Join Relay as a junior Security Engineer to enhance security measures and contribute to a mission-driven team focused on small business success.
Posted by employer 2 weeks ago
First seen on Joblaze 3 hours ago
Last verified on the company career page 3 hours ago
Skills & Technologies
What you'll build
Must have
Nice to have
Requirements
Not disclosed in this posting: work arrangement, visa sponsorship.
Joblaze summary
In the role of Security Engineer at Relay, the individual will engage in both offensive and defensive security tasks, including planning security simulations and enhancing data access protocols. Key skills include scripting proficiency and familiarity with cloud environments, alongside a solid understanding of security fundamentals. This position is ideal for early-career professionals with 2-4 years of experience in security or related fields, who are eager to learn and take ownership of their projects. Relay's purple team offers mentorship and a collaborative atmosphere as the company navigates a phase of growth.
Joblaze insights
Quick facts
From the original posting
Our mission is to increase the success rate of small businesses. Traditional banking has been a growth limiter rather than a growth enabler. We're changing that. Relay is the all-in-one, collaborative money management platform. We're building for employer SMBs and their finance function, and delivering a human-centric customer experience.
Relay is entering an exciting new chapter of growth, and we're looking for a Security Engineer to join the purple team in our security organization. This is a rare early-career opportunity to work across both offensive and defensive security with the mentorship and support to grow quickly.
As a Security Engineer on Relay's purple team, you'll help design and run exercises that test our defenses, surface vulnerabilities, and drive real improvements. You'll work closely with senior security engineers who will coach you through the harder problems, and you'll take increasing ownership of your own workstreams as you build depth.
Help plan and run security simulations, and contribute to the security awareness program that comes out of them
Review how sensitive customer and financial data is accessed in Relay's admin dashboards, and help implement improvements
Contribute to strengthening security for our developer environments, including tooling, packages, and access to production
Work alongside delivery, IT, and business teams to turn test findings into tangible fixes, and follow them through to done
Develop and manage Cyber Awareness exercises, including internal phishing attacks
Research emerging threats (e.g. AI misuse, supply chain risks, identity and access challenges, Shadow IT) and help the team figure out what they mean in Relay's context
Share what you find in a way that educates and drives action, building your voice in Relay's security culture
You have roughly 2–4 years of experience in security, or in an adjacent technical role (IT, infrastructure, software engineering, SOC) with meaningful security exposure
You have a solid grasp of security fundamentals: how systems get attacked, how they get defended, and why. You may have gone deep on one side and be eager to learn the other
You can script (Python, Bash, PowerShell, JavaScript, etc.) well enough to automate a task, pull apart data, or build a small tool, and you're comfortable getting better at it
You're comfortable working in cloud and developer environments (AWS, GCP, or Azure; GitHub, CI/CD) and can find your way around them
You're motivated by closing the loop. You don't just want to identify vulnerabilities, you want to see them fixed
You're curious, pragmatic, and collaborative; you ask questions early, you say when you're stuck, and exploring new threats gives you energy
You can explain a technical finding to someone who isn't in security without losing them
You thrive in fast paced environments and embrace change
You have hands-on experience with adversary simulation, detection engineering, penetration testing, incident response, or vulnerability management
You understand authentication and access protocols (SSO, OAuth, SAML, OpenID Connect) or have worked with zero trust principles
You have used tools across the security stack, from SIEM, IPS, WAF and EDR to vulnerability scanners and security automation platforms
You have experience with cloud IAM, networking, or containerized systems like Docker or Kubernetes
You have participated in purple, red, or blue team rituals
You have experience in fintech, SaaS, or scaling tech companies
You have public security contributions, CTF participation, a home lab, bug bounties, talks, research, or OSS tooling
Stage 1: A 45-minute Google Meet call with a member of the Talent team
Stage 2: A 45-minute experience deep dive interview with the Senior Engineering Manager and Senior Security Engineer
Stage 3: A 60-minute live technical assessment via Google Meet, or in person, with a panel of interviewers
Stage 4: A 45-minute in-person interview with a member of the Leadership team
The annual salary range for this role is $126,000 CAD to $154,000 CAD.
For candidates who demonstrate full readiness for the defined scope of the role, the typical starting salary is $140,000 CAD. Offers below this point reflect candidates we believe can grow into the full scope of the role with support and development. Offers above this point reflect impact that meaningfully exceeds the role’s defined expectations or an expanded scope from day one.
You push relentlessly for reinvention: You're always asking "how can this be better?" -- in your work, in your craft, in yourself. Comfort is a signal to push harder, not coast. You'd rather build something better than defend something familiar.
Standard company text repeated across NorthOne's postings is omitted here.