919,754open jobs
56,278companies
155,926added this week
Browse all
Salary
≈ $64k – $123k per year (Estimated)
Location
Remote (Canada)
Seniority
Middle · 4+ years exp

Confirmed on the employer's own hiring board on Sep 29, 2026. First seen by Alion on Sep 24, 2026. Pantheon scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Pantheon.io is the website platform built for WordPress and Drupal. We deliver your business needs to build, host, and manage with digital speed and agility.

About Pantheon

Pantheon WebOps Platform powers the open web, running more than 300,000 sites in the cloud for customers including Google, Princeton, Salesloft and Doctors Without Borders. Every day, thousands of developers and marketers create, iterate, and scale WordPress and Drupal sites to reach billions of people globally. Pantheon's multitenant, container-based platform enables organizations to manage all of their websites from a single dashboard. Organizations including Clorox and the United Nations drive results through accelerated development and real-time publishing using Pantheon's collaborative workflows.

The Role

Pantheon's Security Engineering team is responsible for safeguarding, auditing, and testing the security of Pantheon's entire platform. Our Security Engineering team aims to create a comprehensive and multi-dimensional approach to application security, with a focus on Security by Design in agile software development and cloud native environments.

We are seeking a Security Engineer II to join our growing team. This role bridges execution and tooling - you'll own security domains end-to-end while building the automation and processes that multiply the team's impact across engineering. This is a hands-on engineering role: you'll write detection rules, build vulnerability management tooling, implement supply chain security controls, and develop the automation pipelines that make security scale.

Our mission is to safeguard, audit, and test the security of the entire cloud hosting platform in these core areas:

  • Security by Design: Implement "Security by Design" within agile software development and cloud-native environments.
  • Security Tooling & Automation: Build and maintain security tooling and automation that scales the team's impact beyond what manual processes can achieve.
  • Support and Mentorship: Act as a Subject Matter Expert (SME), mentoring and supporting security engineering efforts across the organization.
  • Standard Setting: Contribute to application security policy, process, standards, and guidelines - and build the tooling that enforces them.
  • Application Security Performance: Help engineering teams design and build high-performing, secure applications by mitigating security issues in a risk-based manner.

What You Will Do

  • Detection Engineering: Author SIEM detection rules and response playbooks in Chronicle / Google SecOps (YARA-L), expanding coverage across Pantheon's security monitoring surface.
  • Security Tooling Development: Build and maintain security automation pipelines (Python/Go) - vulnerability management tooling (vulntools, Wiz scripts), GHAS automation, and CI/CD security integrations.
  • Vulnerability Management: Own vulnerability identification, triage, and remediation coordination with engineering squads across application (SAST/DAST/SCA) and infrastructure layers.
  • Supply Chain Security: Implement supply chain security controls (Aikido, SLSA, dependency pinning) and integrate them into engineering workflows.
  • Access & Identity: Execute RBAC cleanup, access architecture implementation, and periodic user access reviews. Manage GitHub org-level security policies and access controls.
  • Cloud Security: Execute CSPM baseline findings triage, cloud security baseline validation, and data warehouse security implementation (Snowflake).
  • DLP & Secrets: Define DLP policies and evaluate tooling; execute credential and secrets hygiene programs (plaintext credential remediation in repositories).

What You Need to Succeed

  • Builder Orientation: You measure impact by what you ship - tooling that engineering teams adopt, automation that replaces manual work, detection rules that catch real threats. Not by tickets closed or alerts triaged.
  • Communication: Strong communication skills essential for partnering with engineering teams across the organization. You advocate for security priorities and tradeoffs across functions without being prompted.
  • Commitment: Demonstrated commitment to teamwork, professionalism, and authenticity, fostering trust and accountability.
  • Grit: Understanding that establishing security best practices is a marathon requiring persistence across many stakeholders.

What You Bring to the Table

  • Overall Experience: Minimum of 4+ years of overall experience, with at least 2+ years dedicated to Application Security or Security Engineering.
  • Security Tooling: Demonstrated experience building security automation - vulnerability management scripts, CI/CD pipeline integrations, detection rules, or similar tooling that engineering teams use in production.
  • Development Practices: Hands-on experience with Secure by Design development practices, including participating in security architecture and design reviews.
  • Cloud Proficiency: Experience securing production systems in cloud environments (GCP preferred; AWS or Azure also valuable).
  • Coding Proficiency: Ability to build maintainable components in Python or Go. You write tools, not just policies.
  • CI/CD Fundamentals: Hands-on experience with Jenkins, Cloud Build, CircleCI, or similar (bonus points for experience with reusable workflows).
  • Cloud & Infrastructure: Experience working with containerization (e.g., Docker, OCI), Terraform, and Kubernetes (K8s).
  • Security Tooling Platforms: Experience with SAST/DAST/SCA/CSPM tools. Familiarity with CodeQL, Wiz, or similar platforms is a plus.
  • Education: Bachelor's degree (preferred) in Computer Science or equivalent practical experience.

What We Offer 

We have all the usual perks and benefits but what we can really offer you is a fantastic work environment powered by an amazing team.

  • Industry competitive compensation and equity plan
  • Flexible time off, sick days, and 13 paid holidays
  • Comprehensive medical insurance including Health, Dental and Vision
  • Paid parental leave (plus fertility, adoption and other family planning benefits)
  • In-office workspace (San Francisco & Chicago)
  • Monthly allowance for wellness, reading and access to LinkedIn Learning for continued development
  • Events and activities both team-based and company wide that inspire, educate and cultivate

Compensation: CAD $94,000 - 118,0000 annual salary plus bonus and equity 

Pantheon is an equal opportunity employer and we welcome applications from all backgrounds regardless of race, color, religion, sex, national origin, ancestry, age, marital status, sexual orientation, gender identity, veteran status, disability, or any other classification protected by law. Pantheon complies with federal and local disability laws and makes reasonable accommodations for applicants and employees with disabilities. If you need a reasonable accommodation due to a disability for any part of the interview process, please contact [email protected]. Pursuant to local and federal regulations, Pantheon will consider qualified applicants with arrest and conviction records for employment.

After an offer is made and accepted, E-verify will be utilized to establish your identity and employment eligibility as required by the U.S. Department of Homeland Security.

To review the Employee and Applicant's Privacy Policy, click here.

Visa Sponsorship is not available at this time.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
919,754 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
In your city
$192k per year • Remote (Brazil) • Full-Time • 5+ years exp
Python
DevOps
Terraform
GCP
GitLab CI
CI/CD
Jenkins
Docker
Kubernetes
Shift-Left
GitLab
IAM
Cybersecurity
Snyk
Trivy
ISO 27001
Wiz
OWASP Top 10
PCI DSS
SOC 2
Shift-Left Security
Threat Modeling
SBOM
SLSA
Sigstore
Cosign
OWASP
Apply
≈ $37k – $85k per year (Estimated) • Remote (Hungary) • Full-Time • 5+ years exp • Budapest
Python
Ruby
PowerShell
Bash
DevOps
Splunk
GCP
Azure
AWS
Linux
Windows
TCP/IP
Cybersecurity
Crowdstrike
Microsoft Sentinel
Microsoft Defender
IBM QRadar
SIEM
Management
Agile
Scrum
Apply
≈ $71k – $161k per year (Estimated) • Remote (Egypt) • Full-Time • 5+ years exp • Cairo
Python
Ruby
PowerShell
Bash
DevOps
Splunk
GCP
Azure
AWS
Linux
Windows
TCP/IP
Cybersecurity
Crowdstrike
Microsoft Sentinel
Microsoft Defender
IBM QRadar
SIEM
Management
Agile
Scrum
Apply
≈ $60k – $138k per year (Estimated) • Equity • Remote (likely Poland) • 1+ year exp
AI/ML
EU AI Act
DevOps
Incident Management
Cybersecurity
GDPR
Apply
$87k – $161k per year • Remote (United States) • Full-Time • 4+ years exp • Bachelor's Degree • United States
Assembly
Cybersecurity
Wiz
Analytics
Power BI
Management
Jira
ServiceNow
SharePoint
Apply
Remote (Brazil, Colombia, Turkey) • Contractor • PhD
Python
C++
Bash
Julia
AI/ML
AI Agents
DevOps
Linux
Apply
Remote (India, Egypt, Indonesia, Nigeria, Bangladesh) • Contractor • PhD
Python
C++
Bash
Julia
AI/ML
AI Agents
DevOps
Linux
Apply
Remote (Brazil, Colombia, Turkey) • Contractor • PhD
Python
C++
Bash
Julia
AI/ML
AI Agents
DevOps
Linux
Apply
Remote (India, Egypt, Indonesia, Nigeria, Bangladesh) • Contractor • PhD
Python
C++
Bash
Julia
AI/ML
AI Agents
DevOps
Linux
Apply
$160k – $260k per year • Remote (likely United States) • 1+ year exp • Bachelor's Degree
Python
AI/ML
SciPy
NumPy
Analytics
Matplotlib
Apply
≈ $84k – $196k per year (Estimated) • Equity • Remote (Ireland) • 8+ years exp
Python
AI/ML
Claude
LLM
DevOps
Splunk
GCP
AWS
Cybersecurity
SOC 2
GDPR
Google SecOps
SIEM
Apply
≈ $86k – $203k per year (Estimated) • Equity • In office • 8+ years exp • United Kingdom
Python
AI/ML
Claude
LLM
DevOps
Splunk
GCP
AWS
Cybersecurity
SOC 2
GDPR
Google SecOps
SIEM
Apply
Sales Engineer 6 days ago
$123k – $154k per year • Equity • Remote (United States, Canada) • 6+ years exp • Bachelor's Degree
JavaScript
PHP
PHP
WordPress
Drupal
AI/ML
Claude Code
Frontend
Next.js
React.js
Apply
≈ $80k – $151k per year (Estimated) • Equity • Remote (Ireland) • 8+ years exp
Python
Go
JavaScript
PHP
SQL
PHP
WordPress
Drupal
Frontend
Next.js
React.js
DevOps
Terraform
GCP
GitHub Actions
OpenTelemetry
Prometheus
Kubernetes
Grafana
Platform Engineering
Google GKE
Google Cloud Run
Incident Management
SLI/SLO/SLA
IAM
Cybersecurity
ISO 27001
PCI DSS
SOC 2
Least Privilege
Apply
≈ $84k – $175k per year (Estimated) • Equity • Remote (United States) • 7+ years exp
PHP
PHP
WordPress
Drupal
Marketing
LinkedIn
Apply
See all jobs
This is one of many
919,754 more open roles from verified company boards, updated every day.