Write, review, debug, and implement tools to help developers avoid security flaws
Build partnerships with development teams and advise on security best practices
Contribute to collective developer education by driving security awareness and knowledge amongst the product organization
Provide detailed guidance and support to teams in vulnerability remediation, and develop frameworks, guidelines, and systematic fixes for recurring vulnerabilities
Resolve issues, navigate ambiguity, and maintain positive working relationships with researchers in our Bug Bounty program
Identify and implement tools for automated application scanning, static analysis and related tools
Perform penetration testing, and offensive campaigns against internal assets
Perform reactive incident response and forensics when a security event occurs
Perform proactive research to detect new attack vectors
Elevate and educate our security culture within Clio, contributing to our cultural values
Requirements
Experience in Application Security, with a strong focus on offensive security and penetration testing
Proven ability to lead and conduct formal threat modeling sessions
Strong proficiency in at least one major programming language (e.g., Python, .NET, JavaScript)
Experience securing applications in modern cloud environments (AWS, Azure, or GCP)
Expertise with common application security tools and platforms (e.g., Burp Suite, SAST, SCA)
Experience with log aggregation and SIEM technologies
Ability to identify malicious behaviour and emerging threats via log analysis
Security certifications such as OSCP or OSWE (SERIOUS BONUS POINTS)
Active participation in the security community
Benefits
Competitive, equitable salary with top-tier health benefits, dental, and vision insurance
Hybrid work environment, with expectation to be in office minimum 2 days per week
Flexible time off policy, with an encouraged 20 days off per year
$2000 annual counseling benefit
RRSP matching and RESP contribution
Clioversary recognition program with special acknowledgement at 3, 5, 7, and 10 years
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.