Used Tools & Technologies
Not specified
Required Skills & Competences
Tag name is followed by "@" symbol and proficiency level value.
About proficiency levels:
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Security @ 4
Docker @ 3
Go @ 4
Kubernetes @ 3
Terraform @ 3
TypeScript @ 4
Manual Testing @ 4
Python @ 4
GCP @ 3
CI/CD @ 4
AWS @ 3
Azure @ 3
Communication @ 7
Networking @ 4
Prioritization @ 6
Rust @ 4
Sentry @ 4
AI @ 4
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Details
Sentry is on a mission to help developers write better software faster. With significant funding and a large customer base, Sentry builds performance and error monitoring tools used by organizations like Disney, Microsoft, and Atlassian. Sentry embraces a hybrid work model across global hubs, with Mondays, Tuesdays, and Thursdays set as in-office anchor days.
The Security Team secures Sentry’s customers, code, and platform. As a Senior Security Engineer on this team, you will work across application and platform security domains, owning and shaping practices such as security reviews, threat modeling, vulnerability management, and embedding secure coding practices across the engineering organization. You will partner closely with product and engineering teams and help make the secure path the obvious one as Sentry expands its product and development practices.
Responsibilities
- Own and mature Sentry's security review program: secure code review, architecture review, and threat modeling. Build processes, tooling, and culture to make security a natural part of how Sentry ships and operates.
- Influence and mature vulnerability management practices: intake, triage, prioritization, remediation tracking, and management of bug bounty and responsible disclosure programs.
- Champion secure-by-design principles and partner with engineering and product teams to embed security early in the development lifecycle and integrate security tooling into developer and CI/CD workflows.
- Validate and reproduce application and infrastructure security findings: scanning, manual testing, coordinate penetration testing and vulnerability validation across Sentry's application, SDKs, and cloud-based platform.
- Evaluate and respond to emerging threats relevant to application security, including novel attack surfaces introduced by agentic product features and AI-assisted engineering practices.
Requirements
- 5+ years of industry experience designing, building, and securing complex applications and large-scale distributed cloud systems.
- Degree in Computer Science or a related field, equivalent training, or professional experience.
- Direct experience with security reviews, SDLC practices, secure CI/CD, architecture reviews, threat modeling, vulnerability management, and bug bounty/responsible disclosure programs.
- Comfortable programming in at least one language and able to review code in Python, TypeScript, Go, and Rust.
- Familiarity with distributed cloud technology (AWS, GCP, Azure, Kubernetes, Docker, Terraform, etc.) and securing those technologies (cloud networking, IAM, etc.).
- Collaborative problem solving with strong written and verbal communication.
- Preference for automation-first approaches and ownership of end-to-end work on a small, high-trust team.
Benefits
- Base salary range: $200,000 to $295,000 CAD.
- Eligibility for employee benefit plans/programs applicable to the position, including incentive compensation, equity grants, paid time off, and group health insurance coverage.
Equal Opportunity & Accommodations
Sentry is committed to equal employment opportunities and providing reasonable accommodations to employees and candidates with disabilities. For accommodation requests, contact [email protected].