SlipstreamJobsFresh Startup & VC-Backed Jobs

Security Engineer

Relay - Toronto, ON, Canada - In-office - posted 2026-09-15

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Salary: CAD 126,000 - 154,000 / annual

Relay is a digital banking platform for self-made business owners, providing tools for financial clarity and cash flow management. The company is hiring a Security Engineer to join the purple team (offensive and defensive security) in an early-career opportunity with mentorship from senior security engineers. In this role, you will: - Plan and run security simulations and contribute to security awareness programs - Review sensitive customer and financial data access in admin dashboards and implement improvements - Strengthen security for developer environments, including tooling, packages, and production access - Work with delivery, IT, and business teams to turn test findings into tangible fixes - Develop and manage cyber awareness exercises, including internal phishing attacks - Research emerging threats (AI misuse, supply chain risks, identity and access challenges, Shadow IT) and contextualize them for Relay - Share findings in ways that educate and drive action across the security culture You will take increasing ownership of workstreams as you build depth, working closely with senior engineers who will coach you through complex problems. REQUIREMENTS: - 2–4 years of experience in security or adjacent technical roles (IT, infrastructure, software engineering, SOC) with meaningful security exposure - Solid grasp of security fundamentals: how systems get attacked, defended, and why - Scripting ability (Python, Bash, PowerShell, JavaScript, etc.) to automate tasks, pull apart data, or build small tools - Comfort working in cloud and developer environments (AWS, GCP, or Azure; GitHub, CI/CD) - Hands-on experience with adversary simulation, detection engineering, penetration testing, incident response, or vulnerability management - Understanding of authentication and access protocols (SSO, OAuth, SAML, OpenID Connect) or zero trust principles - Experience with security stack tools (SIEM, IPS, WAF, EDR, vulnerability scanners, security automation platforms) - Ability to explain technical findings to non-security stakeholders - Motivated by closing the loop—identifying and seeing vulnerabilities through to fix - Curious, pragmatic, collaborative; comfortable asking questions and admitting when stuck BONUS: - Experience with cloud IAM, networking, or containerized systems (Docker, Kubernetes) - Participation in purple, red, or blue team exercises - Fintech, SaaS, or scaling tech company experience - Public security contributions, CTF participation, home lab, bug bounties, talks, research, or OSS tooling

Similar roles