Senior Application Security Engineer

2 weeks ago


Canada GlossGenius Full time

GlossGenius is building an ecosystem enabling entrepreneurs to succeed. We empower small business owners to focus on being creators, not admins, by offering a range of business management tools including booking and scheduling, marketing, analytics, payment processing and much more. Over 100,000 small business owners have chosen to rely on GlossGenius every day to run their entire set of business operations. Joining its powerful, intuitive platform with its vibrant, distinguished brand, GlossGenius is the ideal combination of a fintech, SMB software, and consumer company all in one. About the Role We are hiring a Senior Application Security Engineer to join our Foundations Engineering team at GlossGenius. In this role, you'll play a critical role in shaping the security of our entire product portfolio. This is a high-visibility position where you'll act as a frontline security voice for our engineering and product teams. You’ll work closely with engineers and product managers to ensure security is a core part of how we build, from the very first design discussions. This role can be based remotely in or near the Greater Toronto Area. What You’ll Do Design Review: You'll act as the initial security point of contact for engineering and product teams. You will conduct security-focused architectural reviews and threat modeling to identify and address vulnerabilities, working directly with development teams to find and fix issues. Policy & Process Adjustments: You will contribute to the development of our security policies and standards. This includes creating secure coding guidelines, building automated tools to prevent common security issues, and collaborating with development teams to embed security into CI/CD pipelines. Vulnerability Management: Own our end-to-end vulnerability management program. This includes deploying scanning tools across our engineering organization, triaging security vulnerabilities, and supporting the ongoing development of the program's tools and processes to prevent common security issues. Vendor Evaluation: Help improve our security program by evaluating new security vendors. This includes running evaluations, coordinating demos, piloting tools internally, and making recommendations on which solutions best fit our needs. What We’re Looking For 5+ years of experience in application or product security roles, preferably in high-growth, cloud-native environments Strong ability to collaborate effectively with software development teams Experience performing architecture reviews/threat models for custom software Excellent communication skills, both written and verbal, with the ability to clearly explain complex topics Familiarity with common security libraries and tools, such as static analysis and penetration testing tools Understanding of common security vulnerabilities and mitigation strategies (e.g., OWASP Top 10) Basic development or scripting skills Fundamental knowledge of network and web protocols (e.g., TCP/IP, HTTP, HTTPS) Willingness to participate in on-call rotations as needed A proactive approach to managing projects from start to finish with a focus on outcomes Flexible PTO Competitive health & dental insurance options, with premiums covered by GG Generous, fully-paid parental leave policy Retirement Savings Plan Professional Development - yearly stipend for approved learning and educational-related expenses Home office support Team Bonding opportunities - as a distributed team, opportunities to gather in person throughout the year At GlossGenius, we celebrate our differences and are committed to creating a workplace where all employees feel supported and empowered to do their best work. We believe this benefits not only our employees but our product, customers, and community as well. GlossGenius is proud to be an Equal Opportunity and Affirmative Action Employer. #J-18808-Ljbffr



  • , , Canada 1Password Full time

    Senior Security Engineer, Application Security Join to apply for the Senior Security Engineer, Application Security role at 1Password. 1Password is growing faster than ever. We’ve surpassed $400M in ARR and we’re continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle, Red...


  • , , Canada Sardine Full time

    Join to apply for the Senior Application Security Engineer role at Sardine . Who We Are We are a leader in fraud prevention and AML compliance. Our platform uses device intelligence, behavior biometrics, machine learning, and AI to stop fraud before it happens. Today, over 300 banks, retailers, and fintechs worldwide use Sardine to stop identity fraud,...


  • , BC, Canada Brex Full time

    Why join us Brex is the AI-powered spend platform. We help companies spend with confidence with integrated corporate cards, banking, and global payments, plus intuitive software for travel and expenses. Tens of thousands of companies from startups to enterprises — including DoorDash, Flexport, and Compass — use Brex to proactively control spend, reduce...


  • Remote (United States | Canada) 1Password Full time

    1Password is growing faster than ever. We've surpassed $400M in ARR and we're continuing to accelerate, earning a spot on the Forbes Cloud 100 for four years in a row and teaming up with iconic partners like Oracle Red Bull Racing and the Utah Mammoth. About 1Password At 1Password, we're building the foundation for a safe, productive digital future. Our...


  • , , Canada GlossGenius Full time

    A technology company is seeking a Senior Application Security Engineer to shape the security of their product portfolio. This remote position involves conducting architectural reviews, developing security policies, and managing vulnerability assessments. Ideal candidates will have 5+ years in security roles and strong collaboration skills with development...


  • , , Canada Magnet Forensics Full time

    Senior Security Engineer Magnet Forensics is seeking a highly skilled and motivated Senior Security Engineer to join our dynamic team and play a key role in ensuring the security and integrity of our organization's products and customers’ data. The Senior Security Engineer will be part of the engineering organization and responsible for implementing,...


  • , , Canada GitLab Full time

    Overview GitLab is an open-core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations. Our mission is to enable everyone to contribute to and co-create the software that powers our world. When everyone can contribute, consumers become contributors, significantly accelerating human...


  • , , Canada Magnet Forensics Full time

    Who We Are; What We Do; Where We’re Going Magnet Forensics is a global leader in the development of digital investigative software that acquires, analyzes, and shares evidence from computers, smartphones, tablets, and IoT-related devices. We are continually innovating so our customers can deploy advanced and effective tools to protect their companies,...


  • , , Canada Fragomen Full time

    Application Security Engineer & Architect Fragomen, an Am Law 100 Firm and the leading global immigration services provider, is seeking an Application Security Engineer & Architect. This Engineer will join our talent Cyber Security team, which plays a pivotal role in Fragomen's Immigration Technology Innovation Lab. Our industry‑leading,...


  • , , Canada Redis Full time

    Join to apply for the Senior Product Security Engineer role at Redis Who We Are We're Redis. We built the product that runs the fast apps our world runs on. (If you checked the weather, used your credit card, or looked at your flight status online today, you’re welcome.) At Redis, you’ll work with the fastest, simplest technology in the...