Security Engineer
Lendesk
- Vancouver, BC
- 130.000-160.000 $ par an
- Permanent
- Temps-plein
- Lead the evaluation and mitigation of emerging security threats and news
- Proactively identify security weaknesses in our systems and seek improvements
- Promote security best practices
- Recommend effective strategies and provide guidance to developers on secure solutions
- Collaborate with developers to review designs and implementations for potential security issues
- When appropriate, implement solutions aligned with recommended strategies
- Write infrastructure-as-code (Terraform), with a focus on security-related solutions
- Configure and manage cloud security tools, including Datadog’s security suite
- Oversee vulnerability scanning and assessment, including Dependabot and Amazon ECR
- Organize and evaluate penetration tests, including managing external assessments
- Lead or actively participate in security exercises and audits
- Support responses to compliance and security questionnaires
- Meet with vendors and partners on security-related matters
- Provide input on internal security guidance related to staff practices and device configuration
- 5+ years of professional experience in a security engineering, DevSecOps, or infrastructure security role
- Bachelor’s degree in Software Engineering, Computer Science or related field, or equivalent practical experience
- Proficiency in at least one programming language
- Experience in utilizing a variety of tools for vulnerability and penetration testing
- Experience writing clear, actionable security reports tailored for engineering, leadership and compliance teams
- Hands-on experience with secure software development lifecycle practices, including threat modeling, static/dynamic code analysis, and security-focused code reviews
- Demonstrated ability to build relationships across engineering teams, encouraging secure development practices through education, support, and partnership
- Experience provisioning and configuring AWS infrastructure using Terraform
- Experience integrating security checks into CI/CD pipelines using GitHub Actions
- Experience leading tabletop exercises to simulate incident response scenarios
- Experience working in regulated industries, such as finance or healthcare
- Familiarity with compliance frameworks such as SOC 2
- Competitive salaries
- Comprehensive benefit plan including dental, medical and vision
- Remote first, work from where you are in Canada
- Budget to improve your home office set-up
- Flexible work hours
- The latest in hardware and software tools
- Budget for continuous development and training
- Stock purchase program in our parent company (“NYSE:RKT”)