Movable Ink Logo

Movable Ink

Product Security Engineer

Reposted 3 Days Ago
Be an Early Applicant
Easy Apply
Hybrid
Toronto, ON
Mid level
Easy Apply
Hybrid
Toronto, ON
Mid level
The Product Security Engineer will implement security testing, manage vulnerabilities in codebases, and integrate security practices into CI/CD pipelines while collaborating with engineering teams.
The summary above was generated by AI
Movable Ink scales content personalization for marketers through data-activated content generation and AI decisioning. The world’s most innovative brands rely on Movable Ink to maximize revenue, simplify workflow and boost marketing agility. Headquartered in New York City with close to 600 employees, Movable Ink serves its global client base with operations throughout North America, Central America, Europe, Australia, and Japan.

Movable Ink is hiring a Product Security Engineer to help secure our codebases, CI/CD pipelines, and development practices. To succeed in this role, you'll balance a security-first mindset with a practical understanding of how engineering teams ship software: finding ways to reduce risk without slowing down delivery. This is a hands-on opportunity to build and improve the automation that keeps our code and infrastructure safe, working closely with both the Security and Engineering teams. As AI coding tools and supply chain attacks increase risk across the industry, this role is critical to staying ahead of vulnerabilities before they reach production.

Responsibilities:

  • Implement and maintain static application security testing (SAST) using Semgrep across our repositories
  • Configure and improve software composition analysis (SCA) tooling (Dependabot) to identify vulnerable dependencies
  • Manage secrets detection scanning (Trufflehog) and respond to findings
  • Integrate security scanning into CI/CD pipelines (GitHub Actions) to catch issues before code is merged
  • Triage and prioritize vulnerability findings, working with engineering teams to drive remediation
  • Support dynamic application security testing (DAST) efforts using tools like ZAP
  • Contribute to our Application Security Posture Management (ASPM) platform to centralize findings and track remediation
  • Set up and configure automation scripts to support our vulnerability management practices
  • Document secure coding guidelines and help educate developers on security best practices
  • Evaluate and recommend new security tools as the landscape evolves

Qualifications:

  • 2+ years of experience in application security, DevSecOps, or a security-focused software engineering role
  • Hands-on experience with SAST, SCA, or secrets scanning tools (Semgrep, Dependabot, Snyk, or similar)
  • Familiarity with CI/CD pipelines and GitHub Actions
  • Understanding of common web application vulnerabilities (OWASP Top 10) and how to detect/prevent them
  • Experience reading and reviewing code in at least one language (Ruby, Python, JavaScript, or Go preferred)
  • Comfortable navigating codebases and working with engineering teams to explain and prioritize security findings
  • Strong written communication skills for documentation and customer-facing security responses
  • Self-motivated and able to manage competing priorities in a fast-paced environment

Studies have shown that women, communities of color, and historically underrepresented people are less likely to apply to jobs unless they meet every single qualification. We are committed to building a diverse and inclusive culture where all Inkers can thrive. If you’re excited about the role but don’t meet all of the abovementioned qualifications, we encourage you to apply. Our differences bring a breadth of knowledge and perspectives that makes us collectively stronger.

We welcome and employ people regardless of race, color, gender identity or expression, religion, genetic information, parental or pregnancy status, national origin, sexual orientation, age, citizenship, marital status, ethnicity, family or marital status, physical and mental ability, political affiliation, disability, Veteran status, or other protected characteristics. We are proud to be an equal opportunity employer.

Top Skills

Dependabot
Github Actions
Go
JavaScript
Python
Ruby
Semgrep
Trufflehog
Zap

Similar Jobs at Movable Ink

2 Days Ago
Easy Apply
Hybrid
Toronto, ON, CAN
Easy Apply
Expert/Leader
Expert/Leader
Artificial Intelligence • Marketing Tech • Software
The Vice President of Product Management will execute product strategy and roadmap, leading teams to enhance product management practices and customer satisfaction, while ensuring alignment with corporate objectives and technical excellence.
Top Skills: Agile MethodologiesAi-Driven DecisioningB2C CrmEmail MarketingMobile MarketingPersonalization CapabilitiesSdlc
3 Days Ago
Easy Apply
Hybrid
Toronto, ON, CAN
Easy Apply
Junior
Junior
Artificial Intelligence • Marketing Tech • Software
The Security Detection Engineer is responsible for enhancing security monitoring and detection, managing alerts in Splunk, investigating incidents, and collaborating with the Security team to refine detection strategies.
Top Skills: AWSCrowdstrikeGCPPrisma CloudSplunk
11 Days Ago
Easy Apply
Hybrid
Toronto, ON, CAN
Easy Apply
Senior level
Senior level
Artificial Intelligence • Marketing Tech • Software
Lead technical reliability initiatives across a multi-cloud, multi-region active-active content platform. Architect and evolve core services, observability and logging, automation and capacity planning. Mentor engineers, drive cross-team reliability projects, define standards (IaC, SLOs, on-call) and proactively improve platform scalability and incident outcomes.
Top Skills: Apache Pulsar,Apache Kafka,Grafana Loki,Scylladb,Cassandra,Prometheus,Thanos,Grafana Alloy,Tempo,Terraform,Chef,Eks,Gke,Kubernetes,Nodejs,Golang,Ruby,Python,Shell Scripting,Linux,Aws,Gcp

What you need to know about the Montreal Tech Scene

With roots dating back to 1642, Montreal is often recognized for its French-inspired architecture and cobblestone streets lined with traditional shops and cafés. But what truly sets the city apart is how it blends its rich tradition with a modern edge, reflected in its evolving skyline and fast-growing tech industry. According to economic promotion agency Montréal International, the city ranks among the top in North America to invest in artificial intelligence, making it le spot idéal for job seekers who want the best of both worlds.

Key Facts About Montreal Tech

  • Number of Tech Workers: 255,000+ (2024, Tourisme Montréal)
  • Major Tech Employers: SAP, Google, Microsoft, Cisco
  • Key Industries: Artificial intelligence, machine learning, cybersecurity, cloud computing, web development
  • Funding Landscape: $1.47 billion in venture capital funding in 2024 (BetaKit)
  • Notable Investors: CIBC Innovation Banking, BDC Capital, Investissement Québec, Fonds de solidarité FTQ
  • Research Centers and Universities: McGill University, Université de Montréal, Concordia University, Mila Quebec, ÉTS Montréal

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account