Назад
2 дня назад

Staff Enterprise Security Engineer (AI)

Формат работы
hybrid
Тип работы
fulltime
Английский
b2
Страна
Australia
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Enterprise Security Engineer (AI): Securing Canva's internal systems, including endpoints, networks, identities, SaaS tools, and AI agents, with an accent on enterprise security engineering, agentic workflows, and action-level policy controls. Focus on threat modelling MCP and SaaS integrations, building adopted security standards, and automating controls without expanding the team.

Location: Sydney, Australia; hybrid work with regular collaboration on the Sydney campus

Company

Canva develops a collaborative design platform and is building secure internal systems for its global workforce.

What you will do

  • Identify security risks across internal systems and build risk-based roadmaps with business and engineering teams.
  • Help teams enable AI workflows safely and review new tools and agents before deployment.
  • Threat model MCP, agentic workflows, SaaS-to-SaaS integrations, and other emerging enterprise patterns.
  • Define security standards and translate findings into controls that teams adopt.
  • Automate security operations and set technical direction as a staff-level individual contributor without people management.

Requirements

  • Hands-on experience in enterprise, corporate, or internal security engineering.
  • Experience building and operating production security services across endpoints, networks, identity, and SaaS environments.
  • Ability to identify security problems, gain stakeholder support, and deliver fixes without relying on formal authority.
  • Strong understanding of security concepts and the ability to write and review code to standards trusted by other engineers.
  • Based in Sydney, Australia and able to participate in the hybrid working model.

Nice to have

  • Security experience across broad enterprise functions such as marketing or sales.
  • MacOS fleet security, device trust, posture signals, zero trust, and certificate-based device attestation.
  • SaaS security posture management, configuration baselines, OAuth, third-party integration risk, and non-human identities.
  • Experience securing AI agents, MCP servers, or agentic workflows.
  • Terraform, Python, Go, AWS, or GCP experience.

Culture & Benefits

  • Hybrid work with flexibility to choose the balance between remote work and campus collaboration.
  • Equity package.
  • Inclusive parental leave for parents and carers.
  • Annual allowance supporting wellbeing, social connection, and office setup.
  • Flexible leave options.

Hiring process

  • Interviews are conducted virtually.
  • Candidates can provide pronouns and request reasonable interview adjustments.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →