EvenUp
Senior/Staff Security Engineer
Toronto (hybrid) · Staff+ · Full-time
Sponsorship not specifiedDetected 22 days ago
PythonCloud PlatformsCI/CDLLMsCybersecurityPenetration TestingIncident ResponseCommunication
About the role
- We empower personal injury lawyers and victims to get the justice they deserve.
- Life as an Engineer at EvenUp 🎥 Security at EvenUp is still early enough to shape.
- This isn't a role where you'll spend your days reviewing policies or maintaining existing controls.
Responsibilities
- Build Secure Products: Partner with Engineering to embed security throughout the SDLC through threat modeling, secure design reviews, vulnerability management, penetration testing, and practical security guidance.
- Strengthen Our AI Platform: Help design and implement security controls for AI-powered products and internal AI tooling. Evaluate emerging threats and develop practical approaches to securing LLM applications.
- Automate Security: Build tools, workflows, and automations that help engineering teams identify, prioritize, and remediate security issues more efficiently.
- Respond to Security Events: Help lead incident response, improve detection capabilities, investigate security events, and continuously strengthen our monitoring and response processes.
- Raise the Security Bar: Partner with engineers across the company to promote secure development practices, improve documentation where needed, and build security into how we work every day.
- 5+ years building or scaling security at a startup or high-growth technology company.
- Partner with Engineering to embed security throughout the SDLC through threat modeling, secure design reviews, vulnerability management, penetration testing, and practical security guidance.
- Help design and implement security controls for AI-powered products and internal AI tooling.
- Evaluate emerging threats and develop practical approaches to securing LLM applications.
Nice to have
- Strong application security experience, including secure SDLC, SAST/DAST, CI/CD security, and vulnerability management.
- Experience securing modern cloud environments and infrastructure.
- Strong programming or automation skills (Python preferred).
- Experience partnering directly with software engineers to solve security problems.
- Familiarity with AI security concepts such as prompt injection, model abuse, adversarial testing, or LLM security is a strong plus.
- Knowledge of modern security tooling across cloud, endpoint, identity, and application security.
- A builder mentality- you enjoy solving technical problems, automating repetitive work, and improving systems over time.
- Relevant security certifications (CISSP, GIAC, CISM, etc.) are a plus, but practical engineering experience matters more.
Skills
- Work on real AI security challenges. Help secure LLM-powered products, internal AI tooling, and the systems behind them.
- Shape the future. Join while the security function is still early enough that your ideas and technical decisions will have lasting impact.
Benefits
- Choice of medical, dental, and vision insurance plans for you and your family.
- Additional insurance coverage options for life, accident, or critical illness.
- Flexible paid time off, sick leave, short-term and long-term disability.
- A home office stipend.
- Paid parental leave.
- As part of our total rewards package, we offer attractive benefits and perks to our employees, including:
- Please note the above benefits & perks are for full-time employees
- We do not discriminate based on race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
Equal opportunity
- equal opportunity employer.
- We are committed to diversity and inclusion in our company.
This listing is sourced directly from EvenUp's careers page and normalized into a canonical job model.