Эта вакансия в архиве
Посмотреть похожие вакансии ↓обновлено 1 месяц назад
Senior Security Engineer (AI)
181 011 - 274 246CAD
Описание вакансии
Текст:
TL;DR
Senior Security Engineer (AI): Leading and scaling security efforts for an AI-native document generation platform with an accent on risk management, secure coding, and incident response. Focus on safeguarding customer data, products, and company reputation against AI-specific threats and evolving vulnerabilities.
Location: Hybrid role, expected in our Toronto office three days per week.
Salary: CA$181,011–CA$274,246
Company
is a fast-growing vertical SaaS company leveraging AI to empower personal injury lawyers and victims to secure fair compensation.
What you will do
- Identify, assess, and mitigate security risks through comprehensive assessments and strategies.
- Ensure secure coding practices and implement systems to protect against unauthorized access and data breaches.
- Develop and execute incident response plans, conduct forensic analysis, and take preventive measures.
- Maintain compliance with regulations and industry standards, promoting transparency and addressing ethical concerns.
- Establish real-time monitoring systems, conduct regular assessments, and proactively respond to threats.
- Evaluate and secure third-party integrations to prevent vulnerabilities and educate the engineering team on best practices.
Requirements
- 5+ years in a security-focused engineering role with hands-on technical architecture and implementation experience.
- Expertise in SAST/DAST, application security, and CI/CD pipeline integration.
- Deep knowledge of AI-specific threats (e.g., prompt injection, model poisoning, output manipulation).
- Experience implementing security principles, operating system and web application security, and familiarity with OWASP Top 10.
- Strong programming or scripting skills in at least one language (e.g., Python, Ruby, Node.js).
- Relevant cybersecurity certification (e.g., CISSP, CISM, CISA, CRISC, GIAC).
Nice to have
- Infrastructure-as-code or configuration management language fluency.
- GCP security architecture exposure.
- Security compliance implementation (e.g., SOC2, HIPAA, CCPA).
- Experience with Kubernetes.
- Penetration testing (web and infrastructure) and Data loss prevention (DLP).
Culture & Benefits
- Choice of medical, dental, and vision insurance plans for you and your family.
- Flexible paid time off, sick leave, and paid parental leave.
- Home office stipend.
- 401(k) for US-based employees and RRSP for Canada-based employees.
- Local in-person meet-up program and company hubs in San Francisco and Toronto.