P2P
Intelerad Medical Systems
FocusGroupPanel
LE002 Phreesia, Inc. (Canadian Branch)
Employment Hero
Canadian Imperial Bank of Commerce
CPG Connect
An innovative technology company is seeking a Product Security Engineer to enhance the security of their products and services. This role involves collaborating with a globally distributed team to conduct security reviews, support vulnerability management, and train internal teams. The successful candidate will have a Bachelor’s degree and several years of experience in application security, alongside knowledge of web security and development practices.
At Mattermost, we build the #1 collaborative workflow solution for defense, intelligence, security, and critical infrastructure organizations. Trusted by governments, financial institutions, and technology companies, our platform enables secure, efficient operations for the world’s most critical teams.
We’re dedicated to empowering organizations to operate with confidence, reducing risks, and accelerating productivity. Guided by our core values of Customer Obsession, Earn Trust, Self Awareness, Ownership and High Impact, we collaborate closely with our customers to deliver solutions that meet complex needs and drive success.
Mattermost is seeking a results-driven and analytical Product Security Engineer to help ensure the security of our product and services across the company. As part of our Security team, you will work closely with a globally distributed team to support all aspects of the software development life cycle. You will be responsible for the implementation of additional application security tooling and/or processes across the company, coordinating with relevant stakeholders, gathering requirements, and leading the implementation.
Responsibilities Include:
Support the application vulnerability management and mitigation approaches
Conduct application security reviews through manual code review or static/dynamic code analysis
Engage in threat modelling and design reviews of in-house developed software components
Provide security guidance and training to internal development teams
Triage SCA findings and support internal development teams in SCA findings remediation
Improve and/or automate existing processes to increase efficiency
Requirements:
Bachelor’s degree in Computer Science, Cybersecurity, Software Engineering, or a related technical field, or equivalent experience, with 3+ years of relevant experience in application security, secure software development, or penetration testing
Understanding of web application security and secure development practices
Familiarity with common security libraries, security controls, and common security flaws
Experience with static/dynamic analysis, and common exploit methods
Excellent written and verbal communication skills
Demonstrable teamwork skills and resourcefulness
Preferences:
Experience working in open-source communities
Experience running a bug bounty programme
Experience with Threat Modelling applications
Certifications in the domain of penetration testing or application security (e.g., OSCP, OSWE, GWAPT, etc.)
Experience with Electron, React, or React Native
Participation in Bug Bounties, CTFs, or similar activities
Mattermost takes a market-based approach to pay and pay may vary depending on your location. The successful candidate’s starting pay will be determined based on job-related skills, experience, qualifications, work location, and market conditions. These ranges may be modified in the future.
Mattermost is an EEO Employer, we are a remote-first, open-source company.
We are continually working to expand our hiring in more countries and regions, ensuring compliance with local laws and regulations, which takes time.
Mattermost values your unique perspective—we welcome all applicants. We encourage individuals from all backgrounds to apply and are committed to assessing candidates based on their skills and qualifications. We do not tolerate discrimination against staff or applicants based on race, religion, national origin, age, disability, pregnancy status, veteran status, or other personal characteristics.
If you require accommodations during the interview process, please let us know—we’re happy to assist.
Create a Job Alert
Interested in building your career at Mattermost? Get future opportunities sent straight to your email.
*
indicates a required field
First Name *
Last Name *
Preferred First Name
Email *
Phone
Resume/CV
Enter manually
Accepted file types: pdf, doc, docx, txt, rtf
Enter manually
Accepted file types: pdf, doc, docx, txt, rtf
Education
School Select...
Degree Select...
LinkedIn Profile *
Website
Github Profile *
How did you hear about Mattermost?
Why are you interested in this role at Mattermost?
On a scale of 1 (not a fit) to 10 (perfect fit) how would you rate your potential fit for the role for which you're applying? Please share why.
Have you used Mattermost previously or contributed to the open-source project? If so, please tell us the ways you've been involved.
* The salary benchmark is based on the target salaries of market leaders in their relevant sectors. It is intended to serve as a guide to help Premium Members assess open positions and to help in salary negotiations. The salary benchmark is not provided directly by the company, which could be significantly higher or lower.