Our client is a fast-growing AI startup developing transformative machine learning technologies with real-world applications across healthcare, finance, and enterprise software. With a strong technical foundation and recent funding, they are focused on scaling securely as they bring next-gen AI solutions to market.
They are now looking for a skilled Cybersecurity Engineer to strengthen their security posture across infrastructure, applications, and data pipelines. This role is based in Toronto with a hybrid schedule (3 days onsite, 2 days remote) and offers an exciting opportunity to build secure systems from the ground up in a high-impact environment.
-
Security Architecture & Hardening:
Design and implement secure infrastructure, systems, and application frameworks to protect sensitive data and AI models. -
Threat Detection & Response:
Develop monitoring tools and respond to security incidents across cloud environments (AWS/GCP), APIs, endpoints, and internal systems. -
Risk & Vulnerability Management:
Conduct regular security assessments, audits, and penetration tests. Recommend and implement remediation strategies. -
DevSecOps Integration:
Work closely with DevOps and engineering teams to integrate security into CI/CD pipelines and development workflows. -
Compliance & Best Practices:
Help ensure the company adheres to industry standards and frameworks (e.g., SOC 2, ISO 27001, GDPR, HIPAA if applicable). -
Security Awareness & Training:
Educate staff and promote a security-first culture through training and internal documentation. -
Tooling & Automation:
Build and manage security tools for vulnerability scanning, secrets management, and identity/access control.
-
4–7 years of experience in cybersecurity or information security roles
-
Hands-on experience securing cloud platforms (AWS, GCP, or Azure)
-
Proficient in implementing secure networking, IAM policies, encryption standards, and secure coding practices
-
Solid understanding of Linux systems, containerization (Docker/Kubernetes), and CI/CD pipelines
-
Familiarity with common attack vectors and mitigation techniques (OWASP Top 10, threat modeling, etc.)
-
Experience with monitoring tools like Datadog, Splunk, or similar
-
Relevant certifications (e.g., CISSP, OSCP, CEH, AWS Security) are a plus
-
Strong communication skills and the ability to work cross-functionally with engineering and leadership
-
Competitive salary and equity compensation
-
Hybrid work environment (3 days in-office, 2 days remote)
-
Comprehensive health, dental, and vision benefits
-
Generous PTO and flexible work hours
-
Professional development budget
-
Cutting-edge tech stack and opportunity to work on AI products with global impact
-
Collaborative, inclusive culture driven by innovation, security, and purpose
3 days onsite, 2 days remote
