Clearco Logo

Clearco

Senior DevSecOps Engineer

Posted 11 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in Canada
Senior level
Remote
Hiring Remotely in Canada
Senior level
The Senior DevSecOps Engineer will enhance cloud security, manage vulnerabilities, implement secure CI/CD practices, and support incident response efforts.
The summary above was generated by AI

Clearco is the capital partner that thinks like a founder. We provide fast, flexible, and founder-first funding designed to scale with your momentum. With over $3 billion deployed to 10,000+ brands, Clearco is the only platform offering both Cash Advance and Invoice Funding in one place. Our performance-driven model delivers competitive terms, capped weekly repayments, and access to capital in as little as 24 hours. There’s no dilution, no personal guarantees, and no friction. Whether you're securing inventory, funding ads, or launching your next big product, Clearco helps you move faster with confidence.

About the Role

We are hiring a Senior DevSecOps Engineer to operate at the intersection of Infrastructure, Security, and Reliability. This is a hands-on senior role that strengthens Clearco’s cloud security posture, builds secure-by-default platform guardrails, and improves our ability to detect and respond to security incidents. You will partner closely with Product Engineering, Data Science, and IT to make security a practical part of how we build and run systems.

What You’ll Do

  • Own platform security and reliability improvements across our GCP environment.

  • Harden identity and network controls in GCP (IAM patterns, service accounts and workload identity, organization policies, and network segmentation controls).

  • Build security into CI/CD by implementing and enforcing scanning and policy controls (SAST, SCA, secret detection, and container/image scanning).

  • Drive vulnerability management and supply chain risk reduction across services, dependencies, container images, and build pipelines.

  • Lead threat modeling and security design reviews for new features and material architecture changes.

  • Improve security observability and detection quality by tuning telemetry, reducing noise, and building high-signal detections and dashboards.

  • Lead investigations and coordinate incident response for security alerts and incidents, and drive follow-ups from post-mortems into preventative improvements.

  • Champion secure SDLC practices through standards, documentation, guardrails, and coaching for product engineering teams.

  • Define and maintain end-user device security standards, including requirements for security agents such as EDR and remote access tooling, and partner with stakeholders for operational execution.

  • Support compliance and audit readiness by conducting internal security reviews and helping align practices with frameworks and regulations (SOC 2, GDPR, NIST), including evidence support where needed.

Who You Are

Requirements

  • 5+ years of relevant experience spanning cloud infrastructure and security (DevSecOps, platform security, security engineering, SRE with strong security focus).

  • Deep hands-on experience with GCP (preferred) or AWS, including strong fundamentals in cloud networking and identity.

  • Strong hands-on experience with Kubernetes and service networking.

  • Strong Infrastructure-as-Code skills (for example Terraform) and the ability to build reusable, maintainable automation.

  • Practical experience integrating security into CI/CD and engineering workflows, including scanners and policy enforcement.

  • Experience with incident response: investigation, coordination, post-incident follow-through, and continuous improvement.

  • Experience with vulnerability management and software supply chain risk.

  • Comfortable partnering cross-functionally and driving work end-to-end in ambiguous areas.

Nice to have

  • Experience with Istio.

  • Familiarity with application security scanning tools like Semgrep, Veracode, GitHub Advanced Security, or equivalent.

  • Familiarity with CrowdStrike (EDR) and Splunk (SIEM).

  • Familiarity supporting compliance and audit readiness (SOC 2, GDPR, NIST), including evidence support.

What We Offer

  • Supportive Team: Work with a passionate group where you’ll find a true sense of belonging.

  • Compensation: Competitive salaries with RRSP/401k matching and comprehensive medical, dental, and health insurance.

  • Flexibility: A flexible time-off policy and the choice to work remote, hybrid, or from our Toronto HQ.

  • Growth: Stipends for your home office setup and continuous professional learning.

  • Impact: The opportunity to do high-impact work at a mission-driven organization.

At Clearco, we strive for an inclusive, accessible recruitment process. If you have specific accessibility needs, please let us know so we can support you. Please note that we use AI-assisted tools to help our team manage applications, though humans remain the sole decision-makers in our hiring. Contact us for more information on our tools or to request an accommodation.

Compensation Range: $160K - $190K

Top Skills

AWS
Ci/Cd
Docker
Edr
GCP
Github Advanced Security
Kubernetes
Semgrep
SIEM
Terraform
Veracode

Clearco Toronto, Ontario, CAN Office

Toronto, Ontario, Canada, M5H0A3

Similar Jobs

4 Days Ago
In-Office or Remote
Toronto, ON, CAN
Senior level
Senior level
Information Technology • Software • Analytics
The Senior Database Engineer is responsible for managing and optimizing Nue's database infrastructure, ensuring scalability, performance, and reliability while driving database migrations and collaborating with engineering teams.
Top Skills: AuroraAws RdsBashCloudFormationNeondbPostgresPythonTerraform/Opentofu
26 Minutes Ago
Easy Apply
Remote
Canada
Easy Apply
Senior level
Senior level
Artificial Intelligence • Blockchain • Fintech • Financial Services • Cryptocurrency • NFT • Web3
This role manages the accounting and finance functions at Coinbase Canada, ensuring regulatory compliance, preparing financial reports, and collaborating with teams across the organization to optimize processes.
Top Skills: FloqastGoogle SuiteIfrsLookerNetSuiteSnowflakeSQLUs Gaap
26 Minutes Ago
Easy Apply
Remote
Canada
Easy Apply
Mid level
Mid level
Artificial Intelligence • Blockchain • Fintech • Financial Services • Cryptocurrency • NFT • Web3
The role involves designing, developing, and maintaining SDKs, interfacing with APIs, and improving documentation while collaborating with teams for integration and gathering customer feedback.
Top Skills: AndroidFlutterGoiOSOpenapiReactReact NativeTypescriptUnity

What you need to know about the Toronto Tech Scene

Although home to some of the biggest names in tech, including Google, Microsoft and Amazon, Toronto has established itself as one of the largest startup ecosystems in the world. And with over 2,000 startups — more than 30 percent of the country's total startups — Toronto continues to attract new businesses. Be it helping entrepreneurs manage their finances, simplifying business operations by automating payroll or assisting pharmaceutical companies in launching new drugs, the city's tech scene is just getting started.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account