Jane logo
Jane

Happiness Supplied

Senior Security Engineer, AppSec Automation

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 1-10Since 2019H1B SponsorCompany SiteLinkedIn

Location

Canada

Posted

9 days ago

Salary

$128K - $200K / year

Seniority

Senior

Bachelor Degree1 yr expEnglishPython

Job Description

Senior Security Engineer, AppSec Automation

Jane

• Design, build, and own the vulnerability engineering pipeline • Raise the team's bar for building with AI by experimenting openly • Partner deeply with dev teams across Jane to make security feel like a service • Coordinate complex, multi-team vulnerability findings • Contribute to the team's on-call rotation

Job Requirements

  • Demonstrated depth in security engineering, including shipped automation, pipelines, or internal security tooling that other teams actually used
  • Hands-on experience with Python and CI/CD security integrations, particularly GitHub Actions
  • Applied knowledge of web and API vulnerability classes
  • Familiarity with SAST, SCA, secret detection, DAST, and ASPM tooling
  • A track record of cross-team influence without authority
  • A track record as a force multiplier
  • Must be currently living and working in Canada and do not require sponsorship.

Benefits

  • comprehensive benefits package

Related Categories

Related Job Pages

More Security Engineer Jobs

Full TimeRemoteTeam 5,001-10,000Since 2011H1B Sponsor

• Be a technical leader on a global software engineering team in Product Security, building and operating robust and scalable systems that drive our security mission • Design and implement software & automation tools for security use cases such as software supply chain security, AI-powered vulnerability discovery, and visibility of a global multi-cloud platform • Partner closely with teams throughout Product Security to develop security tooling strategy, through risk assessments and architectural deep dives • Own SRE excellence for mission-critical security services, implementing performance monitoring and response processes to ensure flawless performance during critical security responses

United States
$140K - $215K / year
Johns Hopkins University logo

Research Consultant - Civics Researcher

Johns Hopkins University

Department name: IT@JH Networking, Telecom and Data Ctr Personnel area: University Administration

Role Description We are seeking a Research Consultant - Civics Researcher who will provide highly specialized skills, advice, counsel, and insights for decision-making related to complex research activity. Will contribute to the planning and implementation of research and ensure adherence to the best research methodologies, design, and practices. - Use scientific methods, procedures and techniques gained through previous training and expertise. - Use understanding of theory behind the research and apply analytical skills to assigned projects. - Identify and mitigate risks. - Implement and standardize new processes and procedures based on expert knowledge of literature and subject matter. - Develop and implement new methods and tools with a focus on improving accuracy, efficiency, and scalability. - Other duties as assigned. In addition to the duties described above: - Lead the Institute for Education Policy’s growing body of civics research, by conducting analysis and overseeing the quality produced by others on our team. - Support the development and funding of new civics projects, by identifying new opportunities and assisting with scopes and budgets required for proposals. - Produce academic and public-facing reports on students’ civic knowledge, skills, and attachments. - Collaborate with the Institute’s leadership across other civics-related research projects and initiatives. Qualifications - PhD in related field and significant experience in conducting related research. - Additional education may substitute for required experience and additional related experience may substitute for required education beyond a high school diploma/graduation equivalent, to the extent permitted by the JHU equivalency formula. Requirements - Analytical Skills - Intermediate - Experimentation - Intermediate - Good Clinical Practices - Intermediate - Information Gathering - Intermediate - Process Improvement - Intermediate - Project Risk Management - Intermediate - Research and Analytical Skills - Intermediate Benefits - Starting Salary Range: $75,100 - $131,700 Annually ($97,000 targeted; Commensurate w/exp.) - Employee group: Full Time - Schedule: Monday-Friday - FLSA Status: Exempt - Location: Remote - Department name: Institute for Education Policy - Personnel area: School of Education

United States
$75.1K - $131.7K / year
Job Closed
MongoDB logo

Senior Product Security Engineer, Cloud

MongoDB

MongoDB, originally called 10gen, is a software development company. Since 2007, MongoDB has created an open-source, document-oriented database to help clients

Full TimeRemoteTeam 5,550Since 2008

MongoDB is seeking a Senior Product Security Engineer to drive cloud security initiatives for MongoDB Atlas and the cloud platforms that power it across AWS, GCP, and Azure. You’ll be a senior individual contributor in the MongoDB Product Security organization, a diverse team responsible for the security of all customer‑facing products, including Atlas, self‑managed/server, and a broad ecosystem of related services and tools. Within Product Security, the Cloud Security team focuses specifically on Atlas control plane and data plane environments and the underlying cloud platforms, partnering closely with Atlas engineering, SRE, other security engineering teams, and global security operations to build and defend secure‑by‑default, large‑scale, multi‑tenant cloud services. This role can be based in our Dublin office (hybrid working model) or remotely in Ireland. Requirements - 7+ years of experience in application, product, and/or cloud security for large-scale, customer-facing systems, ideally in a multi-cloud or SaaS environment - Strong, hands-on experience with cloud security architecture on at least one major cloud provider (AWS, GCP, or Azure), with familiarity across: - VPC/networking (segmentation, egress controls, private connectivity) - IAM (roles, policies, workload identity, cross-account access) - Keys and secrets (KMS, HSMs, secret management systems) - Container/orchestration security (e.g., Kubernetes, ECS, serverless) - Multi-tenant control planes and blast-radius reduction patterns. - Solid security architecture fundamentals: able to design and review end-to-end systems, reason about threat models and risk trade-offs, and recommend appropriate controls across application, data, and infrastructure layers - Ability to read and reason about code (e.g., Go, Java, or similar languages) and familiarity with IaC (Terraform/CloudFormation), CI/CD, and security automation tooling (e.g., CSPM, IaC scanning, SAST, SCA) - Demonstrated experience leading security reviews and projects in partnership with engineering teams (e.g., threat modeling, design reviews, targeted testing) and turning findings into pragmatic, prioritized remediation work - Excellent written and verbal communication skills; you can explain complex cloud and product security issues in a way that builds trust with engineers, leaders, and, when needed, customers - A strong sense of ownership and follow-through, paired with a collaborative working style--you bring others along, create space for their input, and offer specific, actionable feedback In this role you will… - Co-own and drive Atlas cloud security initiatives such as control plane hardening, cloud security baselines, identity and access patterns, customer account protections, and data-plane protections for multi-tenant environments - Perform and lead security reviews for Atlas features and platform changes in cloud environments, including architecture review, threat modeling, and targeted testing, with an emphasis on pragmatic, actionable guidance - Design and review cloud architectures across AWS, GCP, and Azure--covering networking, IAM, secrets management, and service-to-service access--and help define secure reference architectures that can be reused by Atlas teams - Embed security into platforms and guardrails by working with platform, SRE, and other security engineering teams to implement policies and automation (e.g., policy-as-code, secure defaults, pre-deployment checks) that make the secure path the easiest path for developers - Use CSPM, infrastructure vulnerability data, and IaC scanning to identify meaningful posture gaps in Atlas environments and drive concrete hardening work with clear ownership, coverage, and success metrics - Partner with Detection & Response, SRE, and other security teams to bring product and cloud context to incidents, threat hunts, and posture investigations, and to design new detections tied to Atlas and its cloud footprint - Influence roadmaps and priorities by translating security risk and customer expectations into well-scoped problem statements, options, and trade-offs that resonate with engineering and product leaders - Mentor and support other engineers (within Product Security and partner teams), contributing to internal documentation, reviews, and training that raise the bar for secure cloud design and implementation Nice to Haves - Prior experience as a security engineer for a multi-tenant SaaS or cloud platform, particularly in data, database, or infrastructure-as-a-service domains - Hands-on experience with Atlas-like environments: control planes orchestrating resources across multiple cloud providers, with strong isolation and blast-radius containment requirements - Experience improving the signal quality and developer adoption of CSPM, vulnerability management, or IaC scanning in large engineering organizations - Public contributions to the security community (talks, tools, standards, or publications) in cloud or product security - Experience mentoring other security engineers or serving as a bar-raiser in interviews for product/cloud security roles About MongoDBMongoDB is built for change, empowering our customers and our people to innovate at the speed of the market. We have redefined the database for the AI era, enabling innovators to create, transform, and disrupt industries with software. MongoDB’s unified database platform, the most widely available, globally distributed database on the market, helps organizations modernize legacy workloads, embrace innovation, and unleash AI. Our cloud-native platform, MongoDB Atlas, is the only globally distributed, multi-cloud database and is available across AWS, Google Cloud, and Microsoft Azure. With offices worldwide and over 60,000 customers, including 75% of the Fortune 100 and AI-native startups, relying on MongoDB for their most important applications, we’re powering the next era of software. Our compass at MongoDB is our Leadership Commitment, guiding how and why we make decisions, show up for each other, and win. It’s what makes us MongoDB. To drive the personal growth and business impact of our employees, we’re committed to developing a supportive and enriching culture for everyone. From employee affinity groups, to fertility assistance and a generous parental leave policy, we value our employees’ wellbeing and want to support them along every step of their professional and personal journeys. Learn more about what it’s like to work at MongoDB, and help us make an impact on the world! MongoDB is committed to providing any necessary accommodations for individuals with disabilities within our application and interview process. To request an accommodation due to a disability, please inform your recruiter. MongoDB is an equal opportunities employer. Req ID: 1273407903

Ireland
AttainX, Inc. logo

Director, National Security Solutions

AttainX, Inc.

SBA Certified 8(a), EDWOSB/WOSB and CMMI L3, ISO 9001:2015 Certified QMS

Full TimeRemoteTeam 51-200Since 2008H1B No Sponsor

• Serve as AttainX's lead Telecommunications Subject Matter Expert supporting the CISA Priority Services Program • Provide technical leadership and strategic direction for telecommunications service delivery, carrier integration, and operational support activities • Manage project schedules, deliverables, risks, and customer communications • Coordinate with national and regional telecommunications carriers supporting priority communications services • Support telecommunications engineering, network modernization, interoperability, and service sustainment initiatives • Analyze telecommunications service performance and recommend improvements to enhance resiliency, availability, and operational effectiveness • Oversee testing, validation, and operational readiness activities supporting telecommunications services • Prepare and present technical briefings, reports, recommendations, and status updates to Government stakeholders • Participate in carrier coordination forums, technical working groups, and industry standards activities as required • Support contract performance objectives and ensure customer satisfaction • Provide leadership, mentorship, and guidance to technical team members supporting the program • Perform additional duties and special projects as assigned

Virginia
$200K - $250K / year
Job Closed