Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Canary Technologies

Senior Application Security Engineer

Canary Technologies

Senior Application Security Engineer joining Canary Technologies to embed security into software development lifecycle. Collaborate with engineering teams for secure practices and tooling.

Posted 7/6/2026full-timeRemote • 🇦🇷 ArgentinaSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in integrating security practices within CI/CD pipelines, utilizing tools such as Snyk and OWASP ZAP, while ensuring compliance with standards like SOC 2 and ISO 27001. Proficient in secure coding practices, vulnerability management, and collaboration with development teams to enhance application security.

Highest-signal resume keywords
Security EngineeringDevSecOpsAppSec ToolingAWS SecurityKubernetes Security

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Secure CodingDependency ManagementVulnerability ScanningAPI SecurityProgramming (Python, Go, JavaScript)IAM Roles ManagementSecrets ManagementInfrastructure as Code (IaC)Monitoring and AlertingData Protection
Soft Skills
Excellent CommunicationTeamwork Abilities
Tools & Technologies
SnykOWASP ZAPBurp SuiteSonarQubeCheckmarxTerraformHelmGitOpsTrivyFalco
Industry Keywords
SOC 2ISO 27001OWASP Top 10Cloud-Native SecurityNetwork Policies

Tech Stack

Tools & technologies
AWSCloudGoJavaScriptKubernetesPythonSDLCTerraform

About the role

Key responsibilities & impact
  • Define and enforce best practices for secure coding, dependency management, and design reviews across engineering teams
  • Integrate and manage SAST, DAST, and SCA tools within CI/CD pipelines (e.g., GitHub Actions)
  • Partner with developers on new features and systems to identify risks early in the lifecycle
  • Implement best practices for secrets handling, API authentication/authorization, and data protection
  • Build security guidelines, training, and reusable libraries/patterns so that teams can ship secure code faster
  • Triage and prioritize findings from bug bounties, penetration tests, and automated scans, ensuring timely resolution
  • Act as the bridge between application developers and platform engineers to align app security with infra and compliance requirements
  • Implement monitoring, alerting, and remediation for security incidents across our platform
  • Scan and remediate vulnerabilities in container images, OS packages, dependencies, and IaC templates
  • Design and maintain least-privilege IAM roles, secrets management, and authentication flows
  • Automate evidence gathering and control enforcement for SOC 2, ISO 27001, and others

Requirements

What you’ll need
  • 6+ years in security engineering, DevSecOps, or related roles, including experience at scale
  • Excellent communication and teamwork abilities
  • Strong experience integrating security into modern SDLC pipelines
  • Hands-on with AppSec tooling (Snyk, OWASP ZAP, Burp Suite, SonarQube, Checkmarx, etc.)
  • Solid understanding of web app security (OWASP Top 10, API security, auth flows, input validation)
  • Familiarity with AWS/Kubernetes security
  • Strong programming skills (Python, Go, or JavaScript) to build tools, write secure code, and contribute to developer libraries
  • Proven track record in partnering with product and engineering teams to drive security adoption without slowing down velocity
  • Strong AWS security skills (IAM, KMS, Security Hub, GuardDuty, WAF)
  • Experience with Kubernetes security (RBAC, OPA/Gatekeeper, network policies)
  • Hands-on with Terraform, Helm, and GitOps practices
  • Familiarity with security tooling (Trivy, Falco, Snyk, Aqua)
  • Knowledge of networking, encryption, and cloud-native security best practices

Benefits

Comp & perks
  • Canary Days: Each month we provide company wide days off to ensure there is at least one extended weekend or day off.
  • Self Improvement Club: Each individual is provided a budget towards any purchases that help us achieve these goals.
  • Professional Development Chats: We provide budget to help drive cross functional professional development conversations across the organization.
  • Travel Reimbursement: Team members are able to visit our offices across New York, San Francisco or Dallas when they choose, and are provided a travel stipend for doing so.
  • Personal Travel Reimbursement: If you stay at a hotel that Canary works with, we provide a credit towards your stay.