Back to search
EngineeringNot provided by source

Senior Security Engineer

Tigera · Not provided by source

Apply
Last seen by MeritLog September 10, 2026Source: GreenhouseSource version: greenhouse-job-board-v1

MeritLog read this listing from Tigera's Greenhouse job board and last checked it on September 10, 2026.

Source: the employer's Greenhouse job board. Open the original listing for current details.

Job details

Work model
Not provided by source
Salary
Conflicting source ranges
Location
Vancouver

Hiring context

How this role compares at Tigera

Tigera has 4 live roles in MeritLog’s catalog across 3 job families, and 2 of them are in engineering. 0 of those listings publish a pay range, a disclosure rate of 0%.

Tigera concentrates this hiring in:

Counted across the job boards MeritLog tracks, at the time this page was served. Pay comparisons use only listings that publish a complete range in the same currency and period.

What the role asks for

What you'd do

  • Lead vulnerability management end-to-end across the Calico portfolio - internal security testing, triage, development of proofs-of-concept and fixes, issuing CVEs, and remediation in partnership with engineering - leveraging AI-assisted tooling to scale outcomes.
  • Conduct threat modeling and security design reviews across Calico Open Source, Calico Enterprise, and Calico Cloud, and drive product hardening and cloud-infrastructure security work to meet enterprise and regulated-industry expectations.
  • Ensure code security across the Calico product portfolio through secure code review, static analysis (SAST) and dependency scanning, and secure coding guidance for engineering teams.
  • Build and develop internal security tooling, write proofs-of-concept, contribute to patches, and dig into product code to validate findings and drive security remediation alongside engineering.
  • Contribute to detection engineering across our cloud footprint and our corporate environment, and participate in the Security Incident Response Team (SIRT) supporting investigations and post-incident reviews.
  • Drive adoption of secure-by-default patterns, paved-road tooling, and AI-assisted security automation across Tigera that scale security through developer enablement.
  • 5+ years of hands-on security engineering experience across product and/or cloud security
  • Practical experience driving vulnerability management end-to-end - discovery, triage, exploitability assessment, proof-of-concept and fix development, and CVE coordination
  • Experience with threat modeling and security design reviews across the software development lifecycle
  • Experience conducting internal security testing or penetration testing of web applications, APIs, and cloud infrastructure using industry-standard tools (e.g. Burpsuite)
  • A drive to scale security through automation, tooling, and developer enablement in a highly collaborative environment
  • Familiarity of Kubernetes, containers, and cloud security across one or more major providers (GCP, Azure, AWS)
  • Strong written and verbal communication skills, including authoring threat models, security advisories, and customer-facing security artifacts
  • Coding ability in Python, Go or similar

What they're asking for

  • Experience with software supply-chain security, securing host, database, and application solutions in microservices or cloud architectureSkillPreferred
  • Experience with penetration testing (purple teaming) infrastructure and web applicationsSkillPreferred
  • Experience with detection engineering experience with security platformsSkillPreferred
  • Contributions to open-source security projects, bug bounty programs, public CVE disclosures, or security research publicationsSkillPreferred
  • Industry certifications such as OSCP, OSWE, CISSP, GIAC, or equivalentCredentialPreferred

Parsed by MeritLog from the employer’s own posting. The full description follows below.

Job description

Tigera provides Calico, a unified network security and observability platform to prevent, detect and mitigate security breaches in Kubernetes clusters. Tigera’s open-source offering, Calico Open Source, is the most widely adopted container networking and security solution. Powering more than 100M containers across 8M+ nodes in 166 countries, Calico software is supported across all major cloud providers and Kubernetes distributions, and is used by leading companies including Discover, Chipotle, NBCUniversal, HanseMerkur, Box, Siemens Healthineers, Playtech, Royal Bank of Canada, and Bell Canada. As our team grows, we are looking for colleagues who not only share our passion for this work and growing our company, but who will also strengthen our company values and help ensure that Tigera remains a great place to work. At our core, our focus is on our customers, who are the heroes of our story; on aiming high and staying nimble in how we get there; on continuous learning to drive our success; and on respecting, collaborating, and supporting each other on a daily basis. If you are looking to help make a substantial impact, and our values and products align with your vision of your career growth, we want to hear from you! About Your Role Tigera is hiring a Senior Security Engineer to own product and cloud security across our product suite. You will lead threat models and security design reviews of new features, partner with engineering to harden our products and SaaS infrastructure, drive vulnerability and CVE management end-to-end, and contribute to detection engineering and the Security Incident Response Team (SIRT). The role spans application security and cloud security, ensuring Tigera's portfolio meets enterprise and regulated-industry compliance requirements while building secure-by-default patterns and self-service guardrails that scale security through automation and developer enablement. We are looking for a pragmatic security minded engineer who is as comfortable shipping security software and tooling as they are leading a threat model, and who scales security by empowering engineering teams rather than becoming a bottleneck. For this position, we are looking to hire in Vancouver (Hybrid). Vancouver Salary Range: CAD $130,000 to CAD $150,000 You Will • Lead vulnerability management end-to-end across the Calico portfolio - internal security testing, triage, development of proofs-of-concept and fixes, issuing CVEs, and remediation in partnership with engineering - leveraging AI-assisted tooling to scale outcomes. • Conduct threat modeling and security design reviews across Calico Open Source, Calico Enterprise, and Calico Cloud, and drive product hardening and cloud-infrastructure security work to meet enterprise and regulated-industry expectations. • Ensure code security across the Calico product portfolio through secure code review, static analysis (SAST) and dependency scanning, and secure coding guidance for engineering teams. • Build and develop internal security tooling, write proofs-of-concept, contribute to patches, and dig into product code to validate findings and drive security remediation alongside engineering. • Contribute to detection engineering across our cloud footprint and our corporate environment, and participate in the Security Incident Response Team (SIRT) supporting investigations and post-incident reviews. • Drive adoption of secure-by-default patterns, paved-road tooling, and AI-assisted security automation across Tigera that scale security through developer enablement. You Have • 5+ years of hands-on security engineering experience across product and/or cloud security • Practical experience driving vulnerability management end-to-end - discovery, triage, exploitability assessment, proof-of-concept and fix development, and CVE coordination • Experience with threat modeling and security design reviews across the software development lifecycle • Experience conducting internal security testing or penetration testing of web applications, APIs, and cloud infrastructure using industry-standard tools (e.g. Burpsuite) • A drive to scale security through automation, tooling, and developer enablement in a highly collaborative environment • Familiarity of Kubernetes, containers, and cloud security across one or more major providers (GCP, Azure, AWS) • Strong written and verbal communication skills, including authoring threat models, security advisories, and customer-facing security artifacts • Coding ability in Python, Go or similar Nice-to-Have • Experience with software supply-chain security, securing host, database, and application solutions in microservices or cloud architecture • Experience with penetration testing (purple teaming) infrastructure and web applications • Experience with detection engineering experience with security platforms • Contributions to open-source security projects, bug bounty programs, public CVE disclosures, or security research publications • Industry certifications such as OSCP, OSWE, CISSP, GIAC, or equivalent With offices in San Francisco, San Jose, Vancouver (Canada), Cork (Ireland), and London (England), we have a thriving team of diverse individuals from all over the world. We believe in a collaborative, flexible work environment based on respect for, and commitment from, every employee. We also offer a competitive compensation package along with full health, vision, and dental benefits. These benefits, coupled with an amazing team of individuals who believe in our mission and value openness, collaboration, and teamwork, make Tigera an awesome place to work.

Keep exploring

More Engineering roles

Search all jobs

Privacy choices

Analytics and advertising stay off unless you allow them. Private data stays out.

Read the privacy notice