Senior Security Engineer, App Security

ClickUp
Canada
$170K-$215K a year (estimated)
Full-time

ClickUp is the world's only all-in-one productivity platform that flexes to the way people want to work. It replaces all individual workplace productivity tools with a single, unified platform including project management, document collaboration, spreadsheets, chat, goals, and more.

On a mission to make the world more productive, ClickUp is headquartered in San Diego and scaling remotely and internationally.

As one of the fastest-growing SaaS companies in the world, ClickUp helps millions of users to be more productive and save at least one day every week.

We're looking for a Security Engineer, AppSec for an engineering-focused security team. We partner with and embed inside of existing engineering teams at ClickUp.

The security team at ClickUp works to build and share technology including defensive security features and functionality, secure infrastructure and operational tools, security response tooling and processes, and security guidelines and guardrails.

You will work to build a culture of security enablement. Your focus on our product engineers will allow them to build and ship secure products based on Angular, Node.

js, and PostgresSQL, all hosted in AWS. You'll be a strategic partner working directly with various engineering teams helping to design, develop and guide teams to secure solutions.

We're scaling quickly, and are looking for Security Engineers who aren't afraid of this challenge!

The Role :

Perform some or all of the following, depending on skill-set :

  • Design, develop and build security features and defenses that protect the entire scope of the ClickUp platform.
  • Perform threat models, implementation reviews, and security testing; review requirements and designs.
  • Design and build tools to help with all stages in security prevention, detection, and response; across the full SDLC from code and test, through to deploy and operate.
  • Embed yourself into existing engineering and product teams, acting as a "security player-coach".
  • Build security automation for and into the ClickUp platform; design and build secure-by-default infrastructure and applications.
  • Monitor and analyze production security events and, as needed, provide in-depth incident analysis.
  • Build relationships with other engineers, product managers, data engineers, operators, and security team members to enable shipping a secure product.

Qualifications :

  • Multiple years of experience in technology / software development.
  • Experience with Angular, Node.js, and PostgresSQL; or similar technologies.
  • An ability to identify and provide a basic assessment of security threats.
  • An understanding of security problems, paired with an ability to suggest solutions to software design problems.
  • Cloud and SaaS experience.
  • Ability to mentor others on technical topics, including security.

Desirable :

  • Past experience with pushing technical initiatives; team, project, or indirect management of technology.
  • Can facilitate a conversation rather than dictate it.
  • 5+ years of software development experience and 1+ year of security-specific experience.
  • Experience with security tools; SAST, DAST, RASP, dependency checkers, SIEM.
  • 2 years of AWS experience; IAM and least-privilege architectures.
  • If you are a software engineer who is only starting to learn security, please do apply!

LI-RS1 #LI-REMOTE

ClickUp was founded on a culture of hard work, consistent growth, and a desire to break norms. We’re a values-driven company and hire based on ambition, merit, and a willingness to do what it takes to succeed.

We don’t care where you’re from, what you look like, or who you’re in a relationship with we hire the best people for the job, and create an environment that supports employees on their journey to do the most exciting work of their lives! ClickUp is an Equal Opportunity Employer, and qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin.

ClickUp collects and processes personal data in accordance with applicable data protection laws. If you are a European Job Applicant, see our for further details.

30+ days ago
Related jobs
Promoted
Absorb Technology
Canada

As a Senior Product Security Engineer, you will be instrumental in safeguarding our SaaS application, ensuring compliance with industry regulations, and driving a culture of security within the organization. We are seeking a seasoned and strategic Senior Product Security Engineer to join our high-pe...

Promoted
Wealthsimple
Canada

Our Application Security Team is dedicated to protecting this trust by ensuring the utmost security of our applications and customer data. Communicates security concepts effectively, both internally and externally, articulating best practices and strategic approaches to application security. Identif...

Promoted
Zoomcar
Canada

Lime is hiring a Staff Security Software Engineer to join our Security team! In this role, you will help us revolutionize the way people move around cities. You'll develop and maintain incident response plans, improve security-related standards and processes, and mentor and train junior engineers. I...

Promoted
Wealthsimple
Canada

Our Application Security Team is dedicated to protecting this trust by ensuring the utmost security of our applications and customer data. Communicates security concepts effectively, both internally and externally, articulating best practices and strategic approaches to application security. Aug 23,...

Promoted
Abnormal Security Corporation
Canada

Design and implement systems that combine rules, models, feature engineering, and business and product inputs into an email detection product, with senior engineer guidance. Abnormal Security is looking for a Machine Learning Engineer to join the Message Detection - Attack Detection team. At Abnorma...

1Password
Canada
Remote

Provide technical leadership and mentorship to engineers, both within the team and across the security and engineering organizations. Own the delivery and success of infrastructure security projects that span engineering teams and departments. Partner with security and infrastructure engineers and l...

BMO
Canada, Canada

Provides leadership within IAM Security Governance and Security best practice in support of businesses/groups and BMO overall. Provides great customer service in support of the information security processes, applications and infrastructure. Identifies opportunities to strengthen the capability of t...

Oracle
Canada

The Oracle Security and Controls practice within North American Applications Consulting is responsible for implementing Oracle ERP & HCM Cloud security and Oracle controls products to our customers. Managing Principal Consultant, HCM Cloud Security. We are looking for consultants who have in-depth O...

Dropbox
Canada
Remote

Experience in one or more information security domains: threat Intelligence analysis and research - security monitoring/detection and incident response - security architectures, principles, and assessment methodologies - network and operating systems security - development of security tooling . Appl...

VLink Inc
Canada

Provides administrative support for several infrastructures related to web applications, identity management and the components surrounding these technologies Specifically IBM Security Access Manager. Expert will be responsible for consulting with various groups to plan, architect and implement stan...