Clearco Logo

Clearco

Senior DevSecOps Engineer

Posted 2 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in Canada
Senior level
Remote
Hiring Remotely in Canada
Senior level
The Senior DevSecOps Engineer will enhance cloud security, manage vulnerabilities, implement secure CI/CD practices, and support incident response efforts.
The summary above was generated by AI

Clearco is the capital partner that thinks like a founder. We provide fast, flexible, and founder-first funding designed to scale with your momentum. With over $3 billion deployed to 10,000+ brands, Clearco is the only platform offering both Cash Advance and Invoice Funding in one place. Our performance-driven model delivers competitive terms, capped weekly repayments, and access to capital in as little as 24 hours. There’s no dilution, no personal guarantees, and no friction. Whether you're securing inventory, funding ads, or launching your next big product, Clearco helps you move faster with confidence.

About the Role

We are hiring a Senior DevSecOps Engineer to operate at the intersection of Infrastructure, Security, and Reliability. This is a hands-on senior role that strengthens Clearco’s cloud security posture, builds secure-by-default platform guardrails, and improves our ability to detect and respond to security incidents. You will partner closely with Product Engineering, Data Science, and IT to make security a practical part of how we build and run systems.

What You’ll Do

  • Own platform security and reliability improvements across our GCP environment.

  • Harden identity and network controls in GCP (IAM patterns, service accounts and workload identity, organization policies, and network segmentation controls).

  • Build security into CI/CD by implementing and enforcing scanning and policy controls (SAST, SCA, secret detection, and container/image scanning).

  • Drive vulnerability management and supply chain risk reduction across services, dependencies, container images, and build pipelines.

  • Lead threat modeling and security design reviews for new features and material architecture changes.

  • Improve security observability and detection quality by tuning telemetry, reducing noise, and building high-signal detections and dashboards.

  • Lead investigations and coordinate incident response for security alerts and incidents, and drive follow-ups from post-mortems into preventative improvements.

  • Champion secure SDLC practices through standards, documentation, guardrails, and coaching for product engineering teams.

  • Define and maintain end-user device security standards, including requirements for security agents such as EDR and remote access tooling, and partner with stakeholders for operational execution.

  • Support compliance and audit readiness by conducting internal security reviews and helping align practices with frameworks and regulations (SOC 2, GDPR, NIST), including evidence support where needed.

Who You Are

Requirements

  • 5+ years of relevant experience spanning cloud infrastructure and security (DevSecOps, platform security, security engineering, SRE with strong security focus).

  • Deep hands-on experience with GCP (preferred) or AWS, including strong fundamentals in cloud networking and identity.

  • Strong hands-on experience with Kubernetes and service networking.

  • Strong Infrastructure-as-Code skills (for example Terraform) and the ability to build reusable, maintainable automation.

  • Practical experience integrating security into CI/CD and engineering workflows, including scanners and policy enforcement.

  • Experience with incident response: investigation, coordination, post-incident follow-through, and continuous improvement.

  • Experience with vulnerability management and software supply chain risk.

  • Comfortable partnering cross-functionally and driving work end-to-end in ambiguous areas.

Nice to have

  • Experience with Istio.

  • Familiarity with application security scanning tools like Semgrep, Veracode, GitHub Advanced Security, or equivalent.

  • Familiarity with CrowdStrike (EDR) and Splunk (SIEM).

  • Familiarity supporting compliance and audit readiness (SOC 2, GDPR, NIST), including evidence support.

What We Offer

  • Supportive Team: Work with a passionate group where you’ll find a true sense of belonging.

  • Compensation: Competitive salaries with RRSP/401k matching and comprehensive medical, dental, and health insurance.

  • Flexibility: A flexible time-off policy and the choice to work remote, hybrid, or from our Toronto HQ.

  • Growth: Stipends for your home office setup and continuous professional learning.

  • Impact: The opportunity to do high-impact work at a mission-driven organization.

At Clearco, we strive for an inclusive, accessible recruitment process. If you have specific accessibility needs, please let us know so we can support you. Please note that we use AI-assisted tools to help our team manage applications, though humans remain the sole decision-makers in our hiring. Contact us for more information on our tools or to request an accommodation.

Compensation Range: $160K - $190K

Top Skills

AWS
Ci/Cd
Docker
Edr
GCP
Github Advanced Security
Kubernetes
Semgrep
SIEM
Terraform
Veracode

Similar Jobs

11 Days Ago
Remote or Hybrid
CA
Senior level
Senior level
Fintech • Financial Services
The Sr. Cybersecurity DevSecOps Engineer integrates security into the software lifecycle, focusing on CIAM security, automation, and compliance, while collaborating cross-functionally and promoting security best practices.
Top Skills: AnsibleAWSAzureBashGCPGitlab CiJenkinsKubernetesPythonTerraform
10 Hours Ago
Remote or Hybrid
6 Locations
Senior level
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Design, coordinate, facilitate, and evaluate business continuity and crisis response exercises. Own exercise lifecycle from planning through facilitation, after-action reporting, corrective action tracking, and disaster recovery testing. Partner with cross-functional stakeholders to validate preparedness, identify gaps, and drive continuous improvement of resilience posture.
Top Skills: Business Continuity SoftwareChaos EngineeringCloud Native PlatformsDisaster Recovery TestingTableau
14 Hours Ago
Easy Apply
Remote
Canada
Easy Apply
Senior level
Senior level
Artificial Intelligence • Consumer Web • Digital Media • Information Technology • Social Impact • Software
Lead the Discover engineering team to develop a recommendation engine for a new marketplace, focusing on machine learning systems and user experience.
Top Skills: Data EngineeringMachine LearningRecommendation Systems

What you need to know about the Vancouver Tech Scene

Raincouver, Vancity, The Big Smoke — Vancouver is known by many names, and in recent years, it has gained a reputation as a growing hub for both tech and sustainability. Renowned for its natural beauty, the city has become a magnet for professionals eager to create environmental solutions, and with an emphasis on clean technology, renewable energy and environmental innovation, it's attracted companies across various industries, all working toward a shared goal: advancing clean technology.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account