Fireflies AI Logo

Fireflies AI

Security Engineer

Posted 7 Days Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in Vancouver, BC, CAN
Mid level
In-Office or Remote
Hiring Remotely in Vancouver, BC, CAN
Mid level
Hands-on Security Engineer responsible for building and automating security controls across product, backend, and infrastructure; conducting vulnerability assessments and pen tests; triaging bug bounty reports; patching backend issues; supporting incident response; and partnering with engineering to improve secure coding and infrastructure practices.
The summary above was generated by AI
Fireflies.ai is the leading AI teammate for meetings, trusted by more than 20 million users across over 500,000 organizations, from fast-growing startups to Fortune 500 enterprises. Fireflies captures knowledge, automates repetitive work, and helps teams become more productive before, during, and after every meeting.

Fireflies has achieved unicorn status with a valuation exceeding $1 billion. In 2024, Ramp recognized Fireflies as the sixth most popular AI platform by number of paying customers, alongside companies including OpenAI, Midjourney, and Anthropic. There is a good chance you have already seen Fireflies quietly powering one of your recent meetings.

Fireflies.ai is looking for a hands-on Security Engineer to protect our infrastructure, product, and user data as we scale globally. This role is ideal for someone who can ship code, automate security workflows, triage vulnerabilities, and work closely with engineering teams to build secure systems.

We are an AI-native engineering organization. Our strongest engineers use coding agents to move faster, run work in parallel, and compound what the team learns, while remaining fully accountable for the architecture, code, testing, security, and customer outcome. We want engineers who combine speed with judgment, communicate clearly in an async environment, and consistently turn ambiguous problems into reliable products.

What You’ll Do:
  • Build and improve security controls across our product, backend, and infrastructure.
  • Review code, architecture, and infrastructure for security risks.
  • Run vulnerability assessments, penetration testing, and security audits.
  • Debug and patch security issues in backend systems.
  • Manage bug bounty triage and remediation workflows, including HackerOne.
  • Automate security checks, alerts, and vulnerability workflows.
  • Partner with engineering teams to promote secure coding practices.
  • Support incident response and security investigations.
  • Configure and maintain security tools such as firewalls, IDS/IPS, scanners, and monitoring systems.

What You Need:
  • 3+ years of experience in security engineering, backend security, or infrastructure security.
  • Strong backend development experience with Node.js/TypeScript.
  • Ability to ship code end-to-end.
  • Good understanding of authentication, authorization, cryptography, and common vulnerabilities.
  • Experience with security tools such as GitHub Advanced Security, Dependabot, CrowdStrike, Falco or similar.
  • Experience with cloud security, preferably GCP or AWS.
  • Familiarity with Kubernetes, Docker, and modern infrastructure security.
  • Strong problem-solving and communication skills.

Nice to Have:
  • Experience with SaaS or high-growth startup environments.
  • Bug bounty program experience.
  • Experience with SOC 2, HIPAA, GDPR, Vanta, or similar
  • Contributions to the security community, such as CVEs, talks, or open-source work.
  • Experience with DevSecOps or security automation.

Tech Stack:
  • Node.js, TypeScript
  • Go
  • MongoDB
  • Kubernetes, Docker
  • GCP
  • Pub/Sub architecture
  • HackerOne, Vanta, GitHub Advanced Security

Values that are important to us:
  • You should be a great communicator and culture maintainer
  • Take a look at our culture document
  • You're data-driven and customer-focused
  • You value fast & incremental engineering cycles
  • You maintain design excellence and minimize complexity
  • You measure your results & automate when possible
  • You get 10% better at something every week
  • You have agency with your internal compass and take accountability & initiative
  • We value overcommunication, candid feedback and a results-driven culture

Perks and Benefits:
  • Competitive compensation
  • Work remotely anywhere in your respective country
  • Ability to move laterally within a team and grow rapidly
  • Paid time off and flexible leave policy
  • No boss culture
  • Flexible working hours
  • LGBTQ+ friendly
  • Company offsites
  • Tech reimbursements

About us:

At Fireflies.ai, we are changing how teams use AI in their daily work. Our culture champions security, innovation, customer experience, and growth. Backed by $19 million from investors including Canaan and Khosla Ventures, plus angels from Slack, Facebook, Dropbox, Amazon, and Salesforce, Fireflies is driven by a global team of more than 100 people across over 20 countries and every time zone. We are building a world-class, global-first company, and we use our own product to do it.

Fireflies.ai is an equal opportunity employer. We strongly value diversity because our team is stronger with different perspectives and experiences. We do not discriminate based on race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, disability status, or any other protected characteristic.

Similar Jobs

4 Days Ago
Easy Apply
Remote
Canada
Easy Apply
Junior
Junior
Big Data • Fintech • Mobile • Payments • Financial Services
Supports application security across product and engineering teams by reviewing code, configurations, designs, logs, and vulnerabilities. Assesses and prioritizes risks, guides remediation, contributes scripts, detections, tests, secure defaults, and automation, and improves vulnerability management workflows. Collaborates with technical and non-technical stakeholders to communicate risk, recommend mitigations, and connect AppSec practices to customer trust, compliance, resilience, and business outcomes.
Top Skills: Burp SuiteGitGitJavaScriptKotlinOwasp Top 10PythonTypescript
4 Days Ago
Easy Apply
Remote
Canada
Easy Apply
Junior
Junior
Big Data • Fintech • Mobile • Payments • Financial Services
Supports application security across product and engineering teams by reviewing code, configurations, designs, vulnerabilities, and pull requests. Helps triage and prioritize security findings, provides remediation guidance, develops scripts and automation, and promotes secure coding practices. The role communicates risk to technical and non-technical stakeholders, collaborates cross-functionally, and develops offensive, defensive, and software engineering skills.
Top Skills: Burp SuiteGitGitJavaScriptKotlinOwasp Top 10PythonTypescript
9 Days Ago
Remote
Canada
Senior level
Senior level
Fintech • Payments • Financial Services
Own security for Spade's production edge: manage PKI and mutual-TLS certificate lifecycle, design private network connectivity and webhook delivery security, drive vulnerability remediation, codify secure-build standards, and collaborate across engineering and product to improve overall security posture.
Top Skills: AWSAws CdkJwtMtlsOauth 2.0PkiTls

What you need to know about the Vancouver Tech Scene

Raincouver, Vancity, The Big Smoke — Vancouver is known by many names, and in recent years, it has gained a reputation as a growing hub for both tech and sustainability. Renowned for its natural beauty, the city has become a magnet for professionals eager to create environmental solutions, and with an emphasis on clean technology, renewable energy and environmental innovation, it's attracted companies across various industries, all working toward a shared goal: advancing clean technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account