Security Engineer

1 week ago


Niagara Falls, Ontario, Canada Jonas Software Full time US$135,000 - US$150,000

Job Description: Security EngineerCompensation: The expected salary range for this role is between $135,000 and $150,000, depending on experience and qualifications.Reason for Opening: Net New positionAI is not used to screen, assess, or select applicants for this role.The CompanyConstellation Payment Processing is a modern Payment Facilitator (PayFac) empowering SaaS businesses to grow revenue through seamless, embedded payments. As part of Constellation Software Inc. (TSE:CSU) — a global Canadian-based software leader at a $96B market cap and the 7th largest software company in the world — we combine the agility of a specialized payments company with the strength and stability of an established global powerhouse.We are building a cloud-native PayFac platform on AWS: microservices (DDD) across TypeScript/JavaScript, Java, and Ruby, with a ReactJS front end. As our Security Engineer,you will co-own the DevSecOps program—driving continuous security automation,compliance automation, and penetration testing. You will design and orchestrate SAST/SCA/DAST across our services, champion remediation practices, and partner closely with our compliance team to translate control objectives into repeatable, automated evidence.Our customers are ISV vendors who embed payments by integrating with our APIs, SDKs,and webhooks. That means security and compliance aren't afterthoughts—they are productfeatures. You will ensure our developer-facing surface area is secure by default:establishing standards for authentication and authorization (OIDC/OAuth2/JWT, mTLS/JWS for webhooks), key and secret management, request signing, idempotency, rate-limiting/abuse controls, and secure data handling that minimizes PCI scope for ISVs (tokenization, hosted fields/iframes, PAN vault boundaries, network tokens).You will create secure integration patterns (reference apps, checklists, threat models/DFDs) so partners can implement quickly without compromising controls.Because we operate a multi-tenant PayFac, you will harden isolation boundaries (network,identity, and data), lead supply-chain security (SBOMs, signing/provenance, gateddeployments), and build continuous evidence for PCI DSS 4.0 (and SOC 2/ISO asneeded).You will collaborate with partner security and compliance teams on due-diligencerequests (SIG Lite, AOC/ROCs, shared-responsibility matrices), and you will own pre-launchsecurity reviews for new ISV integrations. You will also help run incident response drills anddefine partner-facing comms and SLAs for security events.Finally, you will research and implement AI-assisted security (triage, anomaly detection,auto-remediation PRs) with appropriate guardrails, and own KPIs that demonstratemultiplier effects—e.g., reduced MTTR, lower false-positive rates, higher auto-triagecoverage, and faster time-to-evidence—so our platform's security posture continuouslyimproves as our ISV ecosystem scales.What You will Do• Own Security Automationo Design, implement, and run the CI/CD security toolchain: SAST, SCA, DAST,container and IaC scanning, secrets detection, SBOM generation, andpolicy-as-code.o Integrate scanners into GitHub/GitHub Actions pipelines with PR gates, andauto-ticketing to JIRA; tune noise, baselines, and break-glass rules.o Establish vulnerability management SLAs, risk acceptance workflow, andmetrics dashboards (e.g., MTTR, vuln burn-down).• Embed Security in the SDLCo Create lightweight secure-coding standards and review checklists forTypeScript/Node, Java, Ruby, React.o Run threat modeling (STRIDE/PASTA) and produce DFDs (L0–L2) for new andhigh-risk flows.o Lead a "security champions" program with engineering squads.• Platform & Cloud Security (AWS/EKS)o Harden EKS workloads (admission controls, pod security, image signing,runtime protection), ECR scanning, and supply-chain security.o Implement and iterate on IAM least-privilege, KMS/CloudHSM keymanagement, network segmentation, WAF/Shield, CloudFront, GuardDuty/Security Hub, and centralized logging.o Validate service-to-service auth (mTLS, OIDC, JWT), secrets management(AWS Secrets Manager/SSM), and data protection at rest/in transit (FIPSvalidatedcrypto).o Manage security certificate adoption our own and 3rd party across the company technology stack.• Compliance Automationo Map controls and automate evidence for PCI DSS 4.0 (and SOC 2/ISO 27001 as needed): continuous monitoring, detector-to-control mappings, and audit-ready artifacts.o Partner with compliance on policies, risk register, third-party/vendor assessments, and control testing cadence.• Penetration Testing & Responseo Scope and coordinate internal and third-party penetration tests (API, web, mobile, cloud); plan fix-verification and retests.o Contribute to incident response playbooks, tabletop exercises, and forensics runbooks.o Participate in incident response events and be a key contributor on improving security posture• Research & implement AI security tools:o Evaluate and deploy AI/ML capabilities (LLM-assisted code reviews, AI triage for SAST/SCA/DAST, anomaly detection over logs/telemetry, drift detection) to reduce toil and increase signal quality—without leaking sensitive code or data.• Own outcomes & KPIs:o Define baselines, instrument dashboards, and continuously tune models/policies to demonstrably improve detection efficacy, remediation speed, and compliance evidence quality.• Guardrails & governance:o Establish safe-use patterns (PII redaction, repository allowlists, prompt/content controls, human-in-the-loop), document model/feature risks, and keep audit trails that map to PCI DSS 4.0 controls.• Automation & SOAR integration:o Orchestrate AI-assisted enrichment and response (e.g., auto-labeling, deduplication, prioritization, suggested fixes/PRs) across CI/CD, SIEM, ticketing, and chat.KPIs You will Own• MTTR for high-severity vulns/incidents: ↓ 40–60% vs. baseline within 2–3 quarters.• Alert noise reduction (precision/FP rate): ≥ 50% reduction in false positives on gated scans and detections.• Auto-triage coverage: ≥ 70% of scanner findings enriched and prioritized by AI with reviewer acceptance ≥ 90%.• AI-generated remediation PRs: ≥ 30% of low/medium issues fixed via assisted PRs passing CI policy.• Time-to-evidence (PCI 4.0 controls): ↓ 50% for recurring audits via automated control artifacts.• Signed-off service coverage: ≥ 90% of services covered by AI-backed detections and scan triage.What You will Bring• 8–10 years in application/cloud security or DevSecOps for high-availability platforms (fintech/payments ideal).• Hands-on DevSecOps program administration experience with Veracode.• Fluent in Terraform for the AWS Stack• Strong CI/CD experience (GitHub Actions preferred) and automation in Python/TypeScript/Bash.• Solid AWS security fundamentals: IAM, KMS, CloudTrail, Config, Security Hub, GuardDuty, VPC/LBs, WAF/Shield; Kubernetes/EKS hardening experience.• Familiarity with microservices, event-driven systems, and DDD; ability to read code in TypeScript/Java/Ruby and basic ReactJS patterns.• Working knowledge of PCI DSS 4.0 control objectives (tokenization/PAN handling, key management, segmentation, logging/retention), plus SOC 2/ISO 27001 concepts.• Clear communication with engineers and non-technical stakeholders; bias toautomate and simplify.• Bonus Point: Payments domain exposure: EMV/3DS, PAN vaulting, network tokenization, P2PE, dispute/chargeback flows.How We will Measure Success• 90 days: Security scans embedded in CI for core services with actionable findings; baseline metrics and SLAs defined; initial PCI 4.0 control mappings complete.• 6 months: False-positive rate



  • Niagara Falls, Ontario, Canada City of Niagara Falls Full time $42 - $43

    If you are currently employed with the City of Niagara Falls, please apply internally through the Workday Jobs Hub app of your Workday account in order for your application to be processed as an internal applicant.Closing Date (closes at 11:59 pm on date noted below):December 28, 2025Job Type:PermanentDepartment:Development EngineeringHourly:$...


  • Niagara Falls, Ontario, Canada EllisDon Corporation Full time $100,000 - $150,000 per year

    Connect with us LinkedIn, Instagram, Facebook, TwitterThinking about a change? We recognize that the construction industry is changing at a rapid pace and we continually strive to be at the forefront. Our core values empower people to deliver great careers to one another and develop creative solutions for complex problems on some of the most...


  • Niagara Falls, Ontario, Canada EllisDon Corporation Full time $120,000 - $180,000 per year

    Connect with us LinkedIn, Instagram, Facebook, TwitterThinking about a change? We recognize that the construction industry is changing at a rapid pace and we continually strive to be at the forefront. Our core values empower people to deliver great careers to one another and develop creative solutions for complex problems on some of the most...


  • Niagara Falls, Ontario, Canada TKL Group Inc Full time $92 - $96 per year

    "WE ARE NOT SEEKING ASSISTANCE FROM RECRUITERS OR TEMP AGENCIES, SO PLEASE DO NOT CONTACT US. ALL CANDIDATES MUST APPLY THROUGH INDEED ONLY. DO NOT CALL OR VISIT THE OFFICE, AS DOING SO WILL RESULT IN YOUR APPLICATION BEING DECLINED."Job Summary:This position is responsible for steel mesh fabrication and ensuring readiness of steel each day.Responsibilities...


  • Niagara Falls, Ontario, Canada Jonas Software Full time $120,000 - $200,000 per year

    Job Description: OverviewWe are seeking a hands-on Director of Software Development to lead the design, development, and delivery of next-generation software products. This individual will combine strong technical expertise with leadership skills to implement agile processes, modernize architecture, and guide a small but high-impact development team toward...


  • Niagara Falls, Ontario, Canada Jonas Software Full time $120,000 - $180,000 per year

    Job Description: Agile Team LeadImagine Everything Inc.SummaryAn Agile Team Lead is responsible for leading an agile development team while also managing the full software development lifecycle, including working directly with our product team and school boards to understand their needs, designing solutions, writing, debugging, and peer reviewing code,...


  • Niagara-on-the-Lake, Ontario, Canada Niagara College Canada Full time $60,000 - $100,000 per year

    Applications are invited for Part-Time Professor for teaching courses within the Cybersecurity Graduate Certificate Program, School of Technology, Niagara College. PT Teaching position will commence in September 2026. Candidates must be available to teach typically between the hours of 8:30am – 5:30pm (with the possibility of classes being scheduled up to...


  • Niagara-on-the-Lake, Ontario, Canada Human Resources Full time $30,240 - $44,330 per year

    310T Truck & Coach Technician OR Apprentice (Afternoon Shift) Location:335 Townline Rd, Niagara-on-the-LakePosition Type:Permanent Full-TimeReporting To:Lead HandStart Date:ImmediatelyHours:Monday to Friday, 4:00pm-1:00am Compensation:Level 1 Apprentice $25.10,Fully Licensed Technician $43.30/hour + $3.00/hour afternoon shift premium About Miller Waste...


  • Niagara, Canada Niagara Region Full time

    **Division**: Water & Wastewater **Temporary Duration**: Approximate Duration: 12 months As an employer of choice, Niagara Region offers competitive salaries and benefits, a defined benefit pension plan, a corporate wellness centre, access to the Employee and Family Assistance Program (EFAP), mentorship and training programs, employee recognition programs,...


  • Niagara Falls, Canada EON Environmental Consulting Ltd. Full time

    EON Environmental Consulting Ltd. is a SME consulting firm with offices in Niagara Falls and Dundas, Ontario, specializing in environmental geoscience and geotechnical engineering primarily in the Ontario market. We require an Intermediate Environmental Geoscientist to join our focused team. - Phase I and Phase II Environmental Site Assessment(s) and Records...


  • Niagara Falls, Canada Intello Technologies Inc. Full time

    Select how often (in days) to receive an alert: Jobs by Category: Technology Solutions Job Function: Data Science Status: Full Time Schedule: Regular Join our team and what we'll accomplish together Ready to create innovative solutions and best practices? Join a team of passionate technical leaders. Accelerate cloud adoption by building hardened, ready-to-go...


  • Niagara Falls, Canada Intello Technologies Inc. Full time

    Select how often (in days) to receive an alert: Jobs by Category: Technology Solutions Job Function: Data Science Status: Full Time Schedule: Regular Join our team and what we'll accomplish together Ready to create innovative solutions and best practices? Join a team of passionate technical leaders. Accelerate cloud adoption by building hardened,...


  • Niagara Falls, Canada Intello Technologies Inc. Full time

    Select how often (in days) to receive an alert: Jobs by Category: Technology Solutions Job Function: Data Science Status: Full Time Schedule: Regular Join our team and what we'll accomplish together Ready to create innovative solutions and best practices? Join a team of passionate technical leaders. Accelerate cloud adoption by building hardened, ready-to-go...


  • Niagara Falls, Canada Intello Technologies Inc. Full time

    A technology solutions company in the Niagara Region is seeking a Software Developer to drive the development of AI-powered applications. You will work on designing and building scalable cloud solutions using Google Cloud Platform, collaborating with diverse teams to enhance operational excellence and security. The ideal candidate has strong backend...


  • Niagara Falls, Canada Intello Technologies Inc. Full time

    A technology solutions company in the Niagara Region is seeking a Software Developer to drive the development of AI-powered applications. You will work on designing and building scalable cloud solutions using Google Cloud Platform, collaborating with diverse teams to enhance operational excellence and security. The ideal candidate has strong backend...


  • Niagara Falls, Canada Intello Technologies Inc. Full time

    A technology solutions company in the Niagara Region is seeking a Software Developer to drive the development of AI-powered applications. You will work on designing and building scalable cloud solutions using Google Cloud Platform, collaborating with diverse teams to enhance operational excellence and security. The ideal candidate has strong backend...


  • Niagara Falls, Canada Intello Technologies Inc. Full time

    A technology solutions company in the Niagara Region is seeking a Software Developer to drive the development of AI-powered applications. You will work on designing and building scalable cloud solutions using Google Cloud Platform, collaborating with diverse teams to enhance operational excellence and security. The ideal candidate has strong backend...


  • Niagara Falls, Canada Niagara Parks Full time

    Administrative Assistant, Engineering & Parks Operations Under the general supervision of the Chief Operating Officer and within established policies, procedures, and guidelines; to provide confidential administrative support for the Chief Operating Officer and Engineering and Parks Operations management team. This role will also oversee special projects as...