21 Aug
|
Vertisystem (A MOURI Tech
|
Canada
21 Aug
Vertisystem (A MOURI Tech
Canada
Job Title: Senior Software Security Engineer
Location: Fully Remote Role in Eastern time Only
Duration: 06+ Months Contract with Possible Extension
Pay Range: $80-$85 CAD Per Hour on T4
:
- Client’s Security Engineering team is seeking a highly motivated Senior Software Engineer on a contract basis to contribute to strategic initiatives in supply chain security and cloud-native security. This role requires technical expertise in the implementation and continuous improvement of security controls across infrastructure supply chain, containerized environments, and security automation (including AI/ML/LLM solutions). You will be a key contributor in implementing security best practices for our containerized environments and maturing our overall security posture.
Key Responsibilities:
● Design, implement the process for building and maintaining hardened container base images for development and production environments, focusing on minimizing attack surface.
● Provide technical support and engineering solutions for securing Kubernetes (K8s) and containerized workloads, including runtime security, network policies, and admission controllers.
● Secure end-to-end infrastructure supply chain including CI/CD tools implementation, IaC templates, base images, Helm charts and third-party dependencies.
● Build and contribute to our security automation initiatives for custom tooling.
● Triaging vulnerabilities identified from application security reviews, discoveries in internal Pentesting, SAST, DAST and SCA sources.
● Drive the prioritization and remediation plan for vulnerabilities in partnership with Auth0 engineering teams, including development and commit of patches to remediate issues. .
Our Ideal Candidate Will Have:
● Deep, proven experience with container security, including designing and deploying hardened container images and securing Kubernetes clusters.
● Experience with Infrastructure as Code (IaC) tools, especially Terraform, for provisioning security controls.
● Robust practical experience in building and operating security automation specifically in Go-Lang (Go)
● Expertise in using GitHub, and CI/CD systems (GitHub Actions, Jenkins) from an architectural and engineering perspective.
● Expert-level proficiency in Software Composition Analysis (SCA) and hands-on experience in the practical remediation of third-party and open-source dependency vulnerabilities at scale.
● Direct experience or strong conceptual understanding of applying AI/ML, Large Language Models (LLMs), or MCP techniques to security challenges (e.g., automated vulnerability fixing, intelligent alert grouping).
● Expert familiarity with cloud platforms (AWS, Azure) and their security services, with a focus on container orchestration.
Nice to Have:
● Development experience in node.js
● Experience with Artifactory/JFrog
● Advanced knowledge of Application security (OWASP Top 10)
● Experience with supply chain security frameworks (e.g., SLSA).
📌 Senior Software Security Engineer (Canada)
🏢 Vertisystem (A MOURI Tech
📍 Canada