Source Job

Canada

  • Lead a specialized team of security engineers focused on application, cloud, and AI system security.
  • Champion shift-left security practices including threat modeling, secure code review, and developer training.
  • Define cloud security standards and enforce security for AI systems including LLM-based agents.

Application Security AI Security

20 jobs similar to Manager, Security Engineering

Jobs ranked by similarity.

Canada

  • Embed secure-by-design principles across cloud, SaaS, and AI-driven systems.
  • Lead threat modeling sessions and security design reviews for applications, APIs, and microservices.
  • Define security standards, mentor engineers, and drive organization-wide risk reduction programs.

Jobgether uses an AI-powered matching process to connect candidates with hiring companies quickly and objectively. They are a remote-first, globally distributed company with an inclusive engineering culture.

US

  • Lead integration of security across the SDLC, embedding automated testing into CI/CD pipelines.
  • Secure cloud-native AWS architectures and enforce least privilege access and runtime protections.
  • Perform threat modeling, automate compliance, and innovate with AI security standards.

TrueML is a mission-driven financial software company that uses machine learning to improve customer experiences for distressed borrowers. The team includes data scientists, financial services experts, and customer experience fanatics building inclusive financial technology.

  • Owns product, cloud, engineering, vendor, AI-tooling, and compliance security functions.
  • Builds practical guardrails for AI tools, agents, MCPs, data leakage, and automation.
  • Understands OWASP, IAM, secrets, cloud security, vulnerability management, CI/CD, incident response, and frameworks like SOC 2, ISO 27001, GDPR, or HIPAA.

PlayPower Labs is a company focused on building practical security functions without slowing down teams. The organization values security sharpness, usefulness, and a product-minded approach, with a culture that balances protection and agility.

North America

  • Build and lead a high-performing Infrastructure Security team focused on cloud security, SASE, WAF, and edge technologies.
  • Drive security improvements, maintain KPIs on cloud security posture and incident response, and ensure tactical team oversight.
  • Partner with cross-functional teams and assume the role of Incident Manager during cloud or edge security events.

Applied Systems is an insurtech company that delivers innovative software and services to transform the insurance industry. With over 40 years of experience, the company fosters a culture of learning, collaboration, and diversity to empower its employees and customers alike.

US Canada Unlimited PTO

  • Own and improve the secure software development lifecycle, perform application security reviews, threat modeling, and deep code-level analysis for high-impact product, platform, and AI features.
  • Drive vulnerability management across internal reviews, bug bounty, pentests, and other research signals, ensuring findings are validated, prioritized, and tracked through remediation.
  • Configure and improve AppSec tooling and integrations, and use AI to automate and scale security processes while validating outputs with strong engineering judgment.

Apollo.io is the leading go-to-market solution for revenue teams, trusted by over 500,000 companies and millions of users globally. Founded in 2015, the company is one of the fastest growing companies in SaaS, raising approximately $250 million to date and valued at $1.6 billion.

US Canada

  • Define security architecture and build controls for AI platforms, training and inference workflows, and agentic systems.
  • Design reusable security patterns for identity, authorization, and runtime controls to constrain execution and data exposure.
  • Lead hands-on security reviews and influence security architecture through practical design changes and reusable controls.

Cerebras Systems builds the world's largest AI chip, 56 times larger than GPUs, delivering industry-leading training and inference speeds. With dozens of model releases and rapid growth, they have a non-corporate work culture that respects individual beliefs.

US 4w PTO 12w maternity 12w paternity

  • Partner with Product and Engineering teams to integrate security into application design and development, leading threat modeling and secure code reviews.
  • Develop and implement automated security guardrails across the SDLC, investigate and prioritize application security findings.
  • Promote secure coding practices through training and coaching, and create security standards and procedures that scale across teams.

Quanata is an insurance technology innovation company that engineers advanced risk prediction and prevention solutions and builds a full-stack, flexible, digital & increasingly AI-native insurance platform. We are a remote-first company wholly owned and funded by State Farm, with a culture that prioritizes inclusivity and positive collaboration.

Canada Unlimited PTO

  • Partner with engineering teams to design, build, and operate secure-by-default cloud infrastructure across AWS and Google Cloud.
  • Build reusable Terraform modules and policy-as-code guardrails to make secure implementation easier for engineering teams.
  • Operate CSPM/CNAPP tooling and drive remediation of cloud vulnerabilities and misconfigurations.

Fullscript is a health technology company that provides a platform for practitioners to access clinical insights, lab interpretations, and high-quality supplements, serving over 125,000 practitioners and 10 million patients. The company has a remote-first culture, emphasizes work-life balance, and values inclusivity and continuous learning.

Unlimited PTO

  • Lead AppSec program assessments to evaluate current state and help clients prioritize remediation efforts based on risk, resources, and organizational readiness.
  • Design pragmatic security workflows, processes, and tooling integrations that engineering teams will actually adopt.
  • Deliver polished client work including clear assessments, actionable roadmaps, and executive communications that drive decision-making.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. The company has grown to over 1,200 employees and serves as a trusted advisor to more than 6,200 customers.

US

  • Embed security into every stage of software delivery across multi-cloud environments (AWS, Azure) as a hands-on technical leader.
  • Architect secure, scalable infrastructure, set engineering standards, and mentor a team of DevSecOps engineers.
  • Champion a shift-left security culture, integrate AI-powered tooling, and partner with cross-functional teams to align secure cloud solutions with business objectives.

ComPsych is the worldwide leader in organizational mental health, well-being, and absence management, dedicated to igniting human potential in workplaces across the globe. For over 40 years, they have combined technology with human expertise to support more than 75,000 customers worldwide, touching over 160 million lives across 200 countries.

US

  • Review and threat model AI-powered product features, LLM integrations, and agentic workflows before launch.
  • Build reusable AI security primitives like guardrails, scanners, and policy checks to secure AI development.
  • Design security tooling to detect and prevent prompt injection, jailbreaks, and data leakage in AI systems.

Reddit is a community of communities built on shared interests, passion, and trust, hosting open conversations. With over 100,000 active communities and 126 million daily active users, it is one of the largest sources of information online.

US

  • Lead and mentor a high-performing team of security engineers, setting technical direction and standards for excellence.
  • Define and execute the security roadmap for infrastructure, remote access, endpoints, and M&A.
  • Design and implement security controls across cloud, production, and corporate environments.

Anduril Industries is a defense technology company transforming U.S. and allied military capabilities with advanced technology, powered by Lattice OS. They bring the expertise and business model of innovative companies to the defense industry, focusing on autonomy, AI, and networking.

US

  • Enable software engineering teams to continuously improve the security posture of products and SaaS environments through AppSec and DevSecOps expertise.
  • Serve as the go-to AppSec expert, mentoring engineers on secure design patterns and coding practices while collaborating on threat models and design reviews.
  • Lead automation of vulnerability management tooling across CI/CD pipelines, perform security code reviews, and contribute to compliance strategies.

Hypori is a high-growth cybersecurity SaaS company transforming how organizations think about secure mobility. Backed by $55M in funding from investors including UBS and AE Industrial Partners, the company is expanding into new commercial and regulated markets.

US Unlimited PTO

  • Design and build the AI security control plane to enable safe adoption of AI across the enterprise.
  • Partner with engineering and security teams to modernize the SDLC for an AI-enabled world.
  • Drive technical leadership by translating emerging AI risks into actionable engineering strategies.

Granicus provides cloud-based solutions for government communications, website design, meeting management, and digital services. With over 5,500 government agency clients, 300 million citizen subscribers, and a remote-first culture, it has been consistently recognized on the GovTech 100 list.

US Unlimited PTO

  • Engineer security infrastructure across AWS and Kubernetes including telemetry pipelines, cryptographic lifecycle, and compliance automation.
  • Build and maintain agentic AI workflows using tools like Claude Code and MCP integrations to automate security engineering tasks.
  • Embed security controls into deployment pipelines and develop threat models that inform architecture decisions.

Lumin Digital creates cutting-edge digital banking solutions for credit unions and banks as a 100% cloud-native company. Their culture is built on trust, respect, and boldness in a fully remote environment.

US Unlimited PTO 18w maternity 12w paternity

  • Own the managed AI platform posture end-to-end, anticipating changes and governing usage across the organization.
  • Build financial visibility with token tracking dashboards, anomaly detection, and ROI reporting for leadership.
  • Harden AI security posture by mitigating prompt injection risks and ensuring no sensitive data flows into AI prompts.

Chainguard is the trusted source for open source, delivering hardened, secure builds of open source software and AI agents. They are venture-backed by leading investors and count Fortune 500 enterprises like Anduril, Canva, and OpenAI as customers.

US Unlimited PTO

  • Own the operational health of one or two engineering domains (identity, network, cloud, endpoint, monitoring) and lead cross-team security initiatives.
  • Design security patterns, reference architectures, and standards that the team executes against, ensuring audit-ready documentation.
  • Mentor mid and associate engineers through pairing, code review, and clear standards to elevate team capability.

Aprio is a Top 20 CPA and advisory firm with over 40 U.S. office locations, international offices, and more than 3,200 team members speaking 60+ languages. They provide expertise and strategic foresight for fast-growing industries, fostering a progressive and innovative culture.

US Unlimited PTO 16w maternity 16w paternity

  • Champion a security-first mindset within Engineering to set the security posture of platform infrastructure.
  • Design and build automation that makes compliance evidence continuous and translates HITRUST controls into tests.
  • Embed security into the platform by default through guardrails, policy-as-code, and well-documented patterns.

Redox accelerates healthcare transformation with useful data via its interoperability platform. The fully remote US-based team operates with radical transparency and ownership.

Global Unlimited PTO

  • Lead a distributed engineering organization of nine teams, setting the vision and roadmap for proprietary scanners, AI-driven detection, and agentic remediation.
  • Drive architectural decisions for security detection engines and scalable scanning infrastructure while partnering with product management to prioritize customer needs.
  • Own delivery of security capabilities and represent the Security Factory in cross-functional planning, executive reviews, and customer conversations.

GitLab provides an intelligent orchestration platform for DevSecOps, enabling organizations to improve developer productivity and reduce security risks. With over 50 million users and trust from more than 50% of the Fortune 100, GitLab fosters a high-performance, AI-driven culture where all team members are expected to integrate AI into their workflows.

Canada United States

  • Partner with engineering teams to review cloud and compute architecture design changes.
  • Develop or adopt open-source tools to monitor and harden cloud infrastructure and detect intrusions.
  • Drive the definition and implementation of security policies and monitor conformance.

Quora operates a global knowledge sharing platform with over 300M monthly unique visitors and Poe, a platform for AI language model interaction. It is a privately held, remote-first company with a culture rooted in transparency, idea-sharing, and experimentation.