Эта вакансия в архиве

Посмотреть похожие вакансии ↓
Company hidden
обновлено 1 месяц назад

Senior Security Engineer (AI)

181 011 - 274 246CAD
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Canada

Описание вакансии

Текст:
/

TL;DR

Senior Security Engineer (AI): Leading and scaling security efforts for an AI-native document generation platform with an accent on risk management, secure coding, and incident response. Focus on safeguarding customer data, products, and company reputation against AI-specific threats and evolving vulnerabilities.

Location: Hybrid role, expected in our Toronto office three days per week.

Salary: CA$181,011–CA$274,246

Company

hirify.global is a fast-growing vertical SaaS company leveraging AI to empower personal injury lawyers and victims to secure fair compensation.

What you will do

  • Identify, assess, and mitigate security risks through comprehensive assessments and strategies.
  • Ensure secure coding practices and implement systems to protect against unauthorized access and data breaches.
  • Develop and execute incident response plans, conduct forensic analysis, and take preventive measures.
  • Maintain compliance with regulations and industry standards, promoting transparency and addressing ethical concerns.
  • Establish real-time monitoring systems, conduct regular assessments, and proactively respond to threats.
  • Evaluate and secure third-party integrations to prevent vulnerabilities and educate the engineering team on best practices.

Requirements

  • 5+ years in a security-focused engineering role with hands-on technical architecture and implementation experience.
  • Expertise in SAST/DAST, application security, and CI/CD pipeline integration.
  • Deep knowledge of AI-specific threats (e.g., prompt injection, model poisoning, output manipulation).
  • Experience implementing security principles, operating system and web application security, and familiarity with OWASP Top 10.
  • Strong programming or scripting skills in at least one language (e.g., Python, Ruby, Node.js).
  • Relevant cybersecurity certification (e.g., CISSP, CISM, CISA, CRISC, GIAC).

Nice to have

  • Infrastructure-as-code or configuration management language fluency.
  • GCP security architecture exposure.
  • Security compliance implementation (e.g., SOC2, HIPAA, CCPA).
  • Experience with Kubernetes.
  • Penetration testing (web and infrastructure) and Data loss prevention (DLP).

Culture & Benefits

  • Choice of medical, dental, and vision insurance plans for you and your family.
  • Flexible paid time off, sick leave, and paid parental leave.
  • Home office stipend.
  • 401(k) for US-based employees and RRSP for Canada-based employees.
  • Local in-person meet-up program and company hubs in San Francisco and Toronto.