Sentry
Posted 5d ago

Security Engineer, Application Security

Sentry
Toronto, Ontario, Canada
$162k-$420k/yrHybridFull Time
Responsibilities
  • conducting security reviews
  • managing vulnerabilities
  • validating findings
Requirements
  • Requires 2+ years securing complex applications or cloud systems
  • A computer science-related degree or equivalent experience
  • Programming ability
  • Security practice experience
  • Cloud technology familiarity, and strong communication
Technical tools mentioned
PythonTypeScriptGoRustAWSGCPAzureKubernetesDockerTerraformCI/CD

Job description

About Sentry

Software runs the world and the pace is faster than ever. Sentry helps developers fix errors and performance issues before users notice, so teams can spend less time firefighting and more time building.

Trusted by 200,000+ organizations, Sentry is today’s application monitoring standard and our team is building its AI-native future.

About The Role

The Security Team is responsible for securing all things Sentry: our customers, our code, and everything in between. We are a small but growing team with broad scope, high trust, and the autonomy to tackle hard security problems with creativity and an engineering mindset. We work at a company with a strong developer culture, building a product that millions of developers genuinely love and rely on. That context shapes everything about how we operate.

As a Security Engineer on this team, you'll work across application and platform security domains. You'll contribute to the practices that keep Sentry secure as we grow: security reviews, threat modeling, vulnerability management, and embedding secure coding practices into an engineering organization that cares about doing things right. You'll partner closely with product and engineering teams to influence how features are designed and built from the start. You will work as a technical collaborator who helps make the secure path the obvious one. As Sentry expands our agentic product capabilities and development practices, you'll also find yourself at the frontier of a new set of security challenges.

 

In this role, you will

  • Support and help mature Sentry's security review program. From secure code review, to architecture review, and threat modeling. You'll help build the processes, tooling, and culture which make security a natural part of how we ship and operate.

  • Contribute to mature vulnerability management practices. Intake, triage, prioritization, remediation tracking, and support of our bug bounty and responsible disclosure program.

  • Advocate for secure-by-design principles. Partner with engineering and product teams to embed security early in the development lifecycle and integrate security tooling into developer and CI/CD workflows.

  • Validate and reproduce application and infrastructure security findings. Scanning, manual testing, and supporting penetration testing and vulnerability validation across Sentry's application, SDKs and cloud-based platform.

  • Help evaluate and respond to emerging threats relevant to application security at Sentry. We build and operate a complex application and cloud environment, including the novel attack surface introduced by Sentry's agentic product features and AI-assisted engineering practices.

 

You’ll thrive in this role if you

  • Enjoy operating cross-functionally, building relationships, and influencing with technical expertise as you grow into shaping how security gets done across a fast-moving engineering organization.

  • Get excited when something new lands on your desk, be it an interesting vulnerability, a sweet exploit, a novel agentic architecture, an unfamiliar cloud primitive, or a bug class you haven't seen before.

  • Love working in a developer-forward culture where your colleagues are builders who care deeply about code quality and customer satisfaction.

  • Reach for automation first, you'd rather build a scalable, systematic solution to a security problem than solve it manually a hundred times.

  • Thrive with ownership and want more of it, you prefer to drive work end-to-end, and you're energized by the autonomy — and the mentorship — that comes with being on a small, high-trust team.

 

Qualifications

  • 2+ years of industry experience designing, building, or securing complex applications and cloud systems

  • Degree in Computer Science or a related field, equivalent training, or professional experience

  • Hands-on experience with several of the following: security reviews, SDLC practices, secure CI/CD, architecture reviews, threat modeling, vulnerability management, bug bounty and responsible disclosure programs

  • Experienced and comfortable programming in at least one language, and able to read and reason about code in Python, Typescript, Go, or Rust

  • Familiarity with using distributed cloud technology (AWS, GCP, Azure, Kubernetes, Docker, Terraform, etc.) and an understanding of how those technologies are secured (cloud networking, IAM, etc.)

  • A collaborative approach to problem solving paired with strong written and verbal communication

 

Not sure if you meet 100% of the qualifications? We encourage you to apply anyway. We're interested in people are excited about this opportunity and eager to grow.

 

The base salary range (or hourly wage range, if applicable) that Sentry reasonably expects to pay for this position is $162,000 to $420,000 CAD. A successful candidate’s actual base salary (or hourly wage) amount will be determined by a variety of relevant factors including, without limitation, the candidate’s work location, education, work and other relevant experience, skills, and job-related knowledge. A successful candidate will be eligible to participate in Sentry’s employee benefit plans/programs applicable to the candidate’s position (including incentive compensation, equity grants, paid time off, and group health insurance coverage). See Sentry Benefits for more details about the Company’s benefit plans/programs.

Equal Opportunity at Sentry

Sentry is committed to providing equal employment opportunities to its employees and candidates for employment regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity, veteran status, or other legally-protected characteristic. This commitment includes the provision of reasonable accommodations to employees and candidates for employment with physical or mental disabilities who require such accommodations in order to (a) perform the essential functions of their jobs, or (b) seek employment with Sentry. We strive to build a diverse team, with an inclusive culture where every teammate can thrive. Sentry is an open-source company because we believe that everyone, everywhere, should have the ability and tools to make great software. Software should be accessible. That starts with making our industry accessible.

If you need assistance or an accommodation due to a disability, you may contact us at [email protected].

Want to learn more about how Sentry handles applicant data? Get the details in our Applicant Privacy Policy.

About Sentry

Private application-performance monitoring and error-tracking software for developers and software teams.

Year founded
2011
Employees
455
Organization type
Private
Latest investment
Raised $90.00M Series E (2022) — led by BOND, Accel
Headquarters
US

Similar jobs

Security Engineer roles near Toronto, Ontario
1d
Save
Mark Applied
Hide
Security Engineer
Toronto, Ontario, Canada
$130k-$140k/yr HybridFull Time
Advantage Group of Companies
Advantage Group of Companies: Canadian B2B benchmarking and business-intelligence helping retailers and suppliers strengthen commercial partnerships.
8+ YOEComputer Science degree/diploma or equivalent experience, applicable security certifications, and 8+ years in security operations or systems administration. Requires expertise in vulnerability management, incident response, compliance, cloud, and scripting.
SIEM, Windows Server, Linux, Azure, GCP, Python, Bash, SOC2, ISO 27001
4d
Save
Mark Applied
Hide
Security Engineer
Toronto or Canada or United States
$109k-$136k/yr HybridFull Time
League Inc.
League Inc.: Healthcare’s leading agentic experience platform.
2+ YOE2+ years in application or product security or security-focused software engineering; application vulnerabilities, cloud security, threat modeling, authentication, CI/CD, AI security, and Python or Go experience.
OAuth 2.0, OIDC, CI/CD, OWASP Top 10, GCP, Python, Go, STRIDE, SOC 2 Type II, HITRUST, HIPAA, PIPEDA, LLM
5d
Save
Mark Applied
Hide
Senior Security Engineer, Application Security
Waterloo or Toronto
$160k-$220k/yr HybridFull Time
Faire
Faire: Private wholesale marketplace connecting independent retailers with brands and makers worldwide.
Requires hands-on application security and SDLC experience, vulnerability remediation, offensive security, threat modeling, secure coding, AppSec tooling, web security, cloud environments, and coding in Kotlin, Java, Python, or TypeScript.
Kotlin, TypeScript, Python, SAST, DAST, SCA, AWS, OCI, Terraform, Kubernetes, Cursor, Claude, Kotlin, Java
5d
Save
Mark Applied
Hide
Senior Security Engineer
Canada or Toronto or Vancouver
$146k-$184k/yr HybridFull Time
Motive
Motive: Integrated operations platform serving physical-economy organizations that manage workers, vehicles, equipment, and fleet spending.
5+ YOERequires 5+ years in hardware security, product security design, and hands-on Python and C/C++ development, plus experience with hardware architecture, embedded systems, cloud, runtime, supply chain, and application security.
Python, C, C++
2w
Save
Mark Applied
Hide
Sr. Staff Security Engineer
United States or Toronto
RemoteFull Time
OpenLoop Health
OpenLoop Health: Privately held white-label telehealth infrastructure provider helping healthcare organizations launch and operate virtual care programs.
10+ YOEBachelor's degree or equivalent experience; 10+ years of security experience, including 5+ in security architecture. Requires cloud, application, identity, network, data protection, threat modeling, SSDLC, authentication, HIPAA, NIST, HITRUST, and SOC 2 expertise.
OAuth, OIDC, SAML, HL7, FHIR, STRIDE, PASTA, OWASP, PKI, SABSA, TOGAF, Microsoft 401(k)
2w
Save
Mark Applied
Hide
Senior Security Engineer
Toronto, Ontario, Canada
$160k-$190k/yr OnsiteFull Time
Forma.ai
Forma.ai: Private Canadian B2B SaaS providing AI-powered sales compensation and performance management software to enterprises.
6+ YOERequires 6+ years in security or infrastructure engineering, hands-on AWS security, Terraform, Kubernetes, CI/CD controls, application and API security, incident response, automation, and scripting with Python, Bash, or PowerShell.
Amazon Web Services (AWS), Terraform, Kubernetes, Amazon S3, Amazon Bedrock, GitHub, Microsoft 365, Microsoft Entra ID, Python, Bash, PowerShell, Datadog, Wiz, Snyk, CrowdStrike, EKS, CI/CD, IAM, SSO, MFA, SOC 2, ISO 27001
3w
Save
Mark Applied
Hide
Senior Security Engineer - Detection & Response
Toronto, Ontario, Canada
$150k-$245k/yr HybridFull Time
EvenUp
EvenUp: Private AI software serving personal-injury law firms with claims-intelligence and legal-workflow automation.
5+ YOERequires 5+ years in security operations, detection engineering, or incident response; SIEM implementation; detection engineering with Python, SQL, or rules DSL; incident response; cloud telemetry; and automation skills.
SIEM, Python, SQL, AWS, GCP, Azure, MDR, MSSP
3w
Save
Mark Applied
Hide
Security Engineer
Richmond Hill, Ontario, Canada
$100k-$130k/yr OnsiteFull Time
Paymentus
PaymentusNYSE: PAY: Public U.S. electronic bill-payment platform serving billers and consumers across utilities, finance, government, and healthcare.
5+ YOERequires 5+ years in a SOC environment, Elastic SIEM expertise, log analysis, incident response, Python and PowerShell, plus Linux, cloud platforms, network protocols, and cybersecurity frameworks.
Elastic SIEM, Elasticsearch, Logstash, Kibana, PowerShell, Python, Linux, AWS, GCP, Azure