Application Security Engineer

1 week ago


Montreal, Canada AtoB Inc. Full time

Our mission The trucking and logistics industry provides the backbone of the economy. But the payments infrastructure on which it runs is broken. For the hard-working men and women of this sector, the existing suite of payment tools is outdated, difficult to use, prone to fraud, and saddled with shady fee structures. The incumbent players in this space often overlook the economic and practical needs of this user base. We\'re changing that. AtoB is building Stripe for Transportation — modernizing the payments infrastructure for trucking and logistics. Supply chains rely on the timely movement of capital to function efficiently. Our end game is a world in which that capital movement occurs fairly, smoothly, and without delay. As we pursue that end game, we aim to center our customers in every way — offering them world-class customer experience and building products that work with and around the unique constraints of their daily lives. We build for fleet managers in the office and drivers on the road. We strive for products that are efficient, satisfying, and useful. Our customers enable our modern economy — they deserve it . Our history and background Our founding team has backgrounds in payments, working on autonomous vehicles at Cruise Automation, leading ops and growth for Uber, and building apps that were featured on the Apple app store. We have staff and senior engineers from Google, Uber, Meta, Shopify, Stripe, Chime, and other leading technology companies. We have raised $125 million+ from investors such as General Catalyst, Elad Gil, Bloomberg Beta, Y Combinator, XYZ; founders and CEOs of companies such as Google (Eric Schmidt), Salesforce (Marc Benioff), Coinbase (Brian Armstrong), DoorDash (Tony Xu), Instacart, Gusto; strategic investors like Mastercard, Flexport and Samsara. We were named to Forbes annual Next Billion-Dollar Startup List , and have just recently been selected to join the World Economic Forum as a Global Innovator. AtoB is looking to hire a dedicated Application Security Engineer. You’ll join a small security team, working cross-functionally with backend, frontend, DevOps, product, and compliance teams to push security forward in every part of our stack. What You’ll Do Design and implement security tooling, automation, and processes to support secure development, deployment, and operations Perform threat modeling, design reviews, and security assessments (API, web, mobile, microservices) Conduct secure code reviews, dynamic and static application security testing, and penetration testing Work closely with engineering teams to remediate identified security issues, embed secure practices in SDLC, and strike the balance between speed and safety Investigate and respond to application-level security incidents or suspicious behavior Help define and enforce security standards, policies, and best practices across the engineering organization Maintain and improve application security infrastructure: e.g. vulnerability scanners, SAST/DAST tools, secrets management, dependency scanning, WAF configuration, RASP, etc. Stay abreast of new threats, vulnerabilities, and relevant industry practices; share knowledge (e.g. internal training, security guilds, writing blog posts) What We\u2019re Looking For 4+ years of experience securing web and/or API-based applications in a production setting Hands-on experience with static analysis (SAST), dynamic analysis (DAST), interactive application security testing (IAST) or similar tools Experience performing manual code reviews in languages like Java, Python, Go, JavaScript/TypeScript, or others used at Atob Understanding of common web / API vulnerabilities (OWASP Top 10, API abuses, SSRF, injection, XSS, deserialization, etc.) Familiarity with authentication & authorization mechanisms (OAuth2/OIDC, JWT, session management, RBAC, etc.) Experience integrating security into a CI/CD pipeline (GitHub Actions, GitLab CI, Jenkins, CircleCI, etc.) Working knowledge of cloud platforms (AWS, GCP, Azure) and container/orchestration (Docker, Kubernetes) Strong problem-solving skills, ability to operate in ambiguity and drive security outcomes in fast-moving teams Excellent communication skills — you\u2019ll partner and negotiate with engineers, product, and leadership #J-18808-Ljbffr



  • Montreal, Canada HireTalent - Staffing & Recruiting Firm Full time

    Information Security Engineer II Location: Montreal, QC Type: Hybrid, 3 days onsite Contract Duration: 6 months+ The position at a glance: Application Security is looking to recertify all third-party connections in compliance with in-transit encryption requirements. We are seeking 2 Cyber Security experts at level 2 with the following responsibilities:...


  • Montreal, Quebec, Canada Intact FC Full time $101,800 - $124,400

    Our employees are at the heart of everything we do. Together, we help people, businesses, and society prosper in good times and be resilient in bad times.Our employee promise represents Intact's commitment to you in exchange for living our Values, striving to do your best work, being open to change and investing in your career. In return, we promise to...

  • Security Engineer

    4 hours ago


    Montreal, Canada Compunnel, Inc. Full time

    We are seeking an experienced Security Engineer to support the Access Management team within the Identity & Access Management (IAM) function. This role will focus on integrating on-premise, cloud, and SaaS solutions with the firm's Policy-Based Access Control (PBAC) system. You will collaborate across engineering teams to ensure consistent, least-privilege...

  • Security Engineer

    4 hours ago


    Montreal, Canada LanceSoft, Inc. Full time

    Direct message the job poster from LanceSoft, Inc.Needs local as in-person is Mandate for the role.Position:Privileged Access Management Senior Engineer to support implementation, enterprise rollout and operational support of CyberArk Endpoint Privilege Management (EPM), CyberArk Privilege Threat Analytics (PTA) and CyberArk Privileged Access Management...

  • Lead Security Engineer

    1 minute ago


    Montreal, Quebec, Canada US Mobile Full time

    US Mobile is on a mission to revolutionize connectivity. Imagine a world where you can go into a single app and buy terabytes of data for every one of your devices: phone, smart devices, car, home broadband, and more. That's the future that US Mobile is building: a software platform built truly for the 21st century and the age of 5G and IoT, with world class...

  • Security Engineer

    4 hours ago


    Montreal, Canada Compunnel, Inc. Full time

    We are seeking a highly skilled Security Engineer to join our Cyber organization within the Identity & Access Management (IAM) team. This role focuses on designing and implementing the firm’s next-generation Policy Based Access Control (PBAC) solution. The ideal candidate will work closely with internal infrastructure teams to integrate on-premise, cloud,...

  • Security Engineer

    4 weeks ago


    Montreal, Canada Compunnel, Inc. Full time

    We are seeking a highly skilled Security Engineer to join our Cyber organization within the Identity & Access Management (IAM) team. This role focuses on designing and implementing the firm’s next-generation Policy Based Access Control (PBAC) solution. The ideal candidate will work closely with internal infrastructure teams to integrate on-premise, cloud,...


  • Montreal, Canada Cohere Full time

    Join to apply for the Senior Security Engineer role at Cohere Who Are We Our mission is to scale intelligence to serve humanity. We’re training and deploying frontier models for developers and enterprises who are building AI systems to power magical experiences like content generation, semantic search, RAG, and agents. We believe that our work is...


  • Montreal, Canada Compunnel, Inc. Full time

    OverviewThe Cloud Security Engineer will be responsible for designing, implementing, and supporting cloud environments for Morgan Stanley Investment Management, primarily within Amazon Web Services (AWS) and Microsoft Azure. This highly technical role focuses on driving integration and convergence efforts across cloud service provider environments. The...


  • Montreal, Quebec, Canada MongoDB Full time $173,000 - $240,000

    We are hiring an experienced Security Software Engineer (Staff or Senior) for our Infrastructure Security team to design and build scalable security controls and services within MongoDB Atlas multi-cloud infrastructure.The team sits within the Site Reliability Engineering organization and works with other engineering teams to ensure that our infrastructure...