Lead Security Engineer

Canary Technologies
United States
Workplace: RemoteFull timeFunction: CybersecurityExperience: 8+ yearsSkills: ["Leadership","Communication","Risk-based thinking"]

Lead and grow a small Security team while owning Canary’s security and compliance program end to end. You’ll set risk-based security strategy, manage control frameworks, and run audits across SOC 2, PCI DSS, and other applicable requirements. Serve as the primary security point of contact for customers, partners, and auditors, translating security posture into clear technical and executive communications, while staying hands-on in cloud security, IAM, application security, and threat modeling.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Canary Technologies
Canary Technologies
16 hours ago

Lead Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 1 hour agoStatus: Live

Job Summary

Lead and grow a small Security team while owning Canary’s security and compliance program end to end. You’ll set risk-based security strategy, manage control frameworks, and run audits across SOC 2, PCI DSS, and other applicable requirements. Serve as the primary security point of contact for customers, partners, and auditors, translating security posture into clear technical and executive communications, while staying hands-on in cloud security, IAM, application security, and threat modeling.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Manager level

Key Responsibilities

  • •Lead, coach, and grow the Security team, including hiring, performance, priorities, and career development.
  • •Own Canary’s security and compliance program end to end across SOC 2, PCI DSS, GDPR/CCPA, and other applicable frameworks.
  • •Serve as the primary security point of contact for customers, partners, and auditors, translating security posture for technical and executive audiences.
  • •Own vendor and third-party risk management and review security terms in contracts.
  • •Write, maintain, and communicate security policies and standards; run security awareness and training; set technical direction for security tooling and stay hands-on in threat-model reviews.
Travel: Low travel

Pay and Benefits

Perks:Paid LeavePaid HolidaysBirthday HolidayTravel AllowanceLearning StipendAnnual BonusHotel CreditHotel Discount

Key Requirements

  • •8+ years in security engineering, including 2+ years leading a team as a manager or tech lead.
  • •Proven ownership of compliance programs end to end (SOC 2 Type II, PCI DSS, ISO 27001, or similar).
  • •Hands-on cloud security foundation across AWS, identity and access management, application security, and vulnerability management.
  • •Experience with vendor risk management and reviewing security terms in customer and vendor contracts.
  • •Track record building pragmatic, risk-based security programs at a growth-stage SaaS company.
Experience:8+ yearsSaaS
Skills:LeadershipCommunicationRisk-based thinking
Certifications:CISSPCISMCISA
Tech Stack:AWSSOC 2PCI DSSISO 27001GDPRCCPA

Company Brief

Canary Technologies
Provides cloud-connected environmental monitoring and analytics for commercial properties, combining IoT sensors and a SaaS platform to track HVAC performance, energy use, and indoor air quality for predictive maintenance and operational efficiency.
Industry: Facility Management
Website