
11 - 50 employees
🤖 Artificial Intelligence
🏢 Enterprise
☁️ SaaS
Artificial Intelligence • Enterprise • SaaS
Cohere is a leading enterprise AI platform optimized for generative AI, search and discovery, and advanced retrieval. The company offers AI-powered applications designed to augment and elevate the global workforce, helping businesses thrive in the AI era. Cohere provides solutions such as embedding and reranking models, allowing enterprises to efficiently retrieve information and build powerful applications. The company offers flexible deployment options for enterprise-grade AI, on any cloud or on-premises, and provides extensive developer resources and support. Cohere is committed to scaling intelligence to serve humanity, making intelligence abundant, affordable, and accessible.
🔥 12 hours ago
🇨🇦 Canada – Remote
💵 $260k - $385k / year
⏰ Full Time
🟡 Mid-level
🟠 Senior
👮♂️ Cybersecurity / Security Engineer
👻 Ghost score 21%
Improve your chances of getting an interview by checking your resume score before you apply.

11 - 50 employees
🤖 Artificial Intelligence
🏢 Enterprise
☁️ SaaS
Artificial Intelligence • Enterprise • SaaS
Cohere is a leading enterprise AI platform optimized for generative AI, search and discovery, and advanced retrieval. The company offers AI-powered applications designed to augment and elevate the global workforce, helping businesses thrive in the AI era. Cohere provides solutions such as embedding and reranking models, allowing enterprises to efficiently retrieve information and build powerful applications. The company offers flexible deployment options for enterprise-grade AI, on any cloud or on-premises, and provides extensive developer resources and support. Cohere is committed to scaling intelligence to serve humanity, making intelligence abundant, affordable, and accessible.
• Lead security reviews of architecture, code, and security-sensitive changes • Evaluate risks in AI-powered products, including prompt injection, unsafe tool use, identity and delegation failures, excessive agency, data exposure, tenant isolation, and sandbox escapes • Threat model new capabilities by identifying trust boundaries, abuse cases, and high-impact failure modes • Translate findings into practical, prioritized mitigations • Investigate suspected vulnerabilities and develop proofs of concept • Assess exploitability and impact and partner with engineers through remediation • Develop secure defaults, approved patterns, reusable controls, review requirements, and automated checks • Pair with engineers and document practical security guidance • Help product teams develop durable security expertise • Explain technical findings, business impact, and remediation options to engineers, product leaders, and executives
• Strong software engineering fundamentals and ability to independently understand, test, and contribute fixes to production codebases • Proficiency in at least one of Python, Go, or TypeScript • Experience leading security reviews or threat models for complex production systems • Understanding of injection, authorization flaws, IDOR, SSRF, unsafe deserialization, race conditions, cryptographic misuse, and software supply-chain risks • Understanding of web applications, APIs, OAuth/OIDC, cloud platforms, containers, Kubernetes, and CI/CD systems • Ability to reason about untrusted input, authorization, isolation, identity, delegation, and data boundaries • Experience driving security improvements involving multiple engineering teams • Clear communication with technical and non-technical audiences • Experience with SAST, DAST, SCA, custom linters, or policy-as-code (nice to have) • Experience securing multi-tenant SaaS, enterprise software, or systems processing sensitive customer data (nice to have) • Offensive security experience through penetration testing, red teaming, or security research (nice to have) • Experience with vulnerability disclosure or bug bounty programs (nice to have) • Open-source security contributions, published research, conference talks, or credited vulnerability discoveries (nice to have)
• A weekly lunch stipend of $75/£75 or equivalent in your local currency for lunch • Full health and dental benefits, including a separate budget for mental health • RRSP matching, 401K, Pension Scheme • 100% Parental Leave top-up for up to 6 months, for either parent • Annual enrichment benefits: arts & culture, fitness/wellness, quality time, and a workspace improvement credit • Education & learning stipend for conferences, courses, and coaching • 6 weeks of paid vacation (30 working days) • Budget for traveling to other offices if you are remote, plus an annual company offsite • Co-working benefit for those not near an office • $500 home office stipend • Daily lunch program, snacks, and regular community and social events for those in the office
Apply Now🕒 Yesterday
Cisco security solutions designer supporting pre-sales architecture, demonstrations, and technical presentations. Protecting customer application environments with Cisco security technologies.
🇨🇦 Canada – Remote
💵 $205.9k - $260.1k / year
⏰ Full Time
🟡 Mid-level
🟠 Senior
👮♂️ Cybersecurity / Security Engineer
🗣️🇫🇷 French Required
🕒 Yesterday
Senior Program Manager driving enterprise cybersecurity programs for NBCUniversal, a global media and entertainment company. Coordinating technical delivery, operational change, adoption, risk, and executive reporting.
🕒 2 days ago
Red Team Security Engineer evaluating Motive's fleet-management platform and cloud environments. Executing adversary simulations, validating detection coverage, and driving remediation of security issues.
🇨🇦 Canada – Remote
💵 $146k - $190k / year
⏰ Full Time
🟡 Mid-level
🟠 Senior
👮♂️ Cybersecurity / Security Engineer
🕒 September 3
Senior Cloud Security Engineer securing ComPsych’s cloud-based mental health and absence-management platforms. Building cloud, application, data, AI, detection, and compliance controls.
🕒 September 2
Security and Identity Engineer securing enterprise AI platforms for mission-critical transportation and operational technology environments. Designing tenant isolation, identity, authorization, threat models, and compliance-by-design practices.