Staff Security Engineer

2 weeks ago


Dublin, Dublin City, Ireland Toast Full time

Toast is driven by building the restaurant platform that helps restaurants adapt, take control, and get back to what they do best: building the businesses they love.

Product Security at Toast isn't just about running tools and reporting vulnerabilities - we're the vigilant chefs ensuring the Toast never gets burned. We bake security into every layer of our products, from the first sprinkle of an idea to the final serving of a fully-baked solution. Our team is the secret ingredient that makes Toast's digital recipe both delicious and secure. We collaborate closely with R&D, seasoning the development process with robust security measures that protect the services and applications our customers rely on to run their businesses.

Like master chefs, we blend cutting-edge technology with strategic thinking, kneading security into the dough of every product we create. By joining our Product Security team, you'll be part of the kitchen crew that keeps our customers' trust from going stale. You'll tackle complex challenges that have real-world impact, helping to serve up a safer, more secure digital experience for businesses that count on Toast every day. It's not just about finding vulnerabilities - it's about crafting a recipe for digital trust that keeps our customers coming back for more.

About this role (Responsibilities)

  • Identify, triage, and provide remediation guidance for application vulnerabilities, with a specific focus on IAM-related issues.
  • Select, implement, design, or build tools to manage and secure identity and access across Toast platforms.
  • Improve developer tooling and adoption to build a more robust SSDLC with respect to IAM best practices.
  • Practice a #OneTeam attitude to help other Toast teams make informed, security-conscious decisions when building new software with IAM considerations.
  • Support and expand the Security Champions program, providing IAM-specific training and guidance.
  • Assist incident response teams with application security expertise and tools, especially related to IAM incidents.
  • Build threat models on IAM applications and architecture.
  • Guide in the design and maintenance of secure authentication and authorization mechanisms.
  • Provide signals for IAM events to the SOC for better alerting and response.

Do you have the right ingredients? (Requirements)

  • Minimum 5+ years of experience in application security
  • Experience reading, reviewing, and providing security guidance for complex code in a variety of languages and frameworks (Java/Kotlin, Javascript/ES6, React, and Python are a priority), with a strong emphasis on IAM implementations.
  • Strong understanding of cloud application architecture and common IAM weaknesses (e.g., insecure authentication, authorization flaws, privilege escalation).
  • Experience identifying and helping to resolve common application security flaws (e.g., OWASP, SANS) related to IAM.
  • Successful history of being a subject matter expert to guide products and lines of business to better security outcomes related to IAM.
  • Previous security experience working with fintech applications and associated IAM requirements.
  • Strong understanding of privacy, security, and cryptography patterns and when to apply them, especially within IAM (such as PKIs, access management, data tokenization, and anonymization).
  • Deep understanding of IAM concepts (e.g., OAuth, OIDC, SAML).

Special Sauce (Nonessential Skills/Nice to Haves)

  • Cloud and container security technologies.
  • SSDLC tooling (e.g., SAST/DAST/SCA), particularly those focused on IAM.
  • AWS IAM.
  • Infrastructure-as-code (IaC) technologies like Terraform to manage cloud security services.
  • Mobile apps/threats (iOS, Android), and their related IAM challenges.
  • Securing financial technologies and associated IAM requirements.
  • Directory services (e.g., LDAP, Active Directory).

Our Spread of Total Rewards
We strive to provide competitive compensation and benefits programs that help to attract, retain, and motivate the best and brightest people in our industry. Our total rewards package goes beyond great earnings potential and provides the means to a healthy lifestyle with the flexibility to meet Toasters' changing needs. Learn more about our benefits at https://careers.toasttab.com/toast-benefits.

*Bread puns encouraged but not required

We are Toasters

Diversity, Equity, and Inclusion is Baked into our Recipe for Success.

At Toast our employees are our secret ingredient. When they are powered to succeed, Toast succeeds.

The restaurant industry is one of the most diverse industries. We embrace and are excited by this diversity, believing that only through authenticity, inclusivity, high standards of respect and trust, and leading with humility will we be able to achieve our goals.

Baking inclusive principles into our company and diversity into our design provides equitable opportunities for all and enhances our ability to be first in class in all aspects of our industry.

Bready to make a change? Apply today

Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact candidateaccommodations@toasttab.com.

#J-18808-Ljbffr
  • Security Engineer

    4 weeks ago


    Dublin, Dublin City, Ireland Iceberg Cyber Security Full time

    I'm working with a dynamic multi-strategy hedge fund in Dublin who are looking to push the boundaries of their security team. This role has engineering at its core and is perfect for someone who is hands-on and wears multiple security hats as they are constantly upgrading, replacing and implementing their legacy tools and platforms. The role will see you...

  • IT Security Analyst

    7 days ago


    Dublin, Dublin City, Ireland Awake Security Full time

    Conduct in-depth penetration testing of cloud environments (AWS, Azure, GCP), focusing on identifying complex vulnerabilities and security misconfigurations.Perform penetration testing of containerized applications (Docker, Kubernetes) and serverless architectures.Develop and execute custom penetration testing methodologies and tools to simulate real-world...


  • Dublin, Dublin City, Ireland TN Ireland Full time

    Are you passionate about application security? Do you get a thrill out of discovering security vulnerabilities in web applications and mobile apps? Do you enjoy the challenge of designing creative solutions to tough problems? Are you excited about securing the public cloud? Can you thrive in a dynamic team where our 150k+ customers count on us for protecting...


  • Dublin, Dublin City, Ireland Zendesk Full time

    Job DescriptionAre you passionate about application security? Do you get a thrill out of discovering security vulnerabilities in web applications and mobile apps? Do you enjoy the challenge of designing creative solutions to tough problems? Are you excited about securing the public cloud? Can you thrive in a dynamic team where our 150k+ customers count on us...


  • Dublin, Dublin City, Ireland Top Security Full time

    Mobile Security Supervisor required for Top Security, Ballymount, Dublin 24. Top Security is the most locally-focused security company in Ireland, providing integrated security solutions for over 40 years to meet the needs of thousands of businesses throughout Ireland.Responsibilities:Mobile Patrols (including open and lock ups) and Alarm Response activities...


  • Dublin, Dublin City, Ireland MongoDB Full time

    MongoDB's mission is to empower innovators to create, transform, and disrupt industries by unleashing the power of software and data. We enable organizations of all sizes to easily build, scale, and run modern applications by helping them modernize legacy workloads, embrace innovation, and unleash AI. Our industry-leading developer data platform, MongoDB...

  • Security Officer

    6 days ago


    Dublin, Dublin City, Ireland Cis Security Limited Full time

    Job Role: We are seeking a highly skilled and experienced Corporate Security Response Officer to join our team. As an ambassador for our company, you will be responsible for delivering high-quality guarding and customer service to both our clients and service users.Responsibilities:Conducting opening & closing procedures of a buildingPatrolling and ensuring...

  • Staff Engineer

    4 weeks ago


    Dublin, Dublin City, Ireland REALTIME recruitment Full time

    Staff Engineer - Cloud Backend (Dublin - 3x days onsite)Innovative automotive leader seeks motivated Staff Engineers with Cloud Backend experience to design, build, and optimize backend services that power our cloud-based applications.This permanent role in Dublin involves architecting backend services, leading deployments with Go and other languages,...


  • Dublin, Dublin City, Ireland Cis Security Limited Full time

    Job Overview: CIS Security Limited is a leading provider of manned guarding services with over 50 years of experience. We pride ourselves on delivering operational excellence and unparalleled service in the security industry.About the Role: This Corporate Security Response Officer position is a diverse and multifunctional role that requires excellent...


  • Dublin, Dublin City, Ireland Acre Security Full time

    Are you passionate about shaping the future of security solutions?Do you thrive in an environment that values innovation and teamwork?If so, acre security is the place for you  Join us in making the world a safer place, one innovation at a time.  Position: Embedded Firmware Engineer Location: Dublin, Ireland/Hybrid.A Bit About Us: Acre security is a global...


  • Dublin, Dublin City, Ireland acre security Full time

    Are you passionate about shaping the future of security solutions?Do you thrive in an environment that values innovation and teamwork?If so, acre security is the place for you  Join us in making the world a safer place, one innovation at a time.  Position: Embedded Firmware Engineer Location: Dublin, Ireland/Hybrid.A Bit About Us: Acre security is a global...


  • Dublin, Dublin City, Ireland acre security Full time

    Are you passionate about shaping the future of security solutions? Do you thrive in an environment that values innovation and teamwork? If so, Acre Security is the place for you Join us in making the world a safer place, one innovation at a time.Position: Embedded Firmware EngineerLocation: Dublin, Ireland/Hybrid.A Bit About Us:Acre Security is a global...


  • Dublin, Dublin City, Ireland Ll Oefentherapie Full time

    Responsibilities:Monitor, develop, and maintain enterprise security tooling program including Security Information and Event Management (SIEM), Endpoint Protection, and Web Application Firewalls in both engineering and analyst capacity.Build and administer secure Oracle Cloud environments to support the diverse needs of Oracle's customers.Work directly with...


  • Dublin, Dublin City, Ireland acre security Full time

    Acre Security is committed to providing top-notch security solutions to organisations across various sectors. We take pride in our ability to deliver tailored, robust, and future-proof solutions that meet the unique needs of each client.Job Description:We are seeking an accomplished Senior Electronic Engineer to join our dynamic R&D team. In this role, you...


  • Dublin, Dublin City, Ireland acre security Full time

    Acre Security is dedicated to creating a culture of innovation and collaboration. We believe in fostering a supportive environment where employees can grow and develop their skills.About the Role:We are seeking an accomplished Senior Electronic Engineer to lead our R&D team in advancing the design and manufacture of electronic security solutions. As a key...

  • Security Engineer

    3 weeks ago


    Dublin, Dublin City, Ireland FRS Recruitment Full time

    My client, a multinational Saas Company, is seeking a skilled and experienced Security Engineer to join their Data Security Team. In this role, you will be responsible for managing vulnerability management and incident response systems, while driving key security initiatives to protect our infrastructure, applications, and data. Key Responsibilities: Manage...


  • Dublin, Dublin City, Ireland acre security Full time

    Acre Security is a global leader in delivering resilient digital and physical security solutions. We offer a range of services, including access control, visitor management, intrusion detection, workplace security, transmission, and connectivity solutions.Job Summary:We are seeking an experienced Senior Electronic Engineer to join our R&D team. In this role,...


  • Dublin, Dublin City, Ireland acre security Full time

    Are you passionate about shaping the future of security solutions? Do you thrive in an environment that values innovation and teamwork? If so, Acre Security is the place for you Join us in making the world a safer place, one innovation at a time.Position: Senior Manufacture Electronic EngineerLocation: Dublin, Ireland/Hybrid.A Bit About Us:Acre Security is a...

  • Security Engineer

    6 days ago


    Dublin, Dublin City, Ireland Amazon Full time

    Job OverviewAmazon is seeking a highly skilled Security Engineer to join our Information Security team. This role will involve working within the Amazon Security Incident Response Team (SIRT) to respond to security events and provide security services to safeguard highly sensitive data.Key Responsibilities- Responding to security incidents and coordinating a...


  • Dublin, Dublin City, Ireland EverQuote Full time

    Principal Security EngineerContract: Full time, Permanent, Hybrid (2 days in office)PLEASE NOTE THIS ROLE IS BASED IN NORTHERN IRELANDEverQuote is seeking a Principal Security Engineer to join our growing teamWe are seeking a highly skilled Principal Security Engineer who is passionate about helping lead our Security Engineering TeamThe ideal candidate will...