Staff Security Engineer

🔥 11 minutes ago

🇦🇺 Australia – Remote

⏰ Full Time

🔴 Lead

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 11%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Canva

Canva

1001 - 5000 employees

Founded 2013

☁️ SaaS

📱 Media

📚 Education

💰 $200M Venture Round on 2021-09

SaaS • Media • Education

Canva is a versatile online design platform that empowers users to create a wide range of professional designs with ease. From social media posts and presentations to business cards and posters, Canva provides thousands of templates and design tools to help users bring their creative ideas to life. The platform also offers a suite of AI-powered features to enhance creativity and productivity, including tools like Magic Write for copy generation and Magic Edit for photo transformations. Canva caters to individuals, teams, and enterprises, making it an ideal solution for collaborative design and workflow management. It is also committed to sustainability and social impact, offering free educational and nonprofit access to its premium features.

📋 Description

• Set technical direction as a Staff-level individual contributor without people management • Work with teams across the business to identify real risks and build security roadmaps collaboratively • Help teams enable AI workflows safely • Review new tools and agents before deployment and define approval settings • Threat-model MCP, agentic workflows and SaaS-to-SaaS integrations • Turn threat-model findings into adopted security controls • Set security standards for other teams • Automate security work to handle growing workloads without increasing team size • Secure laptops, networks, identities, SaaS tools and AI agents used by Canva employees

🎯 Requirements

• Hands-on enterprise, corporate or internal security engineering experience • Built and run security services in production • Experience with endpoints, networks, identity and SaaS estates • Ability to identify security problems, gain stakeholder support and drive fixes through completion • Ability to influence IT or engineering leads without a mandate • Ability to write and review code to a standard trusted by other engineers • Automation-first approach • Nice to have: security work across a broad enterprise, especially marketing or sales • Nice to have: macOS fleet-scale security, including device trust, posture signals, zero trust, certificate-based device attestation • Nice to have: SaaS security posture, configuration baselines, SSPM, OAuth, third-party integration risk and non-human identities • Nice to have: securing AI agents, MCP servers or agentic workflows • Nice to have: action-level policy, tool-call mediation, audit trails and containment • Nice to have: Terraform, Python or Go, and AWS or GCP cloud experience

🏖️ Benefits

• Equity packages • Inclusive parental leave policy supporting all parents and carers • Annual Vibe & Thrive allowance supporting wellbeing, social connection, office setup and more • Flexible leave options • Virtual interviews

Apply Now