# Security Engineer, Application Security

**Company:** [Sentry](https://hotfix.jobs/companies/sentry)
**Location:** San Francisco, CA, Toronto, Canada, Ontario, Canada
**Role:** Security Engineering
**Salary:** CA$162k – CA$420k/yr
**Experience:** 2+ years
**Skills:** Application Security, Threat Modeling, Vulnerability Management, Secure Code Review, CI/CD, Python, TypeScript, Go, Rust, AWS, GCP, Azure, Kubernetes, Docker, Terraform
**Posted:** 2026-08-26

> Security Engineer focused on application and platform security, security reviews, threat modeling, vulnerability management, and secure development practices. The role requires at least two years of relevant experience, programming ability, and familiarity with cloud security technologies.

## Job Description

## Responsibilities
- Mature Sentry’s security review program, including secure code reviews, architecture reviews, and threat modeling.
- Build processes, tooling, and culture that integrate security into software delivery.
- Contribute to vulnerability management, including intake, triage, prioritization, remediation tracking, bug bounty, and responsible disclosure.
- Partner with product and engineering teams to embed secure-by-design principles early in development.
- Integrate security tooling into developer and CI/CD workflows.
- Scan, manually test, reproduce, and validate application and infrastructure security findings.
- Support penetration testing and vulnerability validation across applications, SDKs, and cloud platforms.
- Evaluate and respond to emerging application-security threats, including risks associated with agentic product features and AI-assisted engineering.
- Automate scalable security solutions and drive work end-to-end in a collaborative engineering environment.

## Requirements
- 2+ years of industry experience designing, building, or securing complex applications and cloud systems.
- Degree in Computer Science or a related field, equivalent training, or professional experience.
- Hands-on experience with several of: security reviews, SDLC practices, secure CI/CD, architecture reviews, threat modeling, vulnerability management, bug bounty programs, and responsible disclosure programs.
- Comfortable programming in at least one language and reading and reasoning about Python, TypeScript, Go, or Rust code.
- Familiarity with distributed cloud technologies and how they are secured, including cloud networking and IAM.
- Strong written and verbal communication and a collaborative approach to problem solving.

## Compensation
- Base salary range: $162,000–$420,000 CAD annually.
- Eligible for incentive compensation, equity grants, paid time off, and group health insurance coverage.

## Similar jobs

- [Security Engineer, Detection & Response](https://hotfix.jobs/jobs/f57773ca-7aee-45f7-8b87-6b9764437ca8) - Sentry - San Francisco, CA - CA$162k – CA$420k/yr
- [Software Engineer, Security](https://hotfix.jobs/jobs/8bbd2781-fac5-4687-84a8-4fa6faaed51e) - Harvey - San Francisco, CA - $161k – $245k/yr
- [Security Engineer, Corporate Security](https://hotfix.jobs/jobs/1f665191-40e9-40ac-9080-dc5d35f11946) - Flexport - San Francisco, CA - $165k – $202k/yr
- [Product Engineer, Security](https://hotfix.jobs/jobs/53b78b5e-4db4-4541-90f1-36826a29b8fc) - Greptile - San Francisco, CA - $170k – $300k/yr
- [Security Software Engineer](https://hotfix.jobs/jobs/224cc3c2-74cd-4a03-869e-9e3f15a09f4c) - Hover - San Francisco, CA - $148k – $183k/yr

**Apply:** https://hotfix.jobs/jobs/f6409472-67fe-454d-ad4c-fe68d8a8ce25
**Canonical:** https://hotfix.jobs/jobs/f6409472-67fe-454d-ad4c-fe68d8a8ce25