Join PolicyMe, a remote-first, Toronto-based startup modernizing the insurance landscape in Canada.
As a Security Engineer, you will define and implement practices, tools, and architecture to safeguard infrastructure, data, and applications.
This role offers high impact and autonomy, allowing you to build a security foundation while influencing safe scaling.
Collaborate cross-functionally to reduce risk and operationalize security for a growing fintech platform.
Responsibilities include designing security architecture, integrating security testing into CI/CD pipelines, managing security tools, leading security reviews, driving incident response processes, supporting SOC2 compliance, defining vulnerability management workflows, educating teams on secure development, and collaborating on the security roadmap.
Requirements:
You must have 5+ years of experience in infrastructure and/or application security, preferably in startup or scale-up environments.
A strong grasp of AWS cloud security fundamentals and tooling is required.
Experience with integrating security controls into CI/CD pipelines and engineering workflows is essential.
Hands-on scripting ability in languages like Python or Bash is necessary for automating processes.
Excellent communication skills are required to articulate risks and solutions to both technical and non-technical stakeholders.
You should be a proactive problem-solver who thrives in autonomous roles and can define and drive strategy with limited oversight.
Comfort in managing a broad security surface area, including endpoint security and compliance support, is important.
Benefits:
Enjoy generous PTO with 20 vacation days.
Access stock options and a comprehensive benefits plan.
Work in a remote-first team with company-paid in-person socials and the option to work from the Toronto office.
Benefit from resources for professional development, including an L&D budget and performance reviews twice a year.
Join an empathetic, high-performing team in a flexible, results-oriented environment.