GrepJob
Homebase

Staff Security Engineer, Application Security (Hybrid)

Homebase
Apply
2 months ago
Toronto, CanadaStaff+

Responsibilities

  • Define and execute the multi-quarter Application Security roadmap.
  • Architect secure-by-default patterns and frameworks for developers.
  • Lead threat modeling and security architecture reviews for AI features.
  • Build and maintain security tooling integrated into CI/CD pipelines.
  • Own the vulnerability management program and bug bounty initiatives.
  • Partner with senior leaders to improve overall security posture.

Requirements

  • 10+ years of experience in Application Security or Security Engineering.
  • Deep software engineering experience in production environments.
  • Proven track record of leading architectural changes to reduce security risk.
  • Hands-on experience securing AI-native applications.
  • Strong expertise in web application security and cloud-native security.
  • Proficiency in relevant programming languages and frameworks.

Benefits

  • Stock options and TFSA/RRSP with 4% company match.
  • Comprehensive medical, dental, and vision coverage.
  • Flex time off and designated focus periods.
  • Access to paid AI tools for building and experimentation.
  • Maternity/Parental Leave EI top-up support.
  • Work From Anywhere Month and meeting-free weeks.

Tech Stack

AWSPythonReactRubyRuby on Rails