Senior Security Engineer, Vulnerability Automation
TLDR
High-impact security engineering role shaping vulnerability automation across threat intel, AppSec signals, and AI-driven workflows to accelerate secure remediation.
Own and evolve the vulnerability engineering pipeline, from ingestion of threat intelligence and security findings through to automated remediation workflows and PR generation, defining scalable architecture and engineering standards.
- Build and improve automation that filters, validates, and contextualizes vulnerability data so only true positives reach development teams.
- Partner closely with engineering teams to integrate security into CI/CD pipelines and ensure security feedback is actionable, precise, and developer-friendly.
- Drive continuous improvement of security detection and remediation across SAST, DAST, SCA, secrets detection, and ASPM tooling.
- Coordinate vulnerability response across multiple teams, managing communication, tracking remediation progress, and ensuring SLA adherence.
- Contribute to on-call rotations, incident response, and post-incident reviews to improve operational maturity and system resilience.
- Strong hands-on experience with Python and CI/CD systems such as GitHub Actions, building secure and automated workflows.
- Deep understanding of web and API vulnerability classes, secure coding practices, and real-world remediation strategies.
- Familiarity with SAST, DAST, SCA, secrets detection, and ASPM platforms, with ability to interpret and operationalize findings.
- Proven ability to design and ship systems used across engineering teams in fast-paced environments.
- Strong cross-functional communication skills, with the ability to translate complex security issues into clear engineering actions.
- Demonstrated ability to influence without authority and act as a force multiplier through mentoring and knowledge sharing.
- AI-first mindset with active use of AI tools to enhance productivity, detection, and security workflows.
- Competitive compensation aligned with experience and impact
- Equity participation in a high-growth, mission-driven organization
- Fully remote work across Canada with flexible working arrangements
- Comprehensive health, dental, and vision coverage
- Generous paid time off and wellness-oriented policies
- Professional development support and learning opportunities
- Modern engineering environment with strong investment in AI tooling and automation
- Opportunity to work on meaningful security challenges at scale in a high-trust engineering culture
Requirements:
8+ years of experience in security engineering, software engineering, or DevSecOps roles with strong exposure to security automation and scalable tooling.
Benefits:
Benefits
Equity Compensation
Equity participation in a high-growth, mission-driven organization
Health Insurance
Comprehensive health, dental, and vision coverage
Learning Budget
Professional development support and learning opportunities
Security challenges in high-trust culture
Opportunity to work on meaningful security challenges at scale in a high-trust engineering culture
Paid Time Off
Generous paid time off and wellness-oriented policies
Remote-Friendly
Fully remote work across Canada with flexible working arrangements
Jobgether runs the largest remote job platform, effectively linking job seekers with over 200,000 flexible and remote opportunities that match their unique skills and preferences. Our focus is on enhancing the hiring process, ensuring efficiency while prioritizing the candidate experience, particularly in the growing health and wellness sector.
- Founded
- Founded 2020
- Employees
- 11-50 employees
- Industry
- Professional Services