Fundera logo

Security Software Engineer, AI & Automation - Canada

Fundera

CanadaRemoteFull-timeCAD 123–188K/yrPosted 3mo agoVerified open 5 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
CAD 123–188K/yr
Location
CanadaRemote
Schedule
Full-time
Work Authorization
Not specified

Job overview

Fundera is hiring a Security Software Engineer, AI & Automation - Canada. The Security Software Engineer, AI & Automation at NerdWallet will design AI‑powered security systems, build automation tools, and enhance the secure software development lifecycle, partnering with security and infrastructure teams to reduce risk across platforms.

Key focus areas include Design and build multi‑agent LLM systems for threat modeling and policy Q&A, Develop retrieval‑augmented generation pipelines and semantic search across code repositories, and Create automated code review capabilities to detect insecure patterns.

Successful candidates bring 3+ Years Of Software Engineering Or Security Engineering Experience. Important skills include Python, Go, Backend Services, REST APIs, Authentication, and Authorization. Preferred (not required): GitHub, Slack, Jira, and Confluence.

Skills & qualifications

RequiredNice to have

Skills

PythonGoBackend ServicesREST APIsAuthenticationAuthorizationRate LimitingStreamingObservabilityApplication Security ConceptsInjection VulnerabilitiesCross-Site ScriptingSecrets ExposureThreat ModelingSSDLC PracticesAI-Powered SystemsLLM APIsRetrieval-Augmented Generation PipelinesMulti-Agent ArchitecturesSemantic SearchAI-Specific Security RisksPrompt InjectionSensitive Data ExposureSecure Handling of Model Inputs and OutputsDistributed SystemsCloud-Based EnvironmentsMessage QueuesNoSQL DatabasesAWSContainersKubernetesAmazon ECSServerlessInfrastructure as CodeCachingPerformance PatternsRedisTTLsCache InvalidationCommunication SkillsGitHubSlackJiraConfluenceDesigning AI-Powered Security SystemsBuilding Automation SolutionsBuilding AI-Powered SolutionsSoftware DevelopmentAI Systems ExperienceSecurity-First ThinkingBuilding Production-Grade Backend ServicesAPIData PipelineMoving Between LanguagesMaintaining Backend ServicesInjectionBroken AuthenticationInsecure AuthorizationInterest in AIDeveloping Distributed SystemsOperating Distributed SystemsStrong Communication SkillsExplaining Complex AI and Security ConceptsAdvising Stakeholders on Tradeoffs and LimitationsDesigning Multi-Agent LLM SystemsRouting Logic

Qualifications

3+ Years Software Engineering or Security Engineering Experience

Benefits

Paid Time Off
401(k) Match

Full job description

At NerdWallet, we're building tools and experiences that help people make smarter financial decisions. As a Security Software Engineer focused on AI and Automation, you'll help strengthen the security, reliability, and trust behind those experiences by designing AI-powered security systems that make secure software development more scalable and effective across our engineering organization.

In this role, you'll partner closely with security engineering and infrastructure teams to build automation and AI-powered solutions that help identify vulnerabilities, improve security reviews, and reduce risk across our platforms. You'll take ownership of security engineering initiatives that combine software development, AI systems experience, and security-first thinking to solve meaningful problems at scale.

You'll have room to bring new ideas, influence how AI and automation practices evolve at NerdWallet, and shape the future of security tooling within a team that values curiosity, informed risk-taking, and thoughtful problem-solving.

This role reports to the AI Security Manager.

Projects you may be working on in this position include:

  • Designing and building multi-agent LLM systems and routing logic that automate threat modeling, security design review, policy Q&A, and vulnerability analysis at scale

  • Developing retrieval-augmented generation (RAG) pipelines and semantic search systems across large code and documentation repositories

  • Creating automated code review capabilities that help identify insecure patterns and improve software quality earlier in the development lifecycle

  • Designing integrations with tools such as GitHub, Slack, Jira, Confluence, and cloud platforms to embed security guidance into everyday engineering workflows

  • Developing REST APIs and platform services with authentication, authorization, rate limiting, observability, and secure handling of sensitive data

  • Designing and maintaining scalable data processing pipelines for large codebases and document repositories, including extraction, indexing, stream processing, batch jobs, and parallel execution

  • Improving AI application security through controls such as prompt injection prevention, sensitive data filtering, supply chain security, and secure handling of model inputs and outputs

  • Enhancing NerdWallet's secure software development lifecycle (SSDLC) through automation, tooling, and developer-friendly security practices

  • Partnering with engineering teams to prioritize and remediate application and infrastructure security risks

  • Supporting incident response and on-call needs by contributing security engineering expertise, tooling, automation, and analysis when security issues arise

  • Identifying new opportunities for automation and AI augmentation across the security team, bringing fresh eyes and independent thinking to a growing backlog of high-impact work

Where you can make an impact:

  • Serve as technical lead on high-priority initiatives, taking ownership of technically complex work and collaborating across teams to deliver practical, measurable security outcomes

  • Help shape how AI and automation are securely adopted across NerdWallet's engineering ecosystem

  • Build tools and platforms that make security more accessible, scalable, and actionable for development teams

  • Improve the speed and quality of security reviews through thoughtful automation and security-first design

  • Strengthen customer trust by helping protect NerdWallet's products, systems, and sensitive data

  • Serve as an internal subject matter expert on AI and automation, advising on appropriate use cases, limitations, and risks to both technical and non-technical stakeholders

Your experience:

  • 3+ years of software engineering or security engineering experience

  • Strong proficiency in Python or Go for building production-grade backend services, APIs, and data pipelines; comfort moving between languages is expected

  • Experience building and maintaining backend services including REST APIs, authentication, authorization, rate limiting, streaming, and observability

  • Working knowledge of application security concepts including common vulnerability classes such as injection, broken authentication, cross-site scripting, insecure authorization, and secrets exposure; experience with threat modeling and SSDLC practices

  • Hands-on experience building AI-powered systems using LLM APIs, including retrieval-augmented generation (RAG) pipelines, multi-agent architectures, and semantic search; working understanding of AI-specific security risks such as prompt injection, sensitive data exposure, and secure handling of model inputs and outputs

  • Genuine interest in AI and how it applies to security, not just as a tool to use, but as a domain to understand deeply, including its limitations and risks

  • Experience developing and operating distributed systems and cloud-based environments, including message queues, NoSQL databases, AWS, containers, Kubernetes or ECS, serverless, and infrastructure as code

  • Understanding of caching and performance patterns including Redis, semantic caching, TTLs, and cache invalidation

  • Strong communication skills, able to explain complex AI and security concepts clearly to both technical and non-technical audiences, and confident advising stakeholders on tradeoffs and limitations

Where:

  • This is a remote position and a person can be located anywhere in Canada (with the exception of Quebec).

  • NerdWallet is proud to be a remote-first company! We believe great work can be done anywhere. No matter where you are based, NerdWallet offers benefits and perks to support the physical, financial, and emotional well being of you and your family.

What we offer: Work Hard, Stay Balanced (Life’s a series of balancing acts, eh?)

  • Monthly Healthcare Stipend

  • Rejuvenation Policy – Vacation Time Off + You will receive the official public holidays in your province

  • Paid sabbatical for Nerds to recharge, gain knowledge and pursue their interests

  • Monthly Wellness Stipend, Wifi Stipend, and Cell Phone Stipend

  • Work from home equipment stipend

Have Some Fun! (Nerds are fun, too)

  • Nerd-led group initiatives – Employee Resource Groups for Parents, Diversity, and Inclusion, Women, LGBTQIA, and other communities

  • Hackathons and team events across all teams and departments

  • Company-wide events like NerdLove (employee appreciation) and our annual Charity Auction

Plan for your future (And when you retire on your island, remember the little people)

  • RRSP with a 4% match. Eligible one month after hire.

  • Financial wellness, guidance, and unlimited access to a Certified Financial Planner (CFP) through Northstar

NerdWallet is committed to pursuing and hiring a diverse workforce and is proud to be an equal opportunity employer. We prohibit discrimination and harassment on the basis of any characteristic protected by applicable federal, state, or local law, so all qualified applicants will receive consideration for employment.

#LI-DNP

You've read the whole posting — now see how you match it.