Senior Application Security Engineer
Remote - USA
Full Time
2 hours ago
Senior LevelEngineeringWorldwide
$80K - $120K

USD per year

Job Description

Senior Application Security Engineer

Remote - USA Engineering / Full Time / Remote About Us Canary Technologies is changing the game for hotels with modern software powered by Canary's hospitality-specific AI platform. Canary is utilized by 20,000+ hoteliers in 100+ countries to equip hoteliers with the technology they need to work smarter and wow their guests. Major hotel brands such as Wyndham, Marriott, IHG, Four Seasons, Rosewood, and Best Western trust Canary to deliver results. Canary was named a 2024 Deloitte Technology Fast 500™ company, a Most Innovative Company by Fast Company and a HotelTechReport Best Place to Work — and is backed by top Silicon Valley investors like Y Combinator, F-Prime, Brighton Park Capital and Insight Partners. Join us in shaping the future of hospitality! About the Role Our team is growing and we're hiring a Senior Application Security Engineer to join our engineering team and enable our next phase of growth. Canary's engineering team is fully remote! This role focuses on embedding security into the software development lifecycle (SDLC) and partnering with developers to make secure design the default. You will own the strategy for application security tooling, automation, and developer enablement while collaborating closely with SREs, infra, and data engineers to keep our platform both secure and scalable. Responsibilities

  • Define and enforce best practices for secure coding, dependency management, and design reviews across engineering teams.
  • Integrate and manage SAST, DAST, and SCA tools within CI/CD pipelines (e.g., GitHub Actions).
  • Partner with developers on new features and systems to identify risks early in the lifecycle.
  • Implement best practices for secrets handling, API authentication/authorization, and data protection.
  • Build security guidelines, training, and reusable libraries/patterns so that teams can ship secure code faster.
  • Triage and prioritize findings from bug bounties,...

Qualifications

  • 6+ years in security engineering, DevSecOps,...
  • Excellent communication and teamwork abilities.
  • Strong experience integrating security into modern SDLC pipelines.
  • Hands-on with AppSec tooling (Snyk,...)
  • Solid understanding of web app security (OWASP Top 10,...)
  • Familiarity with AWS/Kubernetes security.
  • Strong programming skills (Python,...)
  • Proven track record in partnering with product...
How to Apply
About Canary

Canary Technologies builds simple, powerful software solutions focused on transforming hospitality operations and enhancing guest experiences for hoteliers worldwide. Trusted by over 20,000 hotels in more than 100 countries, Canary empowers hotel staff with innovative cloud-based technology.

View Company Profile