Staff Security Engineer, Application Security
Homebase Limited
Hi, Future Homie! At Homebase, you'll join a team that's bold, fast-moving, and obsessed with helping small businesses thrive. We build with empathy, act with urgency, and take big swings that drive real-world impact. Here, every Homie shows up to raise the bar, support one another, and celebrate wins as a team. We're not just building an app-we're building unstoppable teams. So what do you say, are you in? Your Impact Starts Here We're looking for a hands-on Staff Security Engineer to own and shape Homebase's Application Security domain. This is a technical leadership role at the E5 level -you'll define the multi-quarter strategy for how we secure our products, set architectural direction, and pioneer new capabilities that keep pace with our rapid growth. Homebase's product suite spans scheduling, payroll, time tracking, HR, team communication, and a growing ecosystem of AI-powered features. That breadth creates fascinating security challenges, from protecting sensitive workforce and financial data to securing the AI models and pipelines that are becoming central to our product experience. You'll be the recognized expert our engineering organization turns to for application security decisions. You'll work at the intersection of security, product, and engineering, partnering with engineering leaders to embed security into architecture from the ground up, while building the platforms and tooling that let developers ship safely at speed. These are the key ways you'll contribute and create impact in this role: Security Strategy & Architecture
Homebase will consider qualified applicants with criminal histories in a manner consistent with the San Francisco Fair Chance Ordinance. Hey, We're Homebase Homebase is the everything app for hourly teams-built to simplify the day-to-day and superpower local businesses. With tools for scheduling, time clocks, payroll, communication, HR, and more, we help teams stay connected and in control. Today, over 150,000 small (but mighty) businesses rely on us to make work radically easier. Together, we've tracked over a billion hours for 2M+ workers-and we're just getting started. At Homebase, we celebrate diversity and are proud to be an equal opportunity employer. We welcome all candidates and do not discriminate based on any legally protected status. If you need accommodations during the hiring process, please let us know-we're committed to ensuring fair and equitable access for all.
- Define and execute Homebase's multi-quarter Application Security roadmap, aligning security initiatives with business objectives and company OKRs.
- Architect secure-by-default patterns, frameworks, and paved roads that developers adopt naturally, removing entire classes of vulnerabilities before they reach production.
- Evaluate emerging security technologies and make build-versus-buy decisions that shape the security platform.
- Drive security and product trade-off decisions at the architectural level, balancing protection with velocity.
- Influence company-wide engineering practices and security investments through data-driven recommendations.
- Lead threat modeling and security architecture reviews for AI-powered features, model training pipelines, and LLM integrations.
- Design and implement security controls specific to AI/ML systems, including prompt injection defenses, model input validation, output filtering, and data pipeline integrity.
- Create AI-powered vulnerability detection and security automation that multiplies the team's effectiveness.
- Partner with AI engineering teams to establish secure development patterns for model deployment and inference infrastructure.
- Stay ahead of the evolving AI threat landscape and translate emerging risks into practical engineering guidance.
- Build and maintain security tooling and automation that integrates seamlessly into CI/CD pipelines, enabling continuous security validation at scale.
- Own the vulnerability management program: design modern systems for detection, prioritization, tracking, and remediation of security debt across the product portfolio.
- Own the bug bounty and responsible disclosure program, turning external researcher findings into systemic improvements.
- Embed security into the full software development lifecycle through scalable guardrails, automated testing frameworks, and developer-facing documentation.
- Partner with senior leaders across Engineering, Product, and Infrastructure to improve Homebase's overall security posture.
- Pioneer a security partnership program, mentoring engineers across the organization, and driving a culture of shared security ownership.
- Provide expert guidance during security incidents and lead post-incident analysis to drive systemic improvements.
- Curate and author security guidance, patterns, and training content that raises the security bar organization-wide.
- Influence security decisions at the department and company level; shape how Homebase invests in security capabilities.
- 10+ years of progressive experience in Application Security or Security Engineering, with demonstrated impact at the Staff or Principal level.
- Deep software engineering experience in production environments, you write code, build tools, and think like an engineer first.
- A proven track record of leading architectural changes and complex cross-team initiatives that reduced security risk at scale.
- Hands-on experience securing AI-native applications, including LLM integrations, model pipelines, or ML infrastructure.
- Strong expertise in web application security, cloud-native security (AWS), and modern DevSecOps practices.
- Proficiency in languages and frameworks relevant to our stack: Ruby, Python, React, and Rails.
- Experience designing and implementing modern vulnerability management systems and embedding security tooling within CI/CD pipelines.
- Exceptional ability to evaluate security trade-offs, make pragmatic risk-informed decisions, and communicate them clearly to technical and non-technical stakeholders.
- Demonstrated curiosity about emerging AI capabilities, with a track record of leveraging new tools to enhance security operations and productivity.
- Experience defining application security strategy and maturity roadmaps for a high-growth, product-driven company.
- A background in building AI-powered security tools or detection systems.
- Speaking experience at security conferences, meetups, or community events.
- Experience with threat modeling frameworks adapted for AI/ML systems.
- Be Customer Obsessed - Solve problems with empathy and creativity.
- Move Fast, Learn Fast - Experiment, take action, and grow every day.
- Own Your Impact - Think big, focus on what matters, and make decisions you stand behind.
- Master Your Craft - Excellence fuels impact-show up, step up, and make your mark.
- Win Together - Put goals over roles, lead with trust, and connect to our mission and each other.
- Ownership & Savings: Stock options + TFSA/RRSP with 4% company match
- Health & Wellness: Comprehensive medical, dental, and vision for you and your dependents
- Time Flexibility: Flex time off + company holidays + designated focus periods
- AI Access, For Real: We invest in builders and believe that curiosity shouldn't have a paywall. That means you'll have access to paid AI tools with minimal restrictions, so you can build, experiment, and level up your craft.
- Family Support: Maternity/Parental Leave EI top-up support offered (after 6 months of service)
- Work Your Way: Work From Anywhere Month + meeting-free weeks yearly
- Protection Plans: Life insurance + short/long-term disability coverage
- Workspace Perks: Meals provided, team offsites, and Customer Days
- Our Hybrid Rhythm: We believe collaboration drives impact. For employees located near one of our office hubs, Tuesday and Wednesday are our in-office collaboration days - a time to move faster as a team, build deeper connections, make better decisions, and build together.
- Meet the Talent Acquisition team, Ryan H.
- Meet the Hiring Manager, Ali F.
- Participate in Technical Interviews
- Meet the VP of Engineering, Andrea C.
- Background Check + Offer Stage
- Welcome to the team, Homie
Homebase will consider qualified applicants with criminal histories in a manner consistent with the San Francisco Fair Chance Ordinance. Hey, We're Homebase Homebase is the everything app for hourly teams-built to simplify the day-to-day and superpower local businesses. With tools for scheduling, time clocks, payroll, communication, HR, and more, we help teams stay connected and in control. Today, over 150,000 small (but mighty) businesses rely on us to make work radically easier. Together, we've tracked over a billion hours for 2M+ workers-and we're just getting started. At Homebase, we celebrate diversity and are proud to be an equal opportunity employer. We welcome all candidates and do not discriminate based on any legally protected status. If you need accommodations during the hiring process, please let us know-we're committed to ensuring fair and equitable access for all.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Staff Security Engineer, Application Security in Denver, CO vacancy
$104k - $156k
...Type Remote/Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build, and... ...qualifications: ~ Experience securing cloud-native applications / SaaS solutions and networks. ~ Familiarity with...ApplicationRemote work$218.03k - $256.5k
...IAM) program, housed within Security, is a cross-functional team... ...IAM program, partnering with Engineering, IT, Platform, and business... ...ecosystem, and internally developed applications. Evaluate, design, and... ...architecture, with a deep, Staff-level focus on Identity and...ApplicationFor contractorsLocal area$218.03k - $256.5k
...supported. Coinbase Infrastructure Security (InfraSec) is at the forefront of protecting... .... This role partners closely with engineering teams to design, implement, and automate... ...candidate may submit a maximum of four applications within any 30-day period. We encourage...ApplicationLocal area$130k - $180k
...Senior Software Engineer - Security Engineering Arvada, Colorado Loft Federal is committed to delivering the U.S. national security... ...directly into our CI/CD pipelines, including Static/Dynamic Application Security Testing (SAST/DAST), Software Composition Analysis...ApplicationImmediate start$175.2k - $262.8k
...how we empower creators to own their own destiny. As a Lead Security Engineer on the Enterprise Security team, you’ll play a central role... ...platforms that Klaviyo runs on — spanning critical SaaS applications, identity and access, endpoints, Zero Trust network architecture...Application- ...Cloud Security Engineer (DevOps) Vantor is forging the new frontier of spatial intelligence, helping decision makers and operators navigate... ...requires an active U.S. Government security clearance, applicants who do not currently hold the required clearance will not be...Application
$97.6k - $138.6k
...could be just what you're looking for. Role Summary The Security Engineer - Cloud Security (AWS) is responsible for building and... ...implement meaningful security improvements. Partner with Application Security teams to support DevSecOps practices, including CI/...ApplicationTemporary workFor contractorsWork at office3 days per week- Cloud Security Engineer (DevOps) Location: Westminster or Longmont, CO Responsibilities Design, implement, and maintain multiple security applications/services in a cloud‑based environment using CI/CD practices. Troubleshoot and resolve network, automated pipeline, and...Application
$222k - $278k
A code security company is looking for a Senior Security Engineer to enhance product security. This role involves collaborating with engineering teams to ensure secure application development and infrastructure management. Ideal candidates will have 7+ years of experience...ApplicationWork at office$71.2k - $158.2k
...Job Description The Senior Federal Information Systems Security Engineer (ISSE) serves as a technical integrator responsible for ensuring... ...or client-facing roles may be required to comply with applicable requirements, such as immunization/occupational health mandates...ApplicationContract workTemporary workWork experience placementRelocationFlexible hours$99k - $232k
...Privacy Industry/Sector: Not Applicable Time Type: Full time... ...identify vulnerabilities, develop secure systems, and provide... ...planning and mentoring junior staff. You are accountable for project... ...network security, cybersecurity engineering, or security consulting,...ApplicationFull timeH1b$160k - $220k
...ambition to build the technology that secures it. OUR MISSION True Anomaly... ...role exists to change that. As our Staff Kubernetes Security Engineer, you'll build zero-trust foundations... ...opportunity on any basis protected by applicable state and federal laws. If you have...Permanent employment$124k - $280k
...Cybersecurity & Privacy Industry/Sector: Not Applicable Time Type: Full time Travel... ...to identify vulnerabilities, develop secure systems, and provide proactive solutions... ...Bachelor's/Master's Degree in Computer Engineering, Computer Applications, Computer Programming...ApplicationFull timeH1b$155k - $410k
...Cybersecurity & Privacy Industry/Sector: Not Applicable Time Type: Full time Travel... ...to identify vulnerabilities, develop secure systems, and provide proactive solutions... ...Preferred Fields of Study Computer Engineering,Computer Applications,Computer Programming...ApplicationFull timeTemporary workH1b$60 - $80 per hour
...Network Security Engineer We are hiring a hands-on Network Security Engineer to support and strengthen enterprise security infrastructure... ...tuning Implement NAT policies, access controls, and application-layer inspection Support firewall upgrades and change management...ApplicationHourly payRemote work- ...where possible. The Role We are looking for an Enterprise Security Engineer to help build and operate Compa’s security-first enterprise... ...security sources of truth, including users, devices, and applications. Collaborate with the Security team on shared security operations...Application
- Network Engineer job at Outdoor Sportsman Group. Denver, CO. NOTICE... ...Systems APPLICATIONDEADLINE: The application deadline for this position... ..., and information security. This position will be in the... ...as necessary Participates in staff meetings Assists with operations...ApplicationRemote jobWork at officeFlexible hours
$73.92k
...qualifications: Control Systems Engineering Technician ( $73,923.20 - $1... ...Control Systems Engineer. Staff Control Systems Engineer ( $... ...Ensure the reliability, security, and performance of critical... ...and visualization software applications Process control graphical design...ApplicationFull timeFor contractorsWork at office$222k - $278k
...Senior Security Engineer As a Senior Security Engineer, you will help lead our product-focused security efforts. You will embed with... ...functional teams Experienced with securing modern cloud-based applications, with hands on building secure solutions with AWS or GCP...ApplicationLocal areaRemote work3 days per week$131k - $169k
...Senior Security Engineer Seeking a development & cloud focused Senior Security Engineer to join our expanding security team. The ideal... ...~ Conducting risk and vulnerability assessments of web applications and APIs and third party suppliers and integrations ~ Configuring...ApplicationWork at officeWork from homeFlexible hoursDay shift$127k - $155k
...Enforces application security in all phases of the software development life cycle. Works closely with team members to define application... ...Qualifications ~ Bachelor's Degree in Computer Science, Engineering, or other Engineering or Technical discipline or equivalent...ApplicationContract workWork at office$96.25k - $137.5k
...development, technology innovation or solution engineering, our team members play a vital role in... ...networking, the position ensures that security and connectivity remain seamless and... ...alignment AI Literacy and Application skills to utilize machine learning recommendations...ApplicationLocal areaFlexible hours- ...work on the Infrastructure Engineering team to develop our world-class... ..., and maintain information security throughout the virtualized... ...signals of at-risk features and applications about our platform product.... ...With This position is for a Staff Virtualization Engineer for...ApplicationPermanent employmentWork experience placementFlexible hours
$164.11k
Job Duties and Responsibilities Staff Engineer, Information Technology sought by DISH Wireless... .... Design and implement advanced security architectures and solutions across various... ...including network security, cloud security, application security, identity and access...Application$160k - $225k
...and ambition to build the technology that secures it. OUR MISSION True Anomaly delivers... ...As a Senior Enterprise Security Engineer, Linux, you will be joining a team focused... ...NIST 800-53/800-171 frameworks and their application to Linux systems. Experience with privileged...ApplicationPermanent employment$155.2k - $232.8k
...Europe and expanding our team of engineers, scientists, and innovators.... ...define the next century. Staff RF Engineer Lyten seeks an experienced... ...the future development and application of electromagnetic devices... ...or productionenvironment. Security Clearance Statement:This position...ApplicationInterim roleLocal areaRelocation- Security Engineer, Vulnerability & Attack Surface Management You will operate across the full vulnerability lifecycle. Act as the technical... ...at driving remediation velocity across IT, cloud, and application teams using data to influence prioritization. Equal Opportunity...Application
$115k - $180k
...and ambition to build the technology that secures it. OUR MISSION True Anomaly delivers... .... YOUR MISSION As a Mission Security Engineer, you will be a critical technical expert... ...firmware, embedded systems, cloud-native applications, and operational technology Ensure...ApplicationPermanent employment$115k - $130k
...Ibotta is seeking a Security Engineer with a deep expertise in Application Security, Vulnerability Management, and Cloud Infrastructure to join our innovative team and contribute to our mission to Make Every Purchase Rewarding. In this role, you will be ensuring the...ApplicationFull timeLive inWork at officeRelocation packageFlexible hours$40k
...mission‑critical programs across national security, defense, and public service delivery.... ...national scale. The Junior Security Engineer supports 24x7 enterprise cybersecurity operations... ...activities, including access changes, application removal, configuration updates, and...ApplicationContract workRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Staff Security Engineer, Application Security. Be the first to apply!
Related searches
- software engineer staff Denver, CO
- assistant engineer Denver, CO
- project engineer assistant project manager Denver, CO
- technology administrator Denver, CO
- senior staff systems engineer Denver, CO
- staff engineer Denver, CO
- senior staff engineer Denver, CO
- engineering aide Denver, CO
- security infrastructure engineer Denver, CO
- senior cloud security engineer Denver, CO


