Sardine is a leader in fraud prevention and AML compliance, utilizing device intelligence, behavior biometrics, machine learning, and AI to combat fraud.
The company serves over 300 banks, retailers, and fintechs globally, having raised $145M from notable investors.
The role of Senior Application Security Engineer involves ensuring the security and integrity of services, embedding security principles into the Software Development Lifecycle (SDLC).
Responsibilities include performing security code reviews, vulnerability assessments, and penetration tests on web and mobile applications and APIs.
The engineer will integrate and manage security tools within CI/CD pipelines, lead threat modeling exercises, and collaborate with engineering teams to design secure solutions.
The position requires developing security standards, managing security training, and assisting in incident response activities.
Requirements:
Candidates must have 7+ years of professional experience in application security, product security, or offensive security roles.
A deep understanding of common application vulnerabilities, such as those in the OWASP Top 10, and their mitigation techniques is essential.
Strong proficiency in reading and auditing code in at least one of the following languages: Python, Go, or JavaScript/TypeScript is required.
Hands-on experience with security tools for SAST, DAST, IAST, and SCA is necessary.
A solid understanding of security principles for cloud environments (GCP & AWS) and containerized services (Docker, Kubernetes) is expected.
Proven experience integrating security into various stages of the SDLC is required.
Strong analytical, problem-solving, and incident response skills are essential.
Excellent communication and interpersonal skills are necessary to interact effectively with both technical and non-technical stakeholders.
Benefits:
The position offers generous compensation in cash and equity, with a base pay range of $175,000 - $215,000 CAD.
Employees benefit from early exercise for all options, including pre-vested options.
The company promotes a remote-first culture, allowing employees to work from anywhere.
Flexible paid time off, a year-end break, and self-care days off are provided.
Health insurance, dental, and vision coverage is available for employees and their dependents in the US and Canada.
A 4% matching in 401k / RRSP is offered for US and Canada employees.
Employees receive a MacBook Pro delivered to their door and a one-time stipend to set up a home office.
Monthly stipends for meals and social meet-ups are included, along with annual stipends for health and wellness and learning.
Unlimited access to expert financial advisory services is also provided.