Senior Application Security Engineer
4 weeks ago
Join to apply for the Senior Application Security Engineer role at Sardine . Who We Are We are a leader in fraud prevention and AML compliance. Our platform uses device intelligence, behavior biometrics, machine learning, and AI to stop fraud before it happens. Today, over 300 banks, retailers, and fintechs worldwide use Sardine to stop identity fraud, payment fraud, account takeovers, and social engineering scams. We have raised $145M from world‑class investors, including Andreessen Horowitz, Activant, Visa, Experian, FIS, and Google Ventures. Our Culture We have hubs in the Bay Area, NYC, Austin, and Toronto. However, we maintain a remote‑first work culture. #WorkFromAnywhere We hire talented, self‑motivated individuals with extreme ownership and high growth orientation. We value performance and not hours worked. We believe you shouldn’t have to miss your family dinner, your kid's school play, friends get‑together, or doctor's appointments for the sake of adhering to an arbitrary work schedule. Location Remote – US or Canada From Home / Beach / Mountain / Cafe / Anywhere We are a remote‑first company with a globally distributed team. You can find your productive zone and work from there. About The Role As an Application Security (AppSec) Engineer at Sardine, you will play a critical role in ensuring the security and integrity of our services. You will be a key security partner for our development teams, embedding security principles directly into the Software Development Lifecycle (SDLC). This is a hands‑on role for a motivated individual who is passionate about proactively identifying and mitigating security risks, building secure systems, and fostering a strong security culture. You will be instrumental in protecting our company and our customers’ data from emerging threats. What You’ll Be Doing Perform security code reviews, vulnerability assessments, and penetration tests on our web applications, mobile applications, and APIs. Integrate and manage security tools within our CI/CD pipelines, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA). Lead and conduct threat modeling exercises for new features and services to identify potential security risks in the design phase. Triage, validate, and prioritize vulnerabilities discovered through automated tools, manual testing, and external bug bounty programs. Collaborate with engineering and product teams to design secure solutions and provide expert guidance on remediation strategies for identified vulnerabilities. Develop and maintain security standards, best practices, and documentation for our development teams. Manage security training to educate developers on secure coding practices and emerging threats. Develop custom scripts and automation to enhance our security testing capabilities and streamline security operations. Assist in incident response activities related to application security events. What You’ll Need 7+ years of professional experience in an application security, product security, or offensive security role. Deep understanding of common application vulnerabilities, such as those listed in the OWASP Top 10, and their mitigation techniques (e.g., Cross‑Site Scripting (XSS), SQL Injection, Cross‑Site Request Forgery (CSRF), Insecure Deserialization). Strong proficiency in reading and auditing code in at least one of the following languages: Python, Go, or JavaScript/TypeScript. Hands‑on experience with security tools for SAST, DAST, IAST, and SCA. Solid understanding of security principles for cloud environments (GCP & AWS) and containerized services (Docker, Kubernetes). Proven experience integrating security into various stages of the SDLC. Strong analytical, problem‑solving, and incident response skills. Excellent communication and interpersonal skills, with the ability to effectively interact with technical and non‑technical stakeholders. Benefits We Offer Generous compensation in cash and equity. Early exercise for all options, including pre‑vested. Work from anywhere: Remote‑first Culture. Flexible paid time off, Year‑end break, Self‑care days off. Health insurance, dental, and vision coverage for employees and dependents - US and Canada specific. 4% matching in 401(k) / RRSP - US and Canada specific. MacBook Pro delivered to your door. One‑time stipend to set up a home office — desk, chair, screen, etc. Monthly meal stipend. Monthly social meet‑up stipend. Annual health and wellness stipend. Annual Learning stipend. Unlimited access to an expert financial advisory. Join a fast‑growing company with world‑class professionals from around the world. If you are seeking a meaningful career, you found the right place, and we would love to hear from you. To learn more about how we process your personal information and your rights in regards to your personal information as an applicant and Sardine employee, please visit our Applicant and Worker Privacy Notice. #J-18808-Ljbffr
-
Senior Security Engineer, Application Security
4 weeks ago
, , Canada 1Password Full timeSenior Security Engineer, Application Security Join to apply for the Senior Security Engineer, Application Security role at 1Password. 1Password is growing faster than ever. We’ve surpassed $400M in ARR and we’re continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle, Red...
-
Senior Application Security Engineer
2 weeks ago
, , Canada GlossGenius Full timeGlossGenius is building an ecosystem enabling entrepreneurs to succeed. We empower small business owners to focus on being creators, not admins, by offering a range of business management tools including booking and scheduling, marketing, analytics, payment processing and much more. Over 100,000 small business owners have chosen to rely on GlossGenius every...
-
Senior Application Security Engineer
1 week ago
, BC, Canada Brex Full timeWhy join us Brex is the AI-powered spend platform. We help companies spend with confidence with integrated corporate cards, banking, and global payments, plus intuitive software for travel and expenses. Tens of thousands of companies from startups to enterprises — including DoorDash, Flexport, and Compass — use Brex to proactively control spend, reduce...
-
Senior Security Engineer, Application Security
2 weeks ago
Remote (United States | Canada) 1Password Full time1Password is growing faster than ever. We've surpassed $400M in ARR and we're continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle Red Bull Racing and the Utah Mammoth. About 1Password At 1Password, we're building the foundation for a safe, productive digital future. Our...
-
Senior Application Security Engineer
2 weeks ago
, , Canada GlossGenius Full timeA technology company is seeking a Senior Application Security Engineer to shape the security of their product portfolio. This remote position involves conducting architectural reviews, developing security policies, and managing vulnerability assessments. Ideal candidates will have 5+ years in security roles and strong collaboration skills with development...
-
Senior Security Engineer
2 weeks ago
, , Canada Magnet Forensics Full timeSenior Security Engineer Magnet Forensics is seeking a highly skilled and motivated Senior Security Engineer to join our dynamic team and play a key role in ensuring the security and integrity of our organization's products and customers’ data. The Senior Security Engineer will be part of the engineering organization and responsible for implementing,...
-
Senior Security Engineer, Application Security
4 weeks ago
, , Canada GitLab Full timeOverview GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations. Our mission is to enable everyone to contribute to and co-create the software that powers our world. When everyone can contribute, consumers become contributors, significantly accelerating human...
-
Senior Security Engineer
3 weeks ago
, , Canada Magnet Forensics Full timeWho We Are; What We Do; Where We’re Going Magnet Forensics is a global leader in the development of digital investigative software that acquires, analyzes, and shares evidence from computers, smartphones, tablets, and IoT-related devices. We are continually innovating so our customers can deploy advanced and effective tools to protect their companies,...
-
Application Security Engineer
4 weeks ago
, , Canada Fragomen Full timeApplication Security Engineer & Architect Fragomen, an Am Law 100 Firm and the leading global immigration services provider, is seeking an Application Security Engineer & Architect. This Engineer will join our talent Cyber Security team, which plays a pivotal role in Fragomen's Immigration Technology Innovation Lab. Our industry‑leading,...
-
Senior Product Security Engineer
3 weeks ago
, , Canada Redis Full timeJoin to apply for the Senior Product Security Engineer role at Redis Who We Are We're Redis. We built the product that runs the fast apps our world runs on. (If you checked the weather, used your credit card, or looked at your flight status online today, you’re welcome.) At Redis, you’ll work with the fastest, simplest technology in the...