Talent.com
This job offer is not available in your country.
Staff Security Engineer (Product Security & IAM)

Staff Security Engineer (Product Security & IAM)

ToastDublin, Ireland
17 days ago
Job description

Toast is driven by building the restaurant platform that helps restaurants adapt, take control, and get back to what they do best : building the businesses they love.

Product Security at Toast isn't just about running tools and reporting vulnerabilities – we're the vigilant chefs ensuring the Toast never gets burned. We bake security into every layer of our products, from the first sprinkle of an idea to the final serving of a fully-baked solution. Our team is the secret ingredient that makes Toast's digital recipe both delicious and secure. We collaborate closely with R&D, seasoning the development process with robust security measures that protect the services and applications our customers rely on to run their businesses.

Like master chefs, we blend cutting-edge technology with strategic thinking, kneading security into the dough of every product we create. By joining our Product Security team, you'll be part of the kitchen crew that keeps our customers' trust from going stale. You'll tackle complex challenges that have real-world impact, helping to serve up a safer, more secure digital experience for businesses that count on Toast every day. It's not just about finding vulnerabilities – it's about crafting a recipe for digital trust that keeps our customers coming back for more.

About this roll (Responsibilities)

  • Identify, triage, and provide remediation guidance for application vulnerabilities, with a specific focus on IAM-related issues.
  • Select, implement, design, or build tools to manage and secure identity and access across Toast platforms.
  • Improve developer tooling and adoption to build a more robust SSDLC with respect to IAM best practices.
  • Practice a #OneTeam attitude to help other Toast teams make informed, security-conscious decisions when building new software with IAM considerations.
  • Support and expand the Security Champions program, providing IAM-specific training and guidance.
  • Assist incident response teams with application security expertise and tools, especially related to IAM incidents.
  • Build threat models on IAM applications and architecture.
  • Guide in the design and maintenance of secure authentication and authorization mechanisms.
  • Provide signals for IAM events to the SOC for better alerting and response.

Do you have the right ingredients ? (Requirements)

  • Minimum 7+ years of experience in application security
  • Experience reading, reviewing, and providing security guidance for complex code in a variety of languages and frameworks (Java / Kotlin, Javascript / ES6, React, and Python are a priority), with a strong emphasis on IAM implementations.
  • Strong understanding of cloud application architecture and common IAM weaknesses (e.g., insecure authentication, authorization flaws, privilege escalation).
  • Experience identifying and helping to resolve common application security flaws (e.g., OWASP, SANS) related to IAM.
  • Successful history of being a subject matter expert to guide products and lines of business to better security outcomes related to IAM.
  • Previous security experience working with fintech applications and associated IAM requirements.
  • Strong understanding of privacy, security, and cryptography patterns and when to apply them, especially within IAM (such as PKIs, access management, data tokenization, and anonymization).
  • Deep understanding of IAM concepts (e.g., OAuth, OIDC, SAML).
  • Special Sauce (Nonessential Skills / Nice to Haves)

  • Cloud and container security technologies.
  • SSDLC tooling (e.g., SAST / DAST / SCA), particularly those focused on IAM.
  • AWS IAM.
  • Infrastructure-as-code (IaC) technologies like Terraform to manage cloud security services.
  • Mobile apps / threats (iOS, Android), and their related IAM challenges.
  • Securing financial technologies and associated IAM requirements.
  • Directory services (e.g., LDAP, Active Directory).
  • This is a hybrid role, requiring two days in the office per week
  • Our Spread

  • of Total Rewards
  • We strive to provide competitive compensation and benefits programs that help to attract, retain, and motivate the best and brightest people in our industry. Our total rewards package goes beyond great earnings potential and provides the means to a healthy lifestyle with the flexibility to meet Toasters’ changing needs. Learn more about our benefits at  https : / / careers.toasttab.com / toast-benefits .

  • Bread puns encouraged but not required
  • Diversity, Equity, and Inclusion is Baked into our Recipe for Success

    At Toast, our employees are our secret ingredient—when they thrive, we thrive. The restaurant industry is one of the most diverse, and we embrace that diversity with authenticity, inclusivity, respect, and humility. By embedding these principles into our culture and design, we create equitable opportunities for all and raise the bar in delivering exceptional experiences.

    We Thrive Together

    We embrace a hybrid work model that fosters in-person collaboration while valuing individual needs. Our goal is to build a strong culture of connection as we work together to empower the restaurant community. To learn more about how we work globally and regionally, check out : https : / / careers.toasttab.com / locations-toast .

    Apply today!

    Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact candidateaccommodations@toasttab.com .

    For roles in the United States, It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

    Create a job alert for this search

    Security Engineer • Dublin, Ireland

    Related jobs
    Security Operations Engineer - Corporate Security

    Security Operations Engineer - Corporate Security

    Amazon Data Services Ireland Limited - A65Dublin, IRL
    The Amazon Web Services team is looking for a passionate Security Incident Response Engineer who can lead the response to security issues across the largest cloud provider in the world.You must thr...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer 4

    Security Engineer 4

    OracleDublin, Ireland
    Oracle Cloud Security Incident Response is seeking a Principal level analyst to join a global team of professionals investigating suspected security incidents. The ideal candidate is experienced in ...Show moreLast updated: 4 days ago
    Security Staff

    Security Staff

    NoLItaDublin, Leinster, Leinster
    Security Staff NoLita, Dublin City PSA Licence Required.NoLIta, one of Dublins leading nightlife and hospitality venues, is currently looking for professional, reliable, and approachable Security S...Show moreLast updated: 13 days ago
    Security Engineer

    Security Engineer

    Oliver JamesDublin
    We are seeking a skilled and motivated.This role will play a key part in safeguarding the organisation's digital infrastructure, applications, and data through proactive threat detection, secure sy...Show moreLast updated: 17 days ago
    Security Engineer

    Security Engineer

    Elk RecruitmentDublin,Ireland
    Quick Apply
    Installation, Commissioning, service and maintenance of intruder alarm systems.Installation, Commissioning, service and maintenance of CCTV system with experience with networking IP CCTV Systems.In...Show moreLast updated: 1 day ago
    • Promoted
    Security Engineer Supervisor

    Security Engineer Supervisor

    Gilligan Black RecruitmentDublin, Leinster, Leinster
    Engineering Supervisor (Security Systems) Dublin South €65-69k plus benefits Your role will involvesupervising a team of established Service Engineers, as they carry out routine maintenance on CCTV...Show moreLast updated: 6 days ago
    • Promoted
    • New!
    Security Engineer, Application Security

    Security Engineer, Application Security

    AmazonDublin, Ireland
    In Amazon Stores, we ship some of the widest arrays of technology found at any company.Innovative digital healthcare to no-checkout retail, we push the boundaries of technology in every direction u...Show moreLast updated: 1 hour ago
    • Promoted
    Security Engineer

    Security Engineer

    Oliver James Associates Ltd.Dublin, Ireland
    About the Role We are seeking a skilled and motivated Security Engineer to join our growing security team in a leading organisation within the insurance and financial services sector.This role will...Show moreLast updated: 7 days ago
    • Promoted
    Physical Security Engineer

    Physical Security Engineer

    Manchester ArndaleDublin, Ireland
    OCS UK & Ireland is a leading facilities management company with 50,000+ colleagues and a turnover in excess of £2bn.We deliver innovative, award-winning services within facilities management, hard...Show moreLast updated: 3 days ago
    • Promoted
    Security Engineer

    Security Engineer

    Plan BDublin, Dublin City, Republic of Ireland
    We seek an experienced Security Engineer who is looking for a stable, rewarding role in security technology.We’re hiring a Security Engineer to join our team at a fixed-site location in North...Show moreLast updated: 21 days ago
    Physical Security Engineer

    Physical Security Engineer

    OCS GroupDublin, GB
    OCS UK & Ireland is a leading facilities management company with 50,000+ colleagues and a turnover in excess of £2bn.We deliver innovative, award-winning services within facilities management, hard...Show moreLast updated: 8 days ago
    Network Security Engineer

    Network Security Engineer

    ApplegreenDublin, Leinster, Leinster
    Applegreen is in a rapid growth phase and to support this ambitious growth, we are seeking to onboard a Network Security Engineer who will be responsible for managing and optimizing our network inf...Show moreLast updated: 18 days ago
    • Promoted
    Physical Security Engineer

    Physical Security Engineer

    OcsDublin, Ireland
    Join to apply for the Physical Security Engineer role at OCS 5 days ago Be among the first 25 applicants.Join to apply for the Physical Security Engineer role at OCS About The Company.OCS UK & Irel...Show moreLast updated: 1 day ago
    Staff Cloud Security Engineer

    Staff Cloud Security Engineer

    Riot GamesDublin, Ireland
    Be a cloud security SME in our Product Security team.Support a modern, scalable, and security focused set of internal network security tools including packet brokers, firewalls, and packet capture ...Show moreLast updated: 17 days ago
    • Promoted
    Iam Security Engineer / Application Support, Officer

    Iam Security Engineer / Application Support, Officer

    State Street CorporationDublin, Ireland
    State Street Identity and Access Management (IAM) engineering team is seeking outstanding individuals with excellent intellectual and analytical capabilities, entrepreneurial problem-solving skills...Show moreLast updated: 8 days ago
    Information Security Engineer

    Information Security Engineer

    UnitedHealth GroupDublin, Leinster, IE
    Optum is a global organisation that delivers care, aided by technology to help millions of people live healthier lives.The work you do with our team will directly improve health outcomes by connect...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer

    Security Engineer

    Harvey NashDublin, Ireland
    The engineering team is looking for outstanding individuals with excellent intellectual and analytical capabilities, entrepreneurial problem-solving skills, strong communications, and influencing c...Show moreLast updated: 3 days ago
    Security Engineer

    Security Engineer

    FineosDublin
    The Security Engineer will collaborate with teams to design fine-grained technical controls around access to sensitive datasets and ensure their compliance with the regulatory requirements while pr...Show moreLast updated: 17 days ago