Cloud Application Security Engineer

Trulioo

Trulioo

Vancouver, BC, Canada

Posted 6+ months ago

At Trulioo, we build and connect digital identity networks around the globe, and this framework of trust empowers businesses to assess the various risks associated with digital identities. Our mission is to build trust online. Digital services hold the promise of allowing anyone to interact and transact with anyone, anywhere. However, the threat of bad actors gets in the way of our connectedness; the global village only works if we trust each other.

We are a Silicon Valley-funded tech company solving the problems of trust and safety online. To realize that goal we’ve built the world’s leading identity verification platform, enabling instant verification of 5 billion people and 330 million businesses in more than 195 countries. With offices in Vancouver, San Diego, Austin, Dublin, Copenhagen, and Singapore, we’ve fostered a world class team committed to building trust online. Our competitive advantage is, and always will be, our people. At Trulioo, we truly believe “everyone is someone” and we invite you to join our mission and celebrate the positive change we are making in the world.


Position Summary

We are seeking a Cloud Application Security Engineer to join our ISC team to own the overall cloud application security posture for our Trulioo SaaS platform. As a Cloud Application Security Engineer, you will work with the Sr. Manager of Cloud Security to provide world-class protection for our applications systems and infrastructure hosted in AWS. As part of the security management team, you will help execute the vision for security architecture, engineering and operations, and work hand in hand with Engineering teams to implement and maintain our security posture. You will ensure that our cloud infrastructure not only meets the security and compliance requirements of our customers, but sets the example on how security and usability can both be achieved. We are a 24/7 operation that requires on-call coverage to serve any technical incidents that may arise. This is a full-time position in our downtown Vancouver HQ.

What you'll be doing:

You will be a key resource within the Trulioo security team, spearheading our security and compliance efforts across our products and platform. The ideal candidate is a self-starter, has worked on a cloud security team and is well-versed in the latest cloud security tools and technologies for AWS.

  • Collaborate with DevOps, Engineering and other stakeholders to implement and operate the cloud application security plan.
  • Participate in and support application security reviews and threat modeling, including code review, static, and dynamic testing
  • Manage application security vulnerability management.
  • Support the Engineering and QA teams to ensure that security testing objectives are met.
  • Ensure the adoption of security best practices in testing, automation, and CI/CD pipelines.
  • Own the AWS security services for our hosted platform. Ensure all AWS security services are properly configured, pragmatic monitoring visibility and alerting.
  • Research and advise on new technology and latest CyberSecurity trends.
  • Track the performance of security measures to protect Trulioo's information and cloud infrastructure.
  • Monitor systems for irregular behavior and set up preventive measures.
  • Respond and assist in investigating any security incidents reported by our security and monitoring tools.

You have:

  • Experience implementing zero trust networking concepts
  • Strong background in distributed systems security
  • Knowledge of security frameworks, encryption standards, coding practices, tools, and exploits
  • Familiar with various types of authentication systems
  • Knowledge in CI/CD Lifecycle Security (Gitlab) and web application security (OWASP top 10)
  • Strong DevSecOps experience with a cloud provider, ideally AWS (bonus points for AWS certifications)
  • Experience with several AWS security services such as SecurityHub, GuardDuty, Macie, IAM, Control Tower, CloudWatch and Trusted Advisor
  • Scripting experience such as Powershell, Python, Terraform
  • Knowledge of monitoring and logging tools (Sumo Logic)
  • Strong hands on technical background with Windows & Linux
  • Critical thinking skills and the ability to solve problems as they arise
  • Excellent communication, organization, time-management, and management skills
  • 3+ years experience focused on DevSecOps and Cloud Application Security
  • Familiarity with audits and standards requirements such as ISO 27001 and SOC 2
  • BS degree in computer science, engineering or other STEM field, or a comparable combination of education, training, and experience.

Working at Trulioo

You will be challenged to achieve, develop, and grow as part of a hyper-growth company.

We offer you the opportunity to make a difference and create a better world by revolutionizing how technology, trust, and identity intersect online. We are on a mission to make sure no one is left behind and everyone has the opportunity to participate fully in the modern digital economy. In order to do this well, diversity and inclusion have always been fundamental to our mission, our culture and our life. Trulioo is proud to be an equal opportunity employer and our commitment to inclusion across race, gender, age, religion, identity and experience connects us with the customers and communities we serve, attracting top talent and passionate changemakers across the globe. Our mission matters – for billions of people everywhere.

The diverse experiences, ideas, and identities of Trulioo’s team members help us make better decisions and drive great results. We foster an inclusive work environment that welcomes team members of all backgrounds and perspectives.

We're committed to providing a meaningful environment for every member of our team. We hire exceptional people and reward them with trust, autonomy, mentorship, and the freedom to grow into their roles.

You are naturally curious, invest time to better understand complex concepts and have strong attention to detail. You love working in a team where trust is key and want to make an impact everyday. If this sounds like you, please apply and come work with us.

Studies show that minorities and members of underrepresented groups apply for jobs only if they meet 100% of the qualifications. Trulioo encourages everyone interested in a role to apply. We look forward to your application!


Privacy Notice

Trulioo collects, processes, and discloses personal data solely for the purposes reasonably required to establish, manage, or terminate an employment relationship. This includes:
• your name and contact details, including email and phone number; and
• details of your qualifications, skills, and relevant experience.

Trulioo believes the information in this publication is accurate as of its publication date. The information contained in this publication is subject to change without notice.
THE INFORMATION IN THIS PUBLICATION IS PROVIDED “AS IS.” TRULIOO INFORMATION SERVICES MAKES NO REPRESENTATIONS OR WARRANTIES OF ANY KIND WITH RESPECT TO THE INFORMATION IN THIS PUBLICATION AND SPECIFICALLY DISCLAIMS IMPLIED WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE.
No part of this document may be reproduced without the express written consent of Trulioo Information Services Inc.