Staff Security Engineer

LiveKit Incorporated

Canada

On-site

CAD 110,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive salary
Equity package
Health, dental, and vision benefits
Flexible vacation policy

Job summary

LiveKit Incorporated in Canada is seeking a Senior Security Engineer who builds and breaks the stack from API to deployment. You will own security across applications, services, and developer workflows, and translate security concerns into engineering actions.

You’ll lead threat modeling, secure code reviews, and incident response, collaborating across teams to design secure-by-default APIs and deployments, while staying current with security research and tooling. Equity included.

Qualifications

  • 6+ years of experience as a software engineer with a security focus.
  • Experience leading security engineering efforts across applications or infrastructure.
  • Experience with threat modeling and vulnerability management.
  • Familiar with CI/CD, cloud platforms, and containers.
  • Experience responding to security incidents and postmortems.

Responsibilities

  • Own security across the stack — applications, services, infrastructure, and developer workflows.
  • Identify, assess, and mitigate risks in infrastructure and codebases.
  • Lead secure code reviews and threat modeling sessions.
  • Build tooling to prevent security issues before production.
  • Harden authentication and access control across surfaces.
  • Collaborate with engineers to design secure APIs and deployments.
  • Investigate vulnerabilities and manage disclosure when needed.

Skills

Security engineering
Threat modeling
CI/CD
Cloud platforms
Incident response

Tools

AWS
GCP
Docker
Kubernetes

Job description

About LiveKit

LiveKit is building the infrastructure layer for the agentic era of computing. Our platform gives developers everything they need to build, test, deploy, scale, and observe AI agents in production. Founded in 2021, LiveKit powers voice and agentic AI applications for OpenAI, Salesforce, Spotify, Meta, and tens of thousands of other developers, collectively facilitating billions of calls each year.

About This Role

This isn't one of those roles where "security" means running scans or writing policies that gather dust. We're looking for a real engineer — someone who thinks like a builder and a breaker. Someone who gets deep into the stack, whether it's an API endpoint, a container image, or a browser sandbox. You know how things are supposed to work — and what happens when they don't.

While some security professionals lean toward policy, compliance, or audits (and we value that too), we're after someone who wants to write code, secure systems, dig into strange bugs, and harden the platform from top to bottom. This is not a role for pointing out what needs to be done. It's for someone who's ready to do it.

You'll Thrive Here If You:
  • think like both a builder and a breaker, and understand security from first principles

  • can analyze systems for weaknesses — whether they're in business logic, configuration, or code

  • translate security concerns into engineering action without being the "no" person

  • are an excellent communicator who can document and evangelize best practices across the org

  • stay current with security research, tooling, and threats — and put that knowledge into action

What You'll Do
  • Own security across the stack — applications, services, infrastructure, and developer workflows

  • Proactively identify, assess, and mitigate risks in both infrastructure and application codebases

  • Lead secure code reviews, architecture discussions, and threat modeling sessions

  • Build tooling and automations that help prevent security issues before they reach production

  • Harden authentication and access control across internal and external surfaces

  • Partner closely with engineers across teams to design secure-by-default APIs, workflows, and deployments

  • Investigate vulnerabilities, respond to security incidents, and manage disclosure processes when needed

Who You Are
  • 6+ years of experience as a software engineer with a strong interest in security engineering

  • You've led or heavily contributed to security engineering efforts across applications, infrastructure, or both

  • Experienced with threat modeling, secure coding practices, and vulnerability management

  • Worked with CI/CD systems, cloud platforms (AWS, GCP, etc.), and containerized environments

  • You've responded to real-world security incidents, led postmortems, or driven remediation efforts

Nice to Have
  • Experience with security reviews of WebRTC, media pipelines, or real-time systems

  • Contributions to open-source security tooling or research

  • Hands-on experience with static and dynamic analysis tools, fuzzing, or sandboxing

  • You've built (or tried to build) something with LiveKit

Our Commitment to You
  • An opportunity to build something truly impactful to the world

  • Contribute to open source alongside world-class engineers

  • Competitive salary and equity package

  • Health, dental, and vision benefits

  • Flexible vacation policy

LiveKit is an equal opportunity employer and does not discriminate on the basis of any characteristic protected by applicable law. If you require a reasonable accommodation during the application or interview process, please contact recruiting@livekit.io.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Security Engineer
Staff Security Engineer

Far Coder • Canada

Hybrid
CAD 130,000 - 190,000
Competitive salary and equity package
Health, dental, and vision benefits
Flexible vacation policy
Platform Security Engineer Build Secure AI & Drive Trust
Platform Security Engineer Build Secure AI & Drive Trust

LiveKit Incorporated • Canada

On-site
CAD 110,000 - 150,000
Competitive salary
Equity package
Health, dental, and vision benefits
+1
Senior Security Engineer
Senior Security Engineer

Rootly • Toronto

On-site
CAD 100,000 - 130,000
Competitive compensation
Comprehensive medical, dental, and vision coverage
3 weeks of vacation plus unlimited sick and mental health days
+2
Staff Application Security Specialist
Staff Application Security Specialist

Capital Factory • Montreal (administrative region)

Hybrid
CAD 90,000 - 130,000
Annual bonus program.
LTIP program, share in Workleap's long
RRSP + Family health insurance + tele/
Staff Application Security Specialist
Staff Application Security Specialist

Workleap Inc. • Canada

Hybrid
CAD 120,000 - 180,000
LTIP program
RRSP + health insurance
Flexible vacation
+3
Senior Security Engineer
Senior Security Engineer

Cohere • Toronto

Hybrid
CAD 120,000 - 190,000
Open and inclusive culture
Weekly lunch stipend
Full health and dental benefits
+4
Software Engineer - Security
Software Engineer - Security

Baseten • Montreal (administrative region)

On-site
CAD 150,000 - 250,000
Equity
Medical, dental, vision insurance
Senior Manager, Engineering - Platform Security
Senior Manager, Engineering - Platform Security

United States Digital Space LLC • Denver

Hybrid
CAD 317,000 - 380,000
Medical, dental, vision insurance
401(k) with company match
Employee Stock Purchase Program
+1
Senior Security Engineer
Senior Security Engineer

PheedLoop • Toronto

On-site
CAD 80,000 - 120,000
100% employer-paid health coverage
Office on the TTC subway
Clear path to technical leadership
+2
Senior Site Reliability Engineer
Senior Site Reliability Engineer

AlleyCorp • Canada

On-site
CAD 197,000 - 225,000
Stock options
Health benefits
Unlimited PTO
+2