Senior Application Security Engineer

Auckland, Auckland, New Zealand

Applications have closed

Lightspeed Commerce

Lightspeed is the fast, intuitive POS and payments platform helping the world’s best retail, hospitality and golf businesses get even better.

View company page

Hi there! Thanks for stopping by 👋

Are you actively looking for a new opportunity? Or just checking the market? Well
 you might just be in the right place!

We are looking for a Senior Application Security Engineer to join our team in Newmarket. Within the Security team, you will improve the robustness of our security engineering practices, tools and product while building a healthy security culture across Lightspeed.

What you'll be doing:

  • Be a subject matter expert to engineers empowering them to prevent weaknesses before they are shipped to our customers
  • Correctly balance security risk and product advancement
  • Write code to develop small security tools and libraries, to help integrate security early into the software development lifecycle
  • Perform code reviews and penetration testing on our internal and external applications
  • Help manage vulnerability reports from external security researchers through our HackerOne bug bounty program
  • Perform reactive incident response when a security event occurs
  • Threat model existing applications

What you need to bring:

  • Technical knowledge of security engineering, identity and access management, applied cryptography, and security protocols
  • Knowledge of, and hands-on experience with application threat modelling, web application vulnerabilities and secure code reviews
  • Previous software engineering experience in a production environment
  • You can read, write, test and break code in one or more languages, ideally a mix of scripting languages and compiled languages, e.g. Python and Go
  • Acting responsibly with sensitive and confidential information, and appreciate that some black-hat hackers work at unsociable hours

We know that people are more than what’s on their CV. If you’re unsure that you have the right profile for the role... hit the ‘Apply’ button and give it a try!

What’s in it for you?

Come live the Lightspeed experience...

  • Ability to do your job in a truly flexible environment;
  • Genuine career opportunities in a company that’s creating new jobs everyday;
  • Work in a team big enough for growth but lean enough to make a real impact.


 and enjoy a range of benefits that’ll keep you happy, healthy and (not) hungry:

  • Lightspeed share scheme (we are all owners)
  • Unlimited paid time off policy
  • Work remotely from anywhere in the world for up to 60 days per year
  • Flexible working policy
  • Health and wellness benefit of $500 per year
  • Mental health online platform and counselling & coaching services
  • Paid leave and assistance for new parents
  • LinkedIn Learning license
  • Volunteer day
  • Secure, full-time carpark 
  • Dog-friendly environment 
  • Free fresh fruits, snacks and drinks (and cake for your birthday!) 
  • Awesome office space located in Newmarket (Auckland) 

To all recruitment agencies: Lightspeed does not accept unsolicited agency resumes. If we have not directly engaged your company in writing to supply candidates for a specific vacancy, Lightspeed will not be responsible for any fees related to unsolicited resumes.

Where to from here?
Obviously, this has to be mutually beneficial: we want you to step into a role you love, and we want to offer you a place you’re proud to come to every day. For a glimpse into our world check out our career page here.

Lightspeed is building communities through commerce, and we need people from all backgrounds and lived experiences to do that. We were founded in 2005, in Montreal’s gay village and our original members were all part of the LGBTQ+ community. The ethos of our business has been about inclusion from the very beginning, and we strive to provide a workplace where everyone belongs.

Who we are:
Lightspeed (TSX/NYSE: LSPD) powers the businesses that are the backbone of the global economy.

Our one-stop commerce platform transforms and unifies digital and physical operations by enabling multichannel sales, expansion to new locations, global payments, financial solutions and connection to supplier networks. With the Lightspeed commerce platform, merchants in retail and hospitality can build thriving businesses for the future.

Headquartered in Montréal, Canada, Lightspeed is trusted by favourite local businesses, where the community goes to shop and dine in over 100 countries. Lightspeed has offices in Canada, the USA, Europe, Russia and APAC.

We’re passionate about enabling people to do their best work. We dream big and we’re looking for people who do the same. With us, career milestones happen often and we celebrate every one. Come work with us and find out where your career will take you at Lightspeed!

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Application security Cryptography Incident response Pentesting Python Scripting Vulnerabilities

Perks/benefits: Career development Flex hours Flex vacation Health care Pet friendly Team events Unlimited paid time off Wellness

Region: Asia/Pacific
Country: New Zealand
Job stats:  6  2  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.