Get more replies from employers
Send a job-specific resume in minutes.
Relay is seeking a Senior Application Security Engineer II in Toronto to own end-to-end security for critical services, from design to deployment. You will work across TypeScript/Node.js, Postgres, and AWS to identify risks, build guardrails, and advance our security practices as Relay scales.
You will collaborate with senior engineers, mentor teammates, and drive security testing and remediation across multiple teams using modern tooling and AI-assisted approaches.
Relay is a digital banking platform that gives self-made business owners the tools and know-how to be great with money- bringing clarity, confidence, and control to every dollar earned, so they can turn hard work into lasting success. We do this by replacing financial guesswork with real visibility, transforming cash flow from a constant source of stress into a clear signal owners can use to run stronger, more resilient businesses.
Toronto, ON, Canada
CAD 180k-220k / year
Posted on Aug 12, 2026
We’re looking for an Senior Application Security Engineer II who thrives on autonomy, curiosity, and impact. You'll join an Application Security team that is deliberately moving away from the advisory model most AppSec functions are stuck in. You’ll work across our stack (from TypeScript and Node.js, to Postgres and AWS cloud infrastructure) ensuring our applications are secure from design to deployment. You’ll blend technical depth with systems thinking, working across teams to identify risks, build guardrails, and evolve our security practices as Relay scales.
That coverage number is where you come in. Right now, most of Relay’s platform has never been properly tested - and closing that gap is the single highest-leverage thing our team can do this year. Your mission is to own a defined slice of it end to end: testing the services in scope, working out what's actually exploitable, and fixing what you can yourself.
This is a role with room to grow. You'll be working next to senior engineers who are maintaining our auth system and building our DAST tooling from scratch. The Relay AppSec team genuinely enjoys Application Security and is looking to make an impact on the field.
We believe Relayers should feel rewarded for the impact they have on our mission and growth. Compensation follows impact. As impact increases, compensation grows, and we do not limit compensation changes to a once-a-year review cycle.
The annual salary range for this role is $180,000 CAD to $220,000 CAD.
For candidates who demonstrate full readiness for the defined scope of the role, the typical starting salary is $200,000 CAD. Offers below this point reflect candidates we believe can grow into the full scope of the role with support and development. Offers above this point reflect impact that meaningfully exceeds the role’s defined expectations or an expanded scope from day one.
We encourage you to have a conversation with your recruiter and ask questions about compensation throughout the hiring process. For more information on our compensation philosophy and perks and benefits, visit our Candidate Hub.
We're looking for people who are relentless, curious, and care deeply about the work. You're encouraged to apply even if your experience doesn't perfectly match the job description - - your perspective and drive matter more. We welcome diverse backgrounds and people who think critically, challenge the status quo, and want to help small businesses thrive.
If you require accommodations at any stage of the hiring process, please reach out to your Talent Partner.
Disclaimer: For compliance reasons, all offers of employment at Relay are conditional upon a successful background check and employment verification through Certn.
See more open positions at Relay