Position Summary League's security engineering team is responsible for scaling security across the development lifecycle. We believe in security by design and follow a paved-road philosophy: we build ...
Position Summary League's security engineering team is responsible for scaling security across the development lifecycle. We believe in security by design and follow a paved-road philosophy: we build ...
Security Engineer
Toronto, ON · On-site
CA$130K - CA$140K/yr
Security Engineer Advantage Group International is seeking a Security Engineer to join our Technology team. This is a unique opportunity to build and shape our security posture from the ground up.
Quick apply
Security Engineer
Toronto, ON · On-site
CA$130K - CA$140K/yr
Security Engineer Advantage Group International is seeking a Security Engineer to join our Technology team. This is a unique opportunity to build and shape our security posture from the ground up.
Staff, Security Engineer
Toronto, ON · Remote
The Opportunity We're looking for a Staff Security Engineer to join Fullscript's Security Engineering team as a senior technical leader and hands-on builder. This role is ideal for someone who ...
Staff, Security Engineer
Toronto, ON · Remote
The Opportunity We're looking for a Staff Security Engineer to join Fullscript's Security Engineering team as a senior technical leader and hands-on builder. This role is ideal for someone who ...
Cloud Security Engineer
Toronto, ON · On-site
The Cloud Security Engineer, Cloud Security Engineering will be responsible for providing technical delivery of solutions within a diverse team of cloud security engineers, deploying cutting edge ...
Cloud Security Engineer
Toronto, ON · On-site
The Cloud Security Engineer, Cloud Security Engineering will be responsible for providing technical delivery of solutions within a diverse team of cloud security engineers, deploying cutting edge ...
Senior Cloud Security Engineer
Toronto, ON · On-site
The Senior Security Engineer, Security Solutions Engineering will be responsible for providing senior technical leadership as a hands-on developer and solution designer, building secure full-stack ...
Senior Cloud Security Engineer
Toronto, ON · On-site
The Senior Security Engineer, Security Solutions Engineering will be responsible for providing senior technical leadership as a hands-on developer and solution designer, building secure full-stack ...
Security today is shared across Engineering and DevOps. You'll work closely with both teams and have real room to shape how Forma approaches security as we grow. Depending on your interests and the ...
Security today is shared across Engineering and DevOps. You'll work closely with both teams and have real room to shape how Forma approaches security as we grow. Depending on your interests and the ...
We're looking for a Senior Cloud Security Engineer II to join our Security Engineering function as a senior individual contributor and technical leader for cloud security. This is a step up from our ...
We're looking for a Senior Cloud Security Engineer II to join our Security Engineering function as a senior individual contributor and technical leader for cloud security. This is a step up from our ...
Coordinates with Cloud Engineering and other internal teams to design and implement security controls, defenses, and countermeasures that protect company data, applications, and infrastructure across ...
New
Coordinates with Cloud Engineering and other internal teams to design and implement security controls, defenses, and countermeasures that protect company data, applications, and infrastructure across ...
New
WHAT YOU'LL DO As a Senior Security Engineer on the Enterprise Security team, you'll protect Braze employees, their assets, and work locations using various tools and technologies. Your ...
WHAT YOU'LL DO As a Senior Security Engineer on the Enterprise Security team, you'll protect Braze employees, their assets, and work locations using various tools and technologies. Your ...
Overview The Senior Application Security Engineer plays a critical role in driving secure software development and application security maturity within TripleLift's Engineering and Security ...
Overview The Senior Application Security Engineer plays a critical role in driving secure software development and application security maturity within TripleLift's Engineering and Security ...
Senior Security Engineer
Toronto, ON · On-site
Resourcing and project management of a team of physical security consultants and engineers working on multiple design and construction projects simultaneously that may be in different phases ...
Senior Security Engineer
Toronto, ON · On-site
Resourcing and project management of a team of physical security consultants and engineers working on multiple design and construction projects simultaneously that may be in different phases ...
Application Security Engineer
Toronto, ON · Hybrid
CA$120K - CA$202K/yr
The State Street Cyber Security Architecture & Engineering team is seeking an accomplished professional with proven expertise in Application Security (AppSec) and DevSecOps. The ideal candidate will ...
Application Security Engineer
Toronto, ON · Hybrid
CA$120K - CA$202K/yr
The State Street Cyber Security Architecture & Engineering team is seeking an accomplished professional with proven expertise in Application Security (AppSec) and DevSecOps. The ideal candidate will ...
As a Staff Offensive Security Engineer, you will take a hands-on role in designing and executing stealthy adversarial simulations to validate assumptions and uncover gaps in detection and response.
As a Staff Offensive Security Engineer, you will take a hands-on role in designing and executing stealthy adversarial simulations to validate assumptions and uncover gaps in detection and response.
Engineer Microsoft Security Controls * Build, configure, and tune Microsoft Entra ID controls, including Conditional Access, identity governance, privileged access, and authentication security.
Engineer Microsoft Security Controls * Build, configure, and tune Microsoft Entra ID controls, including Conditional Access, identity governance, privileged access, and authentication security.
In this role as a Senior Cloud Security Engineer, you will develop AWS security controls and drive the development of innovative cloud security solutions to enhance RBC's Cloud Security posture. You ...
In this role as a Senior Cloud Security Engineer, you will develop AWS security controls and drive the development of innovative cloud security solutions to enhance RBC's Cloud Security posture. You ...
Position Summary League is seeking a Software Security Engineer to join our Security Engineering org and focus full-time on building internal security tooling and security-by-design engineering ...
Position Summary League is seeking a Software Security Engineer to join our Security Engineering org and focus full-time on building internal security tooling and security-by-design engineering ...
Principal Cloud Security Engineer
Toronto, ON · On-site
Be the cloud security subject matter expert for the Cloud Engineering group and its partners in any IaaS, PaaS, and SaaS implementations AI & Machine Learning Security * Define and implement a ...
Principal Cloud Security Engineer
Toronto, ON · On-site
Be the cloud security subject matter expert for the Cloud Engineering group and its partners in any IaaS, PaaS, and SaaS implementations AI & Machine Learning Security * Define and implement a ...
CIAM Security Engineer - Contract
Toronto, ON · Hybrid
CA$96/hr
Role: CIAM Security Engineer Rates: Up To $96.00 p/h INC. Location: Downtown Toronto, 2x per week on-site Structure: 2 month contract, plus possible extension options -- We have a great new ...
Quick apply
CIAM Security Engineer - Contract
Toronto, ON · Hybrid
CA$96/hr
Role: CIAM Security Engineer Rates: Up To $96.00 p/h INC. Location: Downtown Toronto, 2x per week on-site Structure: 2 month contract, plus possible extension options -- We have a great new ...
You will also contribute to the developer experience and foster a culture that encourages best security practices. What will you do? * Establish core cloud security solutions across RBC's cloud ...
You will also contribute to the developer experience and foster a culture that encourages best security practices. What will you do? * Establish core cloud security solutions across RBC's cloud ...
Partner with Engineering, Security Operations, Cloud Security, and Application Development teams to implement and operationalize ADR technologies and processes. * Lead the deployment, onboarding, and ...
Partner with Engineering, Security Operations, Cloud Security, and Application Development teams to implement and operationalize ADR technologies and processes. * Lead the deployment, onboarding, and ...
Hourly Security Engineer information
What is the difference between Hourly Security Engineer vs Cybersecurity Analyst?
| Aspect | Hourly Security Engineer | Cybersecurity Analyst |
|---|---|---|
| Certifications | CompTIA Security+, CISSP (preferred) | CompTIA Security+, CISSP, CEH |
| Work Environment | On-site or remote security system setup, monitoring, and incident response | Analyzing security threats, monitoring networks, and developing security protocols |
| Employer & Industry Usage | IT security firms, corporate security teams, government agencies | IT departments, security consulting firms, government agencies |
Hourly Security Engineers focus on implementing and maintaining security systems on an hourly basis, often working directly with security infrastructure. Cybersecurity Analysts analyze security data, monitor threats, and develop security strategies. While both roles require similar certifications and work in security environments, their daily tasks differ, with engineers more hands-on and analysts more analytical.
How much do hourly security engineers earn?
What are the most commonly searched types of Security Engineer jobs in Toronto, ON?
The most popular types of Security Engineer jobs in Toronto, ON are:

Key responsibilities
Conduct security reviews of product features, integrations, and platform changes, documenting resulting security requirements
Participate in threat modeling exercises to identify risks in system design and data flow
Automate manual review efforts and embed security checks into the SDLC
Job description
Position Summary
League's security engineering team is responsible for scaling security across the development lifecycle. We believe in security by design and follow a paved-road philosophy: we build or buy tooling that integrates into our platform so it is easier for engineers to do the right thing than the wrong thing. Security is everyone's responsibility, and security engineering is how we make it possible for engineers to ship high-quality code to production several times a day with security built in.
This role is an intermediate security engineer who splits their time between engagement work and engineering work. On the engagement side you will run security reviews for new product work, contribute to technical deep dives on existing systems, assess vendors before they are approved for use, and review third-party vendors that handle League customer data. On the engineering side you will write code and engage with tooling and systems: automation that removes manual review steps, checks that run in our pipelines, and tooling that makes findings easier to route, track and close.
League ships AI-enabled features and our engineers work with AI-assisted development tooling daily. Reviewing those systems, and reasoning about the security of code and fixes that AI produces, is a standing part of this role rather than a specialty.
You will bring some experience with threat modeling and cloud architecture to meaningfully contribute to secure design practices, while senior engineers and architects own the broader security strategy. You think in systems and processes, which is how you will find the second-order, long-term fix rather than the quick, most immediate one. You share what you learn, and you can explain risk clearly to a software engineer and to infrastructure leadership in the same week.
We welcome new ideas and encourage diverse experience, in every meaning of the word - if you have a unique background, deep interests in a niche topic of security or engineering, or some experience that brings new approaches to security and engineering, this is a strength that we welcome on the team. While this summary outlines the main job responsibilities, it is by no means exhaustive - we are a fast-moving organization, and change can happen quickly here, especially when it raises the bar of security for League and our customers. So, bring your ideas, your unique insights, and challenge the norm. We will be better for it.
What You will do:- Conduct security reviews of product features, integrations, and platform changes, documenting resulting security requirements
- Participate in threat modeling exercises to identify risks in system design and data flow
- Perform security assessments of applications, APIs, and cloud configuration, and provide remediation guidance engineering teams can act on
- Review AI-enabled product features for prompt injection, excessive agency and unintended exposure of member data
- Triage and score security findings, and drive remediation with the owning teams
- Own the configuration, tuning, and triage workflow for security tooling
- Automate manual review efforts and embed security checks into the SDLC
- Build training materials and documentation on secure coding practices and common vulnerabilities; regularly share knowledge with peers
- Support League's shift left by contributing reusable security controls to our paved road so that common vulnerabilities are prevented by default
- Contribute to the development and maintenance of League's security standards and internal documentation.
- Conduct security reviews of third-party vendors that process or store League data, and support customer security assurance requests.
- Support SOC 2 Type II, HITRUST, HIPAA, and PHIPA control design, testing, and evidence gathering in partnership with the Privacy and Compliance team.
- Communicate risk findings clearly to different audiences, adapting language and level of detail for engineers versus leadership.
What You Bring
- 2+ years of professional experience in application or product security, or in software engineering with substantial security responsibility
- Ability to find what scanners miss: broken access control, tenant isolation failures, business logic flaws
- Working knowledge of authentication and authorization in modern applications, including OAUTH 2.0 / OIDC, session and token handling, and role or attribute-based access control
- Familiarity with CI / CD and software supply chain security, including pipeline-integrated testing, dependency management, and secrets handling
- Solid working knowledge of common application vulnerabilities (e.g., OWASP Top 10) and their mitigations
- Experience with AI and LLM application security, including prompt injection, agentic tool-use risk and retrieval pipeline exposure
- Some exposure to cloud security concepts and secure cloud architecture, ideally GCP, including containerized workloads.
- A track record of writing and shipping code other people rely on, in Python, Go, or a comparable language
- Some experience with threat modeling methodologies (e.g. STRIDE)
- General awareness of SOC 2 Type II, HITRUST, HIPAA and PIPEDA
Nice-to-have
- Experience handling PHI or comparably sensitive data in a regulated environment.
- Exposure to incident response.
- Self-driven security work: side projects, CTFs, published research, or a coordinated disclosure history
Security-Related Responsibilities
- Ensure access management is performed in compliance with the employee's role and responsibilities
- Responsibility and accountability for executing League's policies and procedures within the department/ team
- Notification of HR, Legal, Compliance & Security of any incidents, breaches or policy violations
- Compliance with Information Security Policies