Application Security Developer

Clio

Vancouver

Hybrid

CAD 116,500 - 157,500

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health benefits
Hybrid work
Vacation days
Counseling benefit
RRSP matching
RESP contribution
Clioversary

Job summary

Clio is seeking an Application Security Engineer to join our Security team. You will emulate adversaries, identify vulnerabilities, and partner with development teams to remediate issues across our applications. This role supports Canada-wide candidates, with in-office anchors in Burnaby, Calgary or Toronto two days per week.

You’ll lead penetration testing, threat modeling, and build tools to automate scans, while advancing security education and awareness across product teams.

Qualifications

  • Experience in Application or Product Security with a focus on offensive security and penetration testing.
  • Hands-on expertise identifying and exploiting complex vulnerabilities (e.g., SSRF, Deserialization, logic bypasses).
  • Proven ability to lead and conduct formal threat modeling sessions.
  • Strong proficiency in at least one major programming language (e.g., Python, .NET, Ruby, JavaScript).
  • Experience securing applications in modern cloud environments (AWS, Azure, or GCP).
  • Expertise with common application security tools and platforms (e.g., Burp Suite, SAST, SCA).
  • Experience with log aggregation and SIEM technologies.
  • Ability to identify malicious behaviour and emerging threats via log analysis.
  • Demonstrate a keen interest in improving your craft by using AI.

Responsibilities

  • Write, review, debug, and implement tools to help developers avoid security flaws.
  • Build partnerships with development teams and advise on security best practices.
  • Contribute to collective developer education by driving security awareness and knowledge amongst the product organization.
  • Provide detailed guidance and support to teams in vulnerability remediation, and develop frameworks, guidelines, and systematic fixes for recurring vulnerabilities.
  • Navigate vulnerability issues and maintain positive relationships with Bug Bounty researchers.
  • Identify and implement tools for automated application scanning, static analysis and related tools.
  • Perform penetration testing and offensive campaigns against internal assets.
  • Perform reactive incident response and forensics when a security event occurs.
  • Perform proactive research to detect new attack vectors.
  • Elevate and educate our security culture within Clio.

Skills

Offensive security
Threat modeling
Penetration testing
Programming languages
Cloud security
Security tools
SIEM/log analysis
Security research/AI curiosity

Tools

Burp Suite
SAST
SCA
Kubernetes
Terraform

Job description

Clio is the global leader in legal AI technology, empowering legal professionals and law firms of every size to work smarter, faster, and more securely.

We are transforming the legal experience for all by bettering the lives of legal professionals while increasing access to justice.

We are currently seeking an Application Security Engineer to join our rapidly growing Security team. The Application Security team is responsible for emulating real-world adversaries to proactively discover, exploit, and help remediate critical security vulnerabilities across our applications. We provide a vital adversarial perspective, challenging our defences and partnering with development teams to eliminate flaws before they can be exploited.

This role is for someone who is passionate about building innovative solutions and being exposed to new challenges and technologies while making an impact. This role is available to candidates across Canada (excluding Quebec). If you are local to one of our hubs (Burnaby, Calgary, or Toronto), you will be expected to be in office a minimum of two days per week for our Anchor Days.

Responsibilities
  • Write, review, debug, and implement tools to help developers avoid security flaws.
  • Build partnerships with development teams and advise on security best practices.
  • Contribute to collective developer education by driving security awareness and knowledge amongst the product organization.
  • Provide detailed guidance and support to teams in vulnerability remediation, and develop frameworks, guidelines, and systematic fixes for recurring vulnerabilities.
  • Resolve issues, navigate ambiguity, and maintain positive working relationships with researchers in our Bug Bounty program.
  • Identify and implement tools for automated application scanning, static analysis and related tools.
  • Perform penetration testing, and offensive campaigns against internal assets.
  • Perform reactive incident response and forensics when a security event occurs.
  • Perform proactive research to detect new attack vectors.
  • Elevate and educate our security culture within Clio, contributing to our cultural values.
Qualifications
  • Experience in Application or Product Security, with a focus on offensive security and penetration testing.
  • Hands‑on expertise identifying and exploiting complex vulnerabilities (e.g., SSRF, Deserialization, logic bypasses).
  • Proven ability to lead and conduct formal threat modeling sessions.
  • Strong proficiency in at least one major programming language (e.g., Python, .NET, Ruby, JavaScript).
  • Experience securing applications in modern cloud environments (AWS, Azure, or GCP).
  • Expertise with common application security tools and platforms (e.g., Burp Suite, SAST, SCA).
  • Experience with log aggregation and SIEM technologies.
  • Ability to identify malicious behaviour and emerging threats via log analysis.
  • Demonstrate a keen interest in improving your craft by using AI.
Bonus Points
  • Security certifications such as OSCP or OSWE.
  • Active participation in the security community (e.g., presenting at conferences, contributing to open‑source tools).
  • Experience with Ruby on Rails, Puppet, Kubernetes, Terraform, ELK (Elastic, Logtash and Kibana).
  • Strong AWS security experience on EC2 and managed services.
  • Infrastructure security (WAF, ACLs, authentication, device hardening).
Compensation & Benefits

Compensation is one of the main components of Clio’s Total Rewards Program. We have developed a series of programs and processes to ensure we are creating fair and competitive pay practices that form the foundation of our human and high‑performing culture.

  • Competitive, equitable salary with top‑tier health benefits, dental, and vision insurance.
  • Hybrid work environment, with expectation for local Clions (Vancouver, Calgary, Toronto, Dublin, London, New York City and Sydney) to be in office min. twice per week.
  • Flexible time off policy, with an encouraged 20 days off per year.
  • $2000 annual counseling benefit.
  • RRSP matching and RESP contribution.
  • Clioversary recognition program with special acknowledgement at 3, 5, 7, and 10 years.

The expected salary range* for this role is $116,500 to $137,000 to $157,500 CAD. There are a separate set of salary bands for other regions based on local currency.

Our salary bands are designed to reflect the range of skills and experience needed for the position and to allow room for growth at Clio. For experienced individuals, we typically hire at or around the midpoint of the band. The top portion of the salary band is reserved for employees who demonstrate sustained high performance and impact at Clio. Those who are new to the role may join below the midpoint and develop their skills over time. The final offer amount for this role will be dependent on geographical region, applicable experience, and skillset of the candidate.

Diversity, Inclusion, Belonging & Equity (DIBE) & Accessibility

Our team shows up as their authentic selves, and are united by our mission. We are dedicated to diversity, equity and inclusion. We pride ourselves in building and fostering an environment where our teams feel included, valued, and enabled to do the best work of their careers, wherever they choose to log in from. We believe that different perspectives, skills, backgrounds, and experiences result in higher-performing teams and better innovation. We are committed to equal employment and we encourage candidates from all backgrounds to apply.

Clio provides accessibility accommodations during the recruitment process. Should you require any accommodation, please let us know and we will work with you to meet your needs.

Learn more about our culture at clio.com/careers.

We’re a Human and High Performing AI company, meaning we use artificial intelligence to improve all of our operations. In recruitment, AI helps us streamline the process for greater efficiency. However, we’ve built our systems to ensure that a human always reviews AI-generated output, and we never make automated hiring decisions.

Disclaimer

Disclaimer: We only communicate with candidates through official @clio.com email addresses.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Developer
Application Security Developer

Clio • Calgary

Hybrid
CAD 116,000 - 158,000
Health benefits
Dental and vision insurance
Hybrid work environment
+5
Application Security Developer
Application Security Developer

Themis Solutions Inc. • Canada

Hybrid
CAD 119,000 - 161,000
Health benefits
Dental & Vision insurance
Hybrid work model
+3
Senior CorpSec Analyst
Senior CorpSec Analyst

Themis Solutions Inc. • Canada

Hybrid
CAD 106,000 - 144,000
Health benefits
Hybrid work
Flexible time off
+2
Staff Software Developer
Staff Software Developer

Clio • Calgary

Hybrid
CAD 176,000 - 264,000
Hybrid work environment
Flexible time off
Top-tier health benefits
+6
Staff Software Developer
Staff Software Developer

Clio • Vancouver

On-site
CAD 176,000 - 264,000
Health benefits
Dental insurance
Vision insurance
+5
Senior Software Developer
Senior Software Developer

Themis Solutions Inc. • Toronto

Hybrid
CAD 145,000 - 196,000
Hybrid work environment
Health benefits
RRSP matching
Senior Developer, Enterprise AI
Senior Developer, Enterprise AI

Clio • Vancouver

Hybrid
CAD 149,000 - 203,000
Competitive salary
Top-tier health benefits
Flexible time off policy
+3
Senior Software Developer, Fintech
Senior Software Developer, Fintech

Clio • Toronto

Hybrid
CAD 144,000 - 196,000
Top-tier health benefits
Dental insurance
Vision insurance
+6
Software Development Manager
Software Development Manager

Clio • Toronto

Hybrid
CAD 176,000 - 264,000
Competitive salary
Top-tier health benefits
Flexible time off policy
+3
Software Development Manager
Software Development Manager

Themis Solutions Inc. • Canada

Hybrid
CAD 181,000 - 271,000
Hybrid work environment
Anchor Days in-office twice weekly
Flexible time off (20 days)
+4