This Lead Security Engineer role focuses on enhancing enterprise security initiatives and driving application security programs within a US-based organization. The role involves threat modeling, vulnerability assessments, code reviews, automation, and collaboration with cross-functional teams. The position offers flexible work arrangements and focuses on contributing to meaningful projects that impact users and business outcomes.
Requirements
- Proven experience delivering application security programs and driving enterprise security initiatives.
- Strong understanding of engineering-focused remediation and mitigation strategies for security vulnerabilities.
- Experience with DevSecOps, product engineering, security engineering, and cross-functional collaboration.
- Familiarity with cloud environments and infrastructure security, including AWS, Kubernetes, CI/CD pipelines, Terraform, and CloudFormation.
- Knowledge of health data protection and security best practices.
- Experience securing applications built on Ruby on Rails, JavaScript, and GraphQL.
- Proficiency with penetration testing tools such as Burp Suite.
- Strong analytical, problem-solving, and communication skills.
Benefits
- Competitive salary
- RRSP match program
- Flexible benefits package
- Professional development and training budget
- Employee discounts
- Flexible remote work arrangements