Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Staff Security Engineer - Application & Vendor Security image - Rise Careers
Job details

Staff Security Engineer - Application & Vendor Security

Join Our Mission: Help the Helpers with Jane


Let's kick things off with a quick intro. Jane is a team that's all about fostering growth, spreading delight, and serving our healthcare community. We're on the hunt for people ready to jump in and join us while we simplify the lives of healthcare practitioners and patients daily. And guess what? Jane is a remote-first company, meaning every role at Jane, including this one, is remote — giving you the freedom to work from any corner of Canada.


Your Role in Our Journey


Embark on a pivotal journey with Jane as our new Staff Security Engineer, leading our efforts in Application Security and Third-Party Integrations. With your deep expertise in application security and a strong understanding of technical integrations, you’ll play a critical role in assessing and mitigating the technical risks posed by our integration and marketplace partners . While the role intersects with governance, risk, and compliance (GRC), our primary focus is on leveraging your application security expertise to ensure secure integrations. We value emotional intelligence, collaboration, and a supportive culture, and we’re looking for someone who shares these values. If you’re passionate about application security and eager to make a significant impact on our platform’s security while working in an inclusive environment, we’d love to hear from you!


Learn More About Us


We're founder-led, which means we live our values while maintaining a clear vision for the future. Our product enables the likes of physiotherapists, mental health counsellors, chiropractors, and other allied health practitioners to run their practices in a digital-first way through features such as online booking, charting, scheduling, telehealth, secure payments and billing along with an evolving library of features. You can see more of them here.


There is often a high bar set, not just for the quality of work, but for the care we show for each other and our customers. And it’s our customers raising that bar, never standing still and continually improving which keeps us on our toes. It's not just about what you've done before or how quickly you work; it's about your curiosity and drive to solve the right problems and your agility in learning new ways of thinking.


No doubt, Jane's a special place to work. There is autonomy and flexibility to help integrate work into your life in a way that makes sense for you. Need to block out time to pick up the kids? Go for it. That's normal here. And yes, we have a Slack channel for parents, but we've also got channels dedicated to plants, furry friends, food, pride, wellness - you get the idea! While we love to connect virtually, the Jane team also connects in person throughout the year. That comes in the form of departmental get-togethers, company retreats, or possibly a conference or two across North America if you’re keen to learn more about our community of healthcare providers. We're on the search for folks who are ready to dive in and become part of our journey toward making healthcare professionals' lives easier every single day.


You can also learn more about Jane as a company and a product by checking out our Glassdoor reviews and our Capterra Reviews


But we’ll also keep it real — as much as we love our work, the mountain we're climbing is always getting taller. We're a growing company, and with that comes the challenge of navigating an environment with many moving parts, often without a clear-cut path laid out in front of us. This is where you come in. If you're the kind of person who gets a kick out of being resourceful and loves solving problems, you'll fit right in.


Our vision as we move towards 2025 is all about creating More Happier Helpers. That means not just growing in numbers, but growing a community of thriving healthcare professionals who provide top-notch care with Jane at the heart of their operations. If you're someone who's feeling stifled by bureaucracy, itching to shake things up, or just someone who wants to make a genuine impact in the world, consider if the Jane team is the place for you.


We believe in collaboration, humility, and keeping a growth mindset. We're looking for people who can embrace our way of working, which often means being flexible and open to change. So, if after reading this, you feel excited about the opportunity — all in the name of helping those who help others — reach out to us to learn more.


In short, if you're excited by our growth, ready to contribute to a challenging yet rewarding environment, and eager to be a disruptor alongside a team of talented individuals, we’d love to hear from you!


The Impact You Could Have
  • Develop and implement application security standards and best practices for integrating third-party solutions and hosting vendors in a marketplace, ensuring consistency and security across all integrations.
  • Lead the assessment of technical risks associated with integration partners and marketplace vendors, thoroughly understanding how their solutions interact with our platform.
  • Collaborate closely with development and engineering teams to provide expert guidance on secure integration practices, API security, and application design considerations
  • Alongside our GRC team, provide technical expertise to enhance overall risk management strategies related to third-party integrations.
  • Mentor and coach team members, enhancing the organization’s application security capabilities and fostering an inclusive environment that supports growth.


The Experience We Feel We Need
  • High emotional intelligence and exceptional communication skills, with the ability to navigate complex interpersonal dynamics, foster a positive team environment, and convey technical concepts in an accessible and empathetic manner.
  • The ability to build trust and collaborate effectively across diverse teams, including influencing without authority and empathizing with the perspectives of non-technical stakeholders.
  • 5-7 years of experience in application security, with demonstrated expertise in SaaS environments, cloud security principles, and vendor risk assessment methodologies.
  • You possess a deep understanding of security frameworks and regulatory compliance requirements, including NIST, SOC 2, ISO 27001, GDPR, CCPA, and HIPAA.
  • You have proven experience mentoring and developing team members, fostering a culture of security excellence and continuous growth.
  • You exhibit strong strategic thinking and problem-solving abilities, with a track record of delivering complex projects and aligning security initiatives with business strategy.
  • Educational background in Computer Science, Information Security, or a related field, or equivalent experience, with relevant certifications (e.g., CISSP, CSSLP, CRISC) considered a plus.


Compensation Expectations for the Role


Jane’s committed to paying our team members fairly, clearly, and above all, paying for growth. This role has a minimum annual salary of $154,400 and maximum annual salary of $241,300. As you may have noticed, this salary range is quite large, and this is intentional to account for the growth someone will experience in the role throughout their time at Jane (i.e., from building the skills, to accomplished, to highly proficient, all the way to achieving excellence in the role). When hiring talented folks to join the Jane team, we’ve found that new team members are best set up for success when hired with the expectation of being fully accomplished in the role, which for this role would reflect a starting salary of $183,400.


It's also possible to join Jane at a salary above or below this, which would mean a salary below $183,400 typically reflects someone who has all the potential to be fully accomplished in the role but doesn't yet possess all the skills required, while a salary above $183,400 is typically for individuals who are currently in this role at Jane and had the opportunity to make a significant positive impact on our customers, product and company with deep Jane knowledge. At Jane, we pay for growth, which means that you’ll continue to have conversations about your career development with your manager and see your compensation grow over time as you build an amazing career with us.


Paying clearly is one of our compensation fundamentals to help folks build trust in the compensation process at Jane. To better understand Jane’s compensation fundamentals and how this range is determined, click on this link here for a short video walkthrough of how it all works! We also welcome you to ask as many questions as you’d like about compensation throughout the interview process to ensure you feel confident and build trust through the process.


More information on our benefits can be found here!


At Jane, we’re committed to fostering an environment that allows you to come to work as your truest self. We believe it’s important to actively recognize, embrace, and celebrate our differences in order to make Jane an inclusive, equitable, and diverse workplace.


We want to build a team of people who make conversations rich with perspective and experience. We are committed to listening to every voice in order to learn and grow because doing this will allow us to meet the needs of the diverse community of helpers that Jane serves.


We do not tolerate discrimination, prejudice, or oppressive isms of any kind. Employment is decided on the basis of qualifications, merit, experience, and the needs of the Jane community. We encourage anyone who requires accommodation or adjustments throughout the interview process to let us know, and we will do our best to support you.

Jane App Glassdoor Company Review
4.3 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Jane App DE&I Review
3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
CEO of Jane App
Jane App CEO photo
Alison Taylor and Trevor Johnston
Approve of CEO

Average salary estimate

$197850 / YEARLY (est.)
min
max
$154400K
$241300K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Staff Security Engineer - Application & Vendor Security, Jane App

Join the Jane team as a Staff Security Engineer specializing in Application and Vendor Security! We’re on a mission to simplify the lives of healthcare practitioners and patients, and we want your expertise to help us achieve this goal. With Jane being a remote-first company, you can work from anywhere in Canada, giving you the flexibility to design your own work-life balance. In this pivotal role, you will assess and mitigate technical risks posed by our integration and marketplace partners. Your focus on application security will be key in collaborating with our development and engineering teams, providing guidance on secure integration practices and ensuring our platform’s security shines bright. We’re looking for someone who embodies emotional intelligence and values teamwork within a culture that supports growth. If you are driven by curiosity and the desire to problem-solve while making a significant impact, then this could be your perfect opportunity! At Jane, we prioritize the well-being of our team members, with a strong emphasis on collaboration, continuous improvement, and a supportive community. Your journey will also include the opportunity to mentor others, build trust across teams, and contribute to our vision of creating happier healthcare helpers. If you’re ready to roll up your sleeves and dive into the world of application security while making healthcare better for everyone, we’d love to hear from you soon!

Frequently Asked Questions (FAQs) for Staff Security Engineer - Application & Vendor Security Role at Jane App
What are the primary responsibilities of a Staff Security Engineer at Jane?

As a Staff Security Engineer at Jane, your primary responsibilities will include developing and implementing application security standards for third-party solutions, assessing technical risks with integration partners, collaborating closely with engineering teams on secure integration practices, and mentoring fellow team members to bolster overall security capabilities.

Join Rise to see the full answer
What qualifications are required for the Staff Security Engineer position at Jane?

Candidates for the Staff Security Engineer position at Jane should have 5-7 years of application security experience, expertise in SaaS environments, cloud security principles, and knowledge of regulatory compliance frameworks such as NIST, SOC 2, ISO 27001, and HIPAA. Strong communication skills and the ability to foster collaboration across diverse teams are essential.

Join Rise to see the full answer
Can you describe the work environment for the Staff Security Engineer role at Jane?

At Jane, the work environment is flexible and remote-first, allowing you to work from anywhere in Canada. We value emotional intelligence, collaboration, and creating a supportive culture. Our team members are encouraged to have discussions about work-life balance and share personal interests to foster a thriving community.

Join Rise to see the full answer
What is the compensation range for a Staff Security Engineer at Jane?

The compensation for the Staff Security Engineer role at Jane has a minimum annual salary of $154,400 and a maximum of $241,300, depending on experience and impact. We are committed to paying fairly and supporting your career growth, meaning your salary could increase as you develop your skills and contribute to our mission.

Join Rise to see the full answer
How does Jane support professional development for Staff Security Engineers?

Jane places a strong emphasis on professional development for our Staff Security Engineers. You will have opportunities to mentor others, participate in departmental get-togethers, company retreats, and engage in relevant conferences across North America to enhance your professional knowledge and network.

Join Rise to see the full answer
Common Interview Questions for Staff Security Engineer - Application & Vendor Security
What attracted you to the Staff Security Engineer position at Jane?

When answering why you are attracted to the Staff Security Engineer position at Jane, speak to the company's mission to support healthcare practitioners and your alignment with their values of collaboration and growth. Discuss your excitement about contributing to a meaningful cause and being part of a remote-first team.

Join Rise to see the full answer
How do you assess the security posture of third-party vendors?

To assess the security posture of third-party vendors, explain your process for evaluating their security practices, compliance with regulatory frameworks, and understanding of their risk management strategies. Mention the importance of engaging in open communication and building relationships with these vendors to ensure ongoing security.

Join Rise to see the full answer
Can you provide an example of a challenge you faced in application security and how you overcame it?

When discussing a challenge in application security, highlight a specific incident, detailing the context, your approach to identifying the root causes, and the security measures you implemented to mitigate the risks. Emphasize your strategic thinking and problem-solving skills in that situation.

Join Rise to see the full answer
What strategies do you use to communicate complex security concepts to non-technical stakeholders?

In answering this question, illustrate your approach to simplifying complex security concepts by using relatable analogies, clear visuals, and a focus on business implications. Highlight your strong communication skills and your ability to empathize with the needs and perspectives of non-technical stakeholders.

Join Rise to see the full answer
How do you prioritize security initiatives in a fast-paced development environment?

To address prioritizing security initiatives, discuss your method for aligning security goals with business objectives, assessing risks, and collaborating with development teams to create secure practices. Emphasize the importance of flexibility and staying proactive in identifying potential security challenges.

Join Rise to see the full answer
Describe your experience working with cross-functional teams to enhance application security.

When asked about your experience with cross-functional teams, describe specific projects where you collaborated with development, engineering, and operations teams. Illustrate how your contributions led to improved application security practices and successful outcomes for the organization.

Join Rise to see the full answer
What are some potential risks associated with integrating third-party solutions?

In discussing potential risks of integrating third-party solutions, identify common vulnerabilities such as data privacy issues, malware threats, and compliance gaps. Emphasize your ability to assess these risks and implement effective mitigation strategies to protect the organization.

Join Rise to see the full answer
How do you stay updated on the latest security trends and vulnerabilities?

In response, explain your approach to staying informed on security trends by attending industry conferences, participating in webinars, engaging in professional networks, and following relevant publications. Highlight your commitment to continuous learning and adapting to the ever-evolving security landscape.

Join Rise to see the full answer
How would you foster a culture of security awareness in a diverse team?

To answer this question, discuss initiatives you would implement to promote security awareness, such as training sessions, regular updates, and encouraging open communication. Emphasize the importance of diversifying your approach by tailoring educational resources to fit the different backgrounds and roles within the team.

Join Rise to see the full answer
What role does emotional intelligence play in security collaboration?

In your response, define emotional intelligence and discuss its importance in fostering collaboration, building trust, and navigating interpersonal relationships when working with different teams. Provide examples of how you’ve utilized emotional intelligence to improve communication and effectiveness in a security context.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 3 days ago
Customer-Centric
Startup Mindset
Collaboration over Competition
Family Medical Leave
Maternity Leave
Paternity Leave
Flex-Friendly
Social Gatherings
Pet Friendly
Fitness Stipend
Medical Insurance
Dental Insurance
Vision Insurance
Life insurance
Disability Insurance
Learning & Development
Bias Training
Equity
Employee Resource Groups
Unlimited Vacation
Paid Time-Off
Photo of the Rise User
Transparent & Candid
Collaboration over Competition
Inclusive & Diverse
Growth & Learning
Posted 2 days ago
Photo of the Rise User
Rapsodo Remote No location specified
Posted 10 days ago

Our mission is to “help the helpers” and our vision is to build a thriving allied health community. Visit jane.app to learn more.

12 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
December 13, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!