, network, email, and cloud security technologies that help organizations defeat cyberattacks. As one of the largest pure-play cybersecurity providers, Sophos...


  • Canada, CA Amazon Full time

    Senior AWS Application Security Engineer, ETSEHelp us protect not only the Amazon Web Services (AWS) cloud computing environment but all of our customers as well! Since 2006, our great team at AWS has been enabling our customers to bring great ideas to life in ways that aren’t possible in traditional IT environments. With AWS you can flexibly harness...


  • Canada, CA Security 1st Title, LLC Full time

    The worldwide data management software market is massive (According to IDC, the worldwide database software market, which it refers to as the database management systems software market, was forecasted to be approximately $82 billion in 2023 growing to approximately $137 billion in 2027. This represents a 14% compound annual growth rate). At MongoDB we are...


  • Canada, CA Amazon Full time

    Senior AWS Application Security Engineer, ETSEHelp us protect not only the Amazon Web Services (AWS) cloud computing environment but all of our customers as well! Since 2006, our great team at AWS has been enabling our customers to bring great ideas to life in ways that aren’t possible in traditional IT environments. With AWS you can flexibly harness...


  • Canada, CA Cambio Healthcare Systems AB Full time

    Application Security Engineer Within E Health (Remote)Application Security Engineer Within E Health | CambioHealthcare Systems AB | CanadaCambio is one of the Nordics’ leading suppliers in e-health with a comprehensive offering for the entire health and care chain. Our e-health solutions support healthcare professionals in their daily work and offer...


  • Canada, CA Abnormal Security Corporation Full time

    About the Role Enterprises of all sizes trust Abnormal Security’s cloud products to stop cybercrime. These products are data intensive SaaS applications that depend on reliable, scalable, and secure access to data. This is where our Data Platform team fits in, offering scalable storage systems (Postgresql, OpenSearch, Redis, Kafka, RocksDB), as well as...


  • Canada, CA S4cloud Us Full time

    We are looking for a skilled Security Engineer to analyze software designs and implementations from a security perspective, and identify and resolve security issues. You will include the appropriate security analysis, defences and countermeasures at each phase of the software development lifecycle, to result in robust and reliable...


  • Canada, CA Boundlessfellows Full time

    We're transforming the grocery industry At Instacart, we invite the world to share love through food because we believe everyone should have access to the food they love and more time to enjoy it together. Where others see a simple need for grocery delivery, we see exciting complexity and endless opportunity to serve the varied needs of our community. We...

  • Software Engineer II

    3 weeks ago


    Canada, CA Abnormal Security Corporation Full time

    Enterprises of all sizes trust Abnormal Security’s cloud products to stop cybercrime. These products are data intensive SaaS applications that depend on reliable, scalable, and secure access to data. This is where our Data Platform team fits in, enabling efficient, reliable and scalable data processing across both realtime and offline processing systems....


  • Canada, CA M87 Cyber Security Inc. Full time

    We are always on the lookout for amazingtalent who can contribute to our growth and deliver results! M87 Cybersecurityis seeking a Cybersecurity Operations Specialist responsible for developing athorough understanding of our security systems and programs to secure ourinfrastructure. If you love technology and are eager to join our team — wewould love to...


  • Canada, CA United Software Group Inc. - Canada Full time

    Job Posting TitleSailPoint Security EngineerDescriptionLocation: Nova Scotia, CA (100% Remote)Job Summary:The SailPoint Security Engineer will be responsible for designing, implementing, and managing identity and access management (IAM) solutions using SailPoint IdentityIQ. This role requires a deep understanding of IAM principles, strong technical skills,...


  • Canada, CA Grafana Labs Full time

    Security Engineer - Platform Security About our Platform (at Grafana Labs): Grafana Cloud moves millions of metrics, log lines, and traces per second from our customers' environments into a highly available, low-latency stack that processes and stores these data, and serves them to dashboards and alerting tools. We aim to grow this to hundreds of...

  • Security Engineer

    1 month ago


    Canada, CA 7Vals PK Full time

    We build cutting-edge Cloud-based solutions which are used by over thousands of companies around the world, predominantly in the US, Canada, Europe, and Australia. Our customers include NASA, 3M, Disney, Amazon, and many others. With such a diverse user base, there are countless ways that a Security Engineer will make an impact in our fast-growing...

  • Software Engineer II

    1 month ago


    Canada, CA Abnormal Security Corporation Full time

    Software Engineer II - Machine Learning InfrastructureLocation: Remote - CanadaEmployment Type: Full-timeAbout The RoleAbnormal Security is looking for a Software Engineer to join the Detection Team, working on projects that advance our Message Processing, Model Inference systems, and ML Infrastructure to 5x Scale.The Detection Division is focused on...


  • Canada, CA Abnormal Security Corporation Full time

    Senior Software Engineer - Scoring InfrastructureRemote - CanadaFull-timeAbout the RoleAbnormal Security is looking for a Senior ML Infra Engineer to join the Detection Team. The Detection Division is focused on building the world’s most advanced technology for identifying and stopping email and cloud-based attacks that were previously undetectable and...


  • Canada, CA Iress Part time

    See yourself being part of a large, transformational change? This could be the role for you!At Iress, we make things happenWe believe technology should help people perform better every day. Since our beginning in 1993, people across financial services have trusted us to take their performance to the next level. More than 10,000 businesses and 500,000 people...

  • Security Engineer

    1 month ago


    Canada, CA The Toronto-Dominion Bank Full time

    Security Engineer - Data EncryptionWork Location: Toronto, Ontario, CanadaHours: 37.5Line of Business: Technology SolutionsPay Details: We’re committed to providing fair and equitable compensation to all our colleagues. As a candidate, we encourage you to have an open dialogue with a member of our HR Team and ask compensation related questions, including...


  • Canada, CA Wealthsimple Full time

    Your career is an investment that grows over time!Wealthsimple is on a mission to help everyone achieve financial freedom by reimagining what it means to manage your money. Using smart technology, we take financial services that are often confusing, opaque and expensive and make them transparent and low-cost for everyone. We’re the largest fintech company...


  • Canada, CA Lastpass Full time

    LastPass is looking for a Security Operations Engineer: In this role you will be a part of the Detection, Automation, Engineering & Response Team (DA3RT) and your primary focus will be on building and maintaining tools that automate repetitive tasks, allowing cybersecurity analysts to concentrate on complex situations. This position requires expertise in...