Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Staff Security Engineer, Application Security

Homebase Limited

Hi, Future Homie!

At Homebase, you'll join a team that's bold, fast-moving, and obsessed with helping small businesses thrive. We build with empathy, act with urgency, and take big swings that drive real-world impact. Here, every Homie shows up to raise the bar, support one another, and celebrate wins as a team.

We're not just building an app-we're building unstoppable teams. So what do you say, are you in?

Your Impact Starts Here

We're looking for a hands-on Staff Security Engineer to own and shape Homebase's Application Security domain. This is a technical leadership role at the E5 level -you'll define the multi-quarter strategy for how we secure our products, set architectural direction, and pioneer new capabilities that keep pace with our rapid growth.

Homebase's product suite spans scheduling, payroll, time tracking, HR, team communication, and a growing ecosystem of AI-powered features. That breadth creates fascinating security challenges, from protecting sensitive workforce and financial data to securing the AI models and pipelines that are becoming central to our product experience.

You'll be the recognized expert our engineering organization turns to for application security decisions. You'll work at the intersection of security, product, and engineering, partnering with engineering leaders to embed security into architecture from the ground up, while building the platforms and tooling that let developers ship safely at speed.

These are the key ways you'll contribute and create impact in this role:

Security Strategy & Architecture
  • Define and execute Homebase's multi-quarter Application Security roadmap, aligning security initiatives with business objectives and company OKRs.
  • Architect secure-by-default patterns, frameworks, and paved roads that developers adopt naturally, removing entire classes of vulnerabilities before they reach production.
  • Evaluate emerging security technologies and make build-versus-buy decisions that shape the security platform.
  • Drive security and product trade-off decisions at the architectural level, balancing protection with velocity.
  • Influence company-wide engineering practices and security investments through data-driven recommendations.
AI Security
  • Lead threat modeling and security architecture reviews for AI-powered features, model training pipelines, and LLM integrations.
  • Design and implement security controls specific to AI/ML systems, including prompt injection defenses, model input validation, output filtering, and data pipeline integrity.
  • Create AI-powered vulnerability detection and security automation that multiplies the team's effectiveness.
  • Partner with AI engineering teams to establish secure development patterns for model deployment and inference infrastructure.
  • Stay ahead of the evolving AI threat landscape and translate emerging risks into practical engineering guidance.
Secure Development & Tooling
  • Build and maintain security tooling and automation that integrates seamlessly into CI/CD pipelines, enabling continuous security validation at scale.
  • Own the vulnerability management program: design modern systems for detection, prioritization, tracking, and remediation of security debt across the product portfolio.
  • Own the bug bounty and responsible disclosure program, turning external researcher findings into systemic improvements.
  • Embed security into the full software development lifecycle through scalable guardrails, automated testing frameworks, and developer-facing documentation.
Cross-Functional Impact & Culture
  • Partner with senior leaders across Engineering, Product, and Infrastructure to improve Homebase's overall security posture.
  • Pioneer a security partnership program, mentoring engineers across the organization, and driving a culture of shared security ownership.
  • Provide expert guidance during security incidents and lead post-incident analysis to drive systemic improvements.
  • Curate and author security guidance, patterns, and training content that raises the security bar organization-wide.
  • Influence security decisions at the department and company level; shape how Homebase invests in security capabilities.
The Foundation for Success - These are the experiences and strengths that will set you up for success in this role:
  • 10+ years of progressive experience in Application Security or Security Engineering, with demonstrated impact at the Staff or Principal level.
  • Deep software engineering experience in production environments, you write code, build tools, and think like an engineer first.
  • A proven track record of leading architectural changes and complex cross-team initiatives that reduced security risk at scale.
  • Hands-on experience securing AI-native applications, including LLM integrations, model pipelines, or ML infrastructure.
  • Strong expertise in web application security, cloud-native security (AWS), and modern DevSecOps practices.
  • Proficiency in languages and frameworks relevant to our stack: Ruby, Python, React, and Rails.
  • Experience designing and implementing modern vulnerability management systems and embedding security tooling within CI/CD pipelines.
  • Exceptional ability to evaluate security trade-offs, make pragmatic risk-informed decisions, and communicate them clearly to technical and non-technical stakeholders.
  • Demonstrated curiosity about emerging AI capabilities, with a track record of leveraging new tools to enhance security operations and productivity.
Bonus point if you bring:
  • Experience defining application security strategy and maturity roadmaps for a high-growth, product-driven company.
  • A background in building AI-powered security tools or detection systems.
  • Speaking experience at security conferences, meetups, or community events.
  • Experience with threat modeling frameworks adapted for AI/ML systems.
The Homie Way - These principles guide everything we do-from how we work and make decisions to how we show up for each other.
  • Be Customer Obsessed - Solve problems with empathy and creativity.
  • Move Fast, Learn Fast - Experiment, take action, and grow every day.
  • Own Your Impact - Think big, focus on what matters, and make decisions you stand behind.
  • Master Your Craft - Excellence fuels impact-show up, step up, and make your mark.
  • Win Together - Put goals over roles, lead with trust, and connect to our mission and each other.
What We Offer
  • Ownership & Savings: Stock options + TFSA/RRSP with 4% company match
  • Health & Wellness: Comprehensive medical, dental, and vision for you and your dependents
  • Time Flexibility: Flex time off + company holidays + designated focus periods
  • AI Access, For Real: We invest in builders and believe that curiosity shouldn't have a paywall. That means you'll have access to paid AI tools with minimal restrictions, so you can build, experiment, and level up your craft.
  • Family Support: Maternity/Parental Leave EI top-up support offered (after 6 months of service)
  • Work Your Way: Work From Anywhere Month + meeting-free weeks yearly
  • Protection Plans: Life insurance + short/long-term disability coverage
  • Workspace Perks: Meals provided, team offsites, and Customer Days
  • Our Hybrid Rhythm: We believe collaboration drives impact. For employees located near one of our office hubs, Tuesday and Wednesday are our in-office collaboration days - a time to move faster as a team, build deeper connections, make better decisions, and build together.
What to Expect During the Interview Process
  • Meet the Talent Acquisition team, Ryan H.
  • Meet the Hiring Manager, Ali F.
  • Participate in Technical Interviews
  • Meet the VP of Engineering, Andrea C.
  • Background Check + Offer Stage
  • Welcome to the team, Homie

Belonging at Homebase - We're committed to fostering a welcoming space where every Homie can be their full self. Experience comes in many forms-so if you're excited about this role, even if you don't meet 100% of the qualifications, we encourage you to apply!


Homebase will consider qualified applicants with criminal histories in a manner consistent with the San Francisco Fair Chance Ordinance.

Hey, We're Homebase

Homebase is the everything app for hourly teams-built to simplify the day-to-day and superpower local businesses. With tools for scheduling, time clocks, payroll, communication, HR, and more, we help teams stay connected and in control. Today, over 150,000 small (but mighty) businesses rely on us to make work radically easier. Together, we've tracked over a billion hours for 2M+ workers-and we're just getting started.

At Homebase, we celebrate diversity and are proud to be an equal opportunity employer. We welcome all candidates and do not discriminate based on any legally protected status. If you need accommodations during the hiring process, please let us know-we're committed to ensuring fair and equitable access for all.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Staff Security Engineer, Application Security in Denver, CO vacancy
  • $104k - $156k

     ...Type Remote/Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build, and...  ...qualifications: ~ Experience securing cloud-native applications / SaaS solutions and networks. ~ Familiarity with... 
    Application
    Remote work

    Relativity

    Denver, CO
    3 days ago
  • $218.03k - $256.5k

     ...IAM) program, housed within Security, is a cross-functional team...  ...IAM program, partnering with Engineering, IT, Platform, and business...  ...ecosystem, and internally developed applications. Evaluate, design, and...  ...architecture, with a deep, Staff-level focus on Identity and... 
    Application
    For contractors
    Local area

    Coinbase

    Denver, CO
    3 days ago
  • $218.03k - $256.5k

     ...supported. Coinbase Infrastructure Security (InfraSec) is at the forefront of protecting...  .... This role partners closely with engineering teams to design, implement, and automate...  ...candidate may submit a maximum of four applications within any 30-day period. We encourage... 
    Application
    Local area

    Coinbase

    Denver, CO
    4 days ago
  • $130k - $180k

     ...Senior Software Engineer - Security Engineering Arvada, Colorado Loft Federal is committed to delivering the U.S. national security...  ...directly into our CI/CD pipelines, including Static/Dynamic Application Security Testing (SAST/DAST), Software Composition Analysis... 
    Application
    Immediate start

    Loft Orbital Federal

    Arvada, CO
    17 hours ago
  • $175.2k - $262.8k

     ...how we empower creators to own their own destiny. As a Lead Security Engineer on the Enterprise Security team, you’ll play a central role...  ...platforms that Klaviyo runs on — spanning critical SaaS applications, identity and access, endpoints, Zero Trust network architecture... 
    Application

    Klaviyo

    Denver, CO
    4 days ago
  •  ...Cloud Security Engineer (DevOps) Vantor is forging the new frontier of spatial intelligence, helping decision makers and operators navigate...  ...requires an active U.S. Government security clearance, applicants who do not currently hold the required clearance will not be... 
    Application

    Maxar by Vantor

    Westminster, CO
    2 days ago
  • $97.6k - $138.6k

     ...could be just what you're looking for. Role Summary The Security Engineer - Cloud Security (AWS) is responsible for building and...  ...implement meaningful security improvements. Partner with Application Security teams to support DevSecOps practices, including CI/... 
    Application
    Temporary work
    For contractors
    Work at office
    3 days per week

    Xcel Energy

    Denver, CO
    10 hours ago
  • Cloud Security Engineer (DevOps) Location: Westminster or Longmont, CO Responsibilities Design, implement, and maintain multiple security applications/services in a cloud‑based environment using CI/CD practices. Troubleshoot and resolve network, automated pipeline, and... 
    Application

    MAXAR TECHNOLOGIES, INC.

    Westminster, CO
    17 hours ago
  • $222k - $278k

    A code security company is looking for a Senior Security Engineer to enhance product security. This role involves collaborating with engineering teams to ensure secure application development and infrastructure management. Ideal candidates will have 7+ years of experience... 
    Application
    Work at office

    Semgrep

    Denver, CO
    1 day ago
  • $71.2k - $158.2k

     ...Job Description The Senior Federal Information Systems Security Engineer (ISSE) serves as a technical integrator responsible for ensuring...  ...or client-facing roles may be required to comply with applicable requirements, such as immunization/occupational health mandates... 
    Application
    Contract work
    Temporary work
    Work experience placement
    Relocation
    Flexible hours

    Oracle

    Denver, CO
    5 days ago
  • $99k - $232k

     ...Privacy Industry/Sector: Not Applicable Time Type: Full time...  ...identify vulnerabilities, develop secure systems, and provide...  ...planning and mentoring junior staff. You are accountable for project...  ...network security, cybersecurity engineering, or security consulting,... 
    Application
    Full time
    H1b

    PwC

    Denver, CO
    22 days ago
  • $160k - $220k

     ...ambition to build the technology that secures it. OUR MISSION True Anomaly...  ...role exists to change that. As our Staff Kubernetes Security Engineer, you'll build zero-trust foundations...  ...opportunity on any basis protected by applicable state and federal laws. If you have... 
    Permanent employment

    True Anomaly

    Denver, CO
    17 hours ago
  • $124k - $280k

     ...Cybersecurity & Privacy Industry/Sector: Not Applicable Time Type: Full time Travel...  ...to identify vulnerabilities, develop secure systems, and provide proactive solutions...  ...Bachelor's/Master's Degree in Computer Engineering, Computer Applications, Computer Programming... 
    Application
    Full time
    H1b

    PwC

    Denver, CO
    5 days ago
  • $155k - $410k

     ...Cybersecurity & Privacy Industry/Sector: Not Applicable Time Type: Full time Travel...  ...to identify vulnerabilities, develop secure systems, and provide proactive solutions...  ...Preferred Fields of Study Computer Engineering,Computer Applications,Computer Programming... 
    Application
    Full time
    Temporary work
    H1b

    PwC

    Denver, CO
    1 day ago
  • $60 - $80 per hour

     ...Network Security Engineer We are hiring a hands-on Network Security Engineer to support and strengthen enterprise security infrastructure...  ...tuning Implement NAT policies, access controls, and application-layer inspection Support firewall upgrades and change management... 
    Application
    Hourly pay
    Remote work

    SelectMinds

    Littleton, CO
    1 day ago
  •  ...where possible. The Role We are looking for an Enterprise Security Engineer to help build and operate Compa’s security-first enterprise...  ...security sources of truth, including users, devices, and applications. Collaborate with the Security team on shared security operations... 
    Application

    Compa

    Denver, CO
    1 day ago
  • Network Engineer job at Outdoor Sportsman Group. Denver, CO. NOTICE...  ...Systems APPLICATIONDEADLINE: The application deadline for this position...  ..., and information security. This position will be in the...  ...as necessary Participates in staff meetings Assists with operations... 
    Application
    Remote job
    Work at office
    Flexible hours

    Itlearn360

    Denver, CO
    1 day ago
  • $73.92k

     ...qualifications: Control Systems Engineering Technician ( $73,923.20 - $1...  ...Control Systems Engineer. Staff Control Systems Engineer ( $...  ...Ensure the reliability, security, and performance of critical...  ...and visualization software applications Process control graphical design... 
    Application
    Full time
    For contractors
    Work at office

    Metro Water Recovery

    Denver, CO
    3 days ago
  • $222k - $278k

     ...Senior Security Engineer As a Senior Security Engineer, you will help lead our product-focused security efforts. You will embed with...  ...functional teams Experienced with securing modern cloud-based applications, with hands on building secure solutions with AWS or GCP... 
    Application
    Local area
    Remote work
    3 days per week

    Semgrep, Inc

    Denver, CO
    17 hours ago
  • $131k - $169k

     ...Senior Security Engineer Seeking a development & cloud focused Senior Security Engineer to join our expanding security team. The ideal...  ...~ Conducting risk and vulnerability assessments of web applications and APIs and third party suppliers and integrations ~ Configuring... 
    Application
    Work at office
    Work from home
    Flexible hours
    Day shift

    Karbon

    Denver, CO
    4 days ago
  • $127k - $155k

     ...Enforces application security in all phases of the software development life cycle. Works closely with team members to define application...  ...Qualifications ~ Bachelor's Degree in Computer Science, Engineering, or other Engineering or Technical discipline or equivalent... 
    Application
    Contract work
    Work at office

    ASM Research, An Accenture Federal Services Company

    Denver, CO
    7 days ago
  • $96.25k - $137.5k

     ...development, technology innovation or solution engineering, our team members play a vital role in...  ...networking, the position ensures that security and connectivity remain seamless and...  ...alignment AI Literacy and Application skills to utilize machine learning recommendations... 
    Application
    Local area
    Flexible hours

    EchoStar

    Centennial, CO
    17 hours ago
  •  ...work on the Infrastructure Engineering team to develop our world-class...  ..., and maintain information security throughout the virtualized...  ...signals of at-risk features and applications about our platform product....  ...With This position is for a Staff Virtualization Engineer for... 
    Application
    Permanent employment
    Work experience placement
    Flexible hours

    Teradata Corporation (SE)

    Denver, CO
    1 day ago
  • $164.11k

    Job Duties and Responsibilities Staff Engineer, Information Technology sought by DISH Wireless...  .... Design and implement advanced security architectures and solutions across various...  ...including network security, cloud security, application security, identity and access... 
    Application

    EchoStar

    Littleton, CO
    1 day ago
  • $160k - $225k

     ...and ambition to build the technology that secures it. OUR MISSION True Anomaly delivers...  ...As a Senior Enterprise Security Engineer, Linux, you will be joining a team focused...  ...NIST 800-53/800-171 frameworks and their application to Linux systems. Experience with privileged... 
    Application
    Permanent employment

    True Anomaly

    Denver, CO
    2 days ago
  • $155.2k - $232.8k

     ...Europe and expanding our team of engineers, scientists, and innovators....  ...define the next century. Staff RF Engineer Lyten seeks an experienced...  ...the future development and application of electromagnetic devices...  ...or productionenvironment. Security Clearance Statement:This position... 
    Application
    Interim role
    Local area
    Relocation

    Dormont Manufacturing Co

    Denver, CO
    1 day ago
  • Security Engineer, Vulnerability & Attack Surface Management You will operate across the full vulnerability lifecycle. Act as the technical...  ...at driving remediation velocity across IT, cloud, and application teams using data to influence prioritization. Equal Opportunity... 
    Application

    AspenView Technology Partners

    Denver, CO
    2 days ago
  • $115k - $180k

     ...and ambition to build the technology that secures it. OUR MISSION True Anomaly delivers...  .... YOUR MISSION As a Mission Security Engineer, you will be a critical technical expert...  ...firmware, embedded systems, cloud-native applications, and operational technology Ensure... 
    Application
    Permanent employment

    True Anomaly

    Denver, CO
    4 days ago
  • $115k - $130k

     ...Ibotta is seeking a Security Engineer with a deep expertise in Application Security, Vulnerability Management, and Cloud Infrastructure to join our innovative team and contribute to our mission to Make Every Purchase Rewarding. In this role, you will be ensuring the... 
    Application
    Full time
    Live in
    Work at office
    Relocation package
    Flexible hours

    Ibotta

    Denver, CO
    17 hours ago
  • $40k

     ...mission‑critical programs across national security, defense, and public service delivery....  ...national scale. The Junior Security Engineer supports 24x7 enterprise cybersecurity operations...  ...activities, including access changes, application removal, configuration updates, and... 
    Application
    Contract work
    Remote work

    MAXIMUS

    Denver, CO
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Staff Security Engineer, Application Security. Be the first to apply!