Okta Logo

Okta

Staff Product Security Engineer - Code Security Team

Posted 13 Days Ago
Be an Early Applicant
In-Office
Toronto, ON
Senior level
In-Office
Toronto, ON
Senior level
As a Staff Product Security Engineer, you'll enhance application security, manage DevSecOps tools, automate security checks, and ensure timely remediation of vulnerabilities.
The summary above was generated by AI

Get to know Okta
Okta is The World’s Identity Company. We free everyone to safely use any technology, anywhere, on any device or app. Our flexible and neutral products, Okta Platform and Auth0 Platform, provide secure access, authentication, and automation, placing identity at the core of business security and growth.
At Okta, we celebrate a variety of perspectives and experiences. We are not looking for someone who checks every single box - we’re looking for lifelong learners and people who can make us better with their unique experiences. 
Join our team! We’re building a world where Identity belongs to you.

Staff Product Security Engineer - Code Security Team

We are looking for a talented Security Engineer to join our Code Security Team and help us enhance our application security program. As a Product Security Engineer, you will contribute to the security of various aspects of Okta's DevSecOps Security posture, implement services, and define processes that mitigate risk in this space.

The ideal candidate has strong Application Security knowledge, alongside a hands–on experience with automation through custom code.

Your main responsibilities will include:

  • Architect, implement, and manage DevSecOps tools, automating security checks and embedding SAST, DAST, IaC, and secret scanning into CI/CD pipelines.
  • Build and maintain AWS-based secure infrastructure and automation pipelines using EC2, Step Functions, and Lambda, leveraging native security controls.
  • Support Engineering through weekly rotations, assisting with triage, prioritisation, and remediation of findings to ensure timely remediation of vulnerabilities.
  • Develop automation for internal systems to meet Okta-specific requirements for vulnerability identification, tracking, and reporting.
  • Drive the definition and refinement of internal processes to accelerate secure software delivery.
  • Contribute to security strategy, risk prioritization, and planning to strengthen Okta product security. 

To be considered for this role, you should have:

  • At least 5 years of experience in Application Security, with a strong focus on security automation and building secure systems at scale.
  • A deep understanding of modern web application vulnerabilities and remediation techniques (OWASP Top 10, CWE Top 25).
  • Proven ability to perform security code reviews in at least one major programming language (Python, Go, Java, or C#). You should be able to read code, identify vulnerabilities, and propose effective remediation strategies.
  • Significant software development experience in Python, or a similar language, with a strong interest in learning Python.
  • A proven track record of automating and streamlining security processes, including hands-on experience implementing and managing commercial or open-source DevSecOps tools and hardening CI/CD pipelines.

Additional skills we're looking for include:

  • Knowledge of at least one of AWS, GCP, Azure, etc.
  • Experience with CI/CD pipelines, either on-prem or cloud.

Qualifications:

  • Bachelor's degree in Computer Science, Computer Engineering, or equivalent experience.
  • Industry certifications related to Application and Network Security, are a plus.

At our company, we value collaboration, teamwork, and innovation. This role will report to the Manager of Software Supply Chain Security, and will work closely with other members of the DevSecOps team. We are passionate about what we do and strive to create an inclusive and diverse workplace where everyone can thrive. If you are excited about this opportunity and meet the qualifications listed above, we encourage you to apply. We look forward to hearing from you.

#LI-HYBRID

Below is the annual salary range for candidates located in Canada. Your actual salary will depend on factors such as your skills, qualifications, and experience. In addition, Okta offers equity (where applicable), bonus, and benefits, including health, dental, and vision insurance, RRSP with a match, healthcare spending, telemedicine, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies. To learn more about our Total Rewards program, please visit: https://rewards.okta.com/can.

The annual base salary range for this position for candidates located in Canada is between:
$141,000$211,000 CAD

What you can look forward to as a Full-Time Okta employee!

  • Amazing Benefits
  • Making Social Impact
  • Developing Talent and Fostering Connection + Community at Okta

Okta cultivates a dynamic work environment, providing the best tools, technology and benefits to empower our employees to work productively in a setting that best and uniquely suits their needs. Each organization is unique in the degree of flexibility and mobility in which they work so that all employees are enabled to be their most creative and successful versions of themselves, regardless of where they live. Find your place at Okta today! https://www.okta.com/company/careers/.
Some roles may require travel to one of our office locations for in-person onboarding.

Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran. We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws.
If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please use this Form to request an accommodation.
Okta is committed to complying with applicable data privacy and security laws and regulations. For more information, please see our Personnel and Job Candidate Privacy Notice at https://www.okta.com/legal/personnel-policy/.

Top Skills

AWS
Ci/Cd
Dast
Devsecops
Iac
Python
Sast

Similar Jobs

17 Hours Ago
Hybrid
Toronto, ON, CAN
Senior level
Senior level
Enterprise Web • Fintech • Financial Services
The Senior Sales Enablement & Learning Program Manager develops and manages training programs to enhance sales effectiveness and engages stakeholders to drive learning initiatives.
Top Skills: GongLinkedin NavigatorLmsPowerPointSales Enablement PlatformSeismicSpekit
17 Hours Ago
Hybrid
Newmarket, ON, CAN
Junior
Junior
Automotive • Hardware • Robotics • Software • Transportation • Manufacturing
Conducts quality audits, prepares reports, resolves quality issues, ensures compliance with standards, trains personnel, and manages quality control processes.
Top Skills: Compliant ProMicrosoft ApplicationsMinitabTeam Center
17 Hours Ago
Hybrid
Vaughan, ON, CAN
Junior
Junior
Automotive • Hardware • Robotics • Software • Transportation • Manufacturing
Set up progressive presses for automotive manufacturing while ensuring safety and operational efficiency, using relevant tools and techniques.
Top Skills: CraneForkliftMeasuring Equipment

What you need to know about the Belfast Tech Scene

If asked to name the birthplace of the RMS Titanic, you might not say Belfast. Similarly, if asked to name Europe's leading destination for foreign direct investment in new software development, Belfast might not come to mind. Yet, both are true. The city has emerged as a tech powerhouse, recently ranked among the best in the U.K. for tech careers — especially for software developers. It also leads the U.K. with the highest percentage of software development jobs advertised.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account