Senior Application Security Engineer
2 days ago
Join to apply for the Senior Application Security Engineer role at Sardine . Who We Are We are a leader in fraud prevention and AML compliance. Our platform uses device intelligence, behavior biometrics, machine learning, and AI to stop fraud before it happens. Today, over 300 banks, retailers, and fintechs worldwide use Sardine to stop identity fraud, payment fraud, account takeovers, and social engineering scams. We have raised $145M from world‑class investors, including Andreessen Horowitz, Activant, Visa, Experian, FIS, and Google Ventures. Our Culture We have hubs in the Bay Area, NYC, Austin, and Toronto. However, we maintain a remote‑first work culture. #WorkFromAnywhere We hire talented, self‑motivated individuals with extreme ownership and high growth orientation. We value performance and not hours worked. We believe you shouldn’t have to miss your family dinner, your kid's school play, friends get‑together, or doctor's appointments for the sake of adhering to an arbitrary work schedule. Location Remote – US or Canada From Home / Beach / Mountain / Cafe / Anywhere We are a remote‑first company with a globally distributed team. You can find your productive zone and work from there. About The Role As an Application Security (AppSec) Engineer at Sardine, you will play a critical role in ensuring the security and integrity of our services. You will be a key security partner for our development teams, embedding security principles directly into the Software Development Lifecycle (SDLC). This is a hands‑on role for a motivated individual who is passionate about proactively identifying and mitigating security risks, building secure systems, and fostering a strong security culture. You will be instrumental in protecting our company and our customers’ data from emerging threats. What You’ll Be Doing Perform security code reviews, vulnerability assessments, and penetration tests on our web applications, mobile applications, and APIs. Integrate and manage security tools within our CI/CD pipelines, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA). Lead and conduct threat modeling exercises for new features and services to identify potential security risks in the design phase. Triage, validate, and prioritize vulnerabilities discovered through automated tools, manual testing, and external bug bounty programs. Collaborate with engineering and product teams to design secure solutions and provide expert guidance on remediation strategies for identified vulnerabilities. Develop and maintain security standards, best practices, and documentation for our development teams. Manage security training to educate developers on secure coding practices and emerging threats. Develop custom scripts and automation to enhance our security testing capabilities and streamline security operations. Assist in incident response activities related to application security events. What You’ll Need 7+ years of professional experience in an application security, product security, or offensive security role. Deep understanding of common application vulnerabilities, such as those listed in the OWASP Top 10, and their mitigation techniques (e.g., Cross‑Site Scripting (XSS), SQL Injection, Cross‑Site Request Forgery (CSRF), Insecure Deserialization). Strong proficiency in reading and auditing code in at least one of the following languages: Python, Go, or JavaScript/TypeScript. Hands‑on experience with security tools for SAST, DAST, IAST, and SCA. Solid understanding of security principles for cloud environments (GCP & AWS) and containerized services (Docker, Kubernetes). Proven experience integrating security into various stages of the SDLC. Strong analytical, problem‑solving, and incident response skills. Excellent communication and interpersonal skills, with the ability to effectively interact with technical and non‑technical stakeholders. Benefits We Offer Generous compensation in cash and equity. Early exercise for all options, including pre‑vested. Work from anywhere: Remote‑first Culture. Flexible paid time off, Year‑end break, Self‑care days off. Health insurance, dental, and vision coverage for employees and dependents - US and Canada specific. 4% matching in 401(k) / RRSP - US and Canada specific. MacBook Pro delivered to your door. One‑time stipend to set up a home office — desk, chair, screen, etc. Monthly meal stipend. Monthly social meet‑up stipend. Annual health and wellness stipend. Annual Learning stipend. Unlimited access to an expert financial advisory. Join a fast‑growing company with world‑class professionals from around the world. If you are seeking a meaningful career, you found the right place, and we would love to hear from you. To learn more about how we process your personal information and your rights in regards to your personal information as an applicant and Sardine employee, please visit our Applicant and Worker Privacy Notice. #J-18808-Ljbffr
-
Senior Application Security Engineer
4 weeks ago
, , Canada Webflow Full timeAbout the role: At Webflow, our mission is to bring development superpowers to everyone. As the pioneer of the Website Experience Platform (WXP), we’re redefining how teams Build, Manage, and Optimize for the web — combining visual development, powerful content management systems, AI-driven personalization, seamless hosting, and end-to-end analytics in a...
-
Senior Security Engineer, Application Security
2 weeks ago
, , Canada 1Password Full time1Password is growing faster than ever. We’ve surpassed $400M in ARR and we’re continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle, Red Bull Racing and the Utah Mammoth. About 1Password At 1Password, we’re building the foundation for a safe, productive digital future....
-
, , Canada 1Password Full timeSenior Security Engineer, Application Security Join to apply for the Senior Security Engineer, Application Security role at 1Password. 1Password is growing faster than ever. We’ve surpassed $400M in ARR and we’re continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle, Red...
-
Security Engineer
2 weeks ago
, , Canada N3XT Full timeSecurity Engineer - Application Security Join to apply for the Security Engineer - Application Security role at N3XT . Liberating Money We're looking for a highly skilled and passionate Security Engineer with a dedicated focus on Application Security to join our team. You'll embed robust security practices throughout the entire software development lifecycle...
-
Senior Application Security Engineer
4 weeks ago
, , Canada GlossGenius Full timeGlossGenius is building an ecosystem enabling entrepreneurs to succeed. We empower small business owners to focus on being creators, not admins, by offering a range of business management tools including booking and scheduling, marketing, analytics, payment processing and much more. Over 100,000 small business owners have chosen to rely on GlossGenius every...
-
Senior Security Engineer, Application Security
3 weeks ago
, , Canada GitLab Full timeSenior Security Engineer, Application Security (AMER) Join to apply for the Senior Security Engineer, Application Security (AMER) role at GitLab. GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations. Our mission is to enable everyone to contribute to and co-create...
-
Senior Application Security Engineer
2 weeks ago
, , Canada Clio Full timeJoin to apply for the Senior Application Security Engineer role at Clio Clio is more than just a tech company–we are a global leader that is transforming the legal experience for all by bettering the lives of legal professionals while increasing access to justice. Summary We are currently seeking a Senior Application Security Engineer to join our rapidly...
-
, , Canada GE Vernova Full timeSenior Application Development Cyber Security Engineer Join to apply for the Senior Application Development Cyber Security Engineer role at GE Vernova. We are seeking a seasoned Cyber Security Engineer to lead the development and integration of secure architectures for critical Transmission & Distribution (T&D) systems. As a recognized technical authority,...
-
Senior Application Security Engineer
3 weeks ago
, BC, Canada Brex Full timeWhy join us Brex is the AI-powered spend platform. We help companies spend with confidence with integrated corporate cards, banking, and global payments, plus intuitive software for travel and expenses. Tens of thousands of companies from startups to enterprises — including DoorDash, Flexport, and Compass — use Brex to proactively control spend, reduce...
-
Senior Staff Sales Engineer
2 weeks ago
, , Canada Black Duck Software, Inc. Full timeA leading software security company in Canada is looking for a Senior Staff Sales Engineer to bridge technical and commercial aspects of application security solutions. The ideal candidate will have over 8 years of experience in sales engineering, with a robust understanding of SAST, SCA, and DAST technologies. This role involves working closely with...