Security Engineer (Remote) Job at Policyme, Remote

OUdwakhPcG5sUkRkRTNRRHVrM1I5bno4M3c9PQ==
  • Policyme
  • Remote

Job Description

Overview of the role

Join us at PolicyMe! We're modernizing insurance and we’d like your help. The Canadian insurance landscape has remained largely unchanged for decades, and we are in the process of changing that. We're a remote-first, Toronto-based startup with big ambitions.

About the role

As a dedicated Security Engineer, you’ll play a mission-critical role in defining and implementing the practices, tools, and architecture that will safeguard our infrastructure, data, and applications. This is a high-impact, high-autonomy opportunity to build a security foundation from the ground up while directly influencing how we scale safely and intelligently.

You’ll work cross-functionally with all teams to reduce risk, operationalize security, and ensure we can meet the needs of a growing fintech platform with best-in-class standards.

Our tech stack: React, Redux, Python, Webpack, Gatsby,  Node.js , PostgreSQL, AWS

What you'll be doing:
  • Design and implement security architecture across cloud, infrastructure, endpoints, and applications using tools like AWS Security Hub, IAM, GuardDuty, CloudTrail, Inspector, etc.
  • Integrate static and dynamic security testing into CI/CD pipelines (e.g. SonarQube, GitHub Actions).
  • Manage tools such as SIEM, firewalls, MDM, VPN, and EDR. Automate alerting, patching, and rulesets wherever possible.
  • Lead security reviews, threat modeling, and secure coding practices in collaboration with engineering.
  • Drive incident response processes, from detection and triage to resolution and post-mortem.
  • Support SOC2 compliance efforts including evidence gathering, access reviews, and internal audits.
  • Define and operationalize vulnerability management workflows, asset monitoring, and risk mitigation.
  • Educate teams on secure development, OWASP standards, and emerging threats. Promote a security-first mindset across the org.
  • Collaborate with leadership to evolve PolicyMe’s security roadmap and tooling strategy.
What we are looking for:
  • 5+ years of experience in infrastructure and/or application security , ideally in startup or scale-up environments.
  • Strong grasp of AWS cloud security fundamentals and tooling (IAM, VPC, KMS, S3, Security Hub, etc).
  • Experience with integrating security controls into CI/CD pipelines and engineering workflows.
  • Hands-on scripting ability (e.g. Python, Bash) to automate processes and handle operational tasks.
  • Excellent communicator with the ability to articulate risks and solutions to both technical and non-technical stakeholders.
  • A proactive problem-solver who thrives in autonomous roles and can define and drive strategy with limited oversight.
  • Comfortable managing a broad security surface area : from endpoint security to cloud misconfigurations to compliance support.

Reports To: DevOpsSec Manager

Why join us:
  • Generous PTO - 20 vacation days
  • Access to stock options and a comprehensive benefits plan
  • A remote-first team with company paid, in-person socials and the option to work from our Toronto-based office
  • Resources to help your professional development, including an L&D budget, performance reviews twice a year and ongoing feedback to ensure you reach your highest potential
  • Work with an empathetic, high-performing team in a flexible, results-oriented environment

Job Tags

Full time, Work at office, Flexible hours,

Similar Jobs

Groupe APP - APP Group

Marchandiseur saisonnier Job at Groupe APP - APP Group

 ...minorities, Aboriginal peoples, persons with disabilities, LGBTQ2S+ persons and otherwise marginalized persons. Job Summary The Merchandiser will play a key role in developing assortments, influencing product creation and connecting all the key functions such as wholesale... 

University of Arizona

Police Officer Lateral (Detective) (UPDATED) Job at University of Arizona

 ...Police Officer Lateral (Detective) (UPDATED) Note: The number of vacancies has been updated from 1 to 2. This position is open to currently certified AZPOST officers. Successful applicants will be responsible for following up on criminal investigations that include... 

Professional Placement Services

Manufacturing Engineer Job at Professional Placement Services

 .... Capable of leading projects in a fast-paced, customer focused, manufacturing environment. Experienced and trained in Lean and Six Sigma concepts. Degree in Engineering; Electrical, Mechanical, Chemical, Industrial, Manufacturing, Manufacturing Technology, or... 

Taihu Golf Club Co, Ltd

Restaurant Receptionists Needed in Suzhou Job at Taihu Golf Club Co, Ltd

 ...SuzhouTaihu Golf Club, National Top 10 Golf Courses/Specified Course in China of Ladies European Tour, Located in Suzhou Taihu National Tourism & Vacation Zone, with first class facilities and environment, theres a 5-star hotel in our Golf Club, and a 300 seats restaurant... 

Appcast

UX Researcher Job at Appcast

 ...Our direct client in Banking Domainis seeking a UX Researcher to join their team. As a UX Researcher, You will beis responsible for contributing to the user experience of our client's digital properties. Job Title: UX Researcher Duration: 6+ Months Contract Location...