Security Engineer
Listed on 2026-10-01
-
IT/Tech
Cybersecurity
What Makes Cloudbeds Unique
At Cloudbeds, we’re not just building software, we’re transforming hospitality. Our intelligently designed platform powers properties across 150 countries, processing billions in bookings annually. From independent properties to hotel groups, we help hoteliers transform operations and uplevel their commercial strategy through a unified platform that integrates with hundreds of partners. And we do it with a completely remote team. Imagine working alongside global innovators to build AI-powered solutions that solve hoteliers’ biggest challenges.
Since our founding in 2012, we’ve become the World’s Best Hotel PMS Solutions Provider and landed on Deloitte’s Technology Fast 500 again in 2024, but we’re just getting started.
Remote - Canada
How You’ll Make an Impact:
As a Security Engineer on our Security Squad, you will fix the problems you find. Not file them. You will work inside our AWS environment and inside our application repositories, writing and shipping the changes that close real vulnerabilities. You will build the detections that tell us when something is wrong. And you will run point when an incident lands.
Cloudbeds is a PCI DSS certified service provider moving real money for properties in 150 countries. This role’s priority is protecting our customers and our business. Three things: vulnerability remediation across the stack, detection engineering in our SIEM, and hands-on incident response. Security here takes a cross-functional mindset. You should be comfortable talking to individuals at every level of the organization, from Engineering to Sales to Executives.
Our Security Squad:We are a small, senior, globally distributed team that owns security end to end, with no handoff to a separate ops group. The person who writes the detection is the person who works the alert and the person who ships the fix. We value automation and efficiency, and we give people room to go deep on the things that actually matter.
What You Bring to the Team:- Find and fix vulnerabilities across our stack. Work directly in the application repositories and in Terraform, open the pull requests, and drive them to merge with the owning squads.
- Build and tune detections in Datadog Cloud SIEM. Own detection coverage, write the rules, cut the false positives, and map what we can and cannot see against MITRE ATT&CK.
- Respond to security incidents. Investigate, contain, and write the RCA, then track the remediation actions until they are genuinely closed.
- Harden our AWS estate. Guard Duty, Security Hub, Config, Cloud Trail, KMS, Secrets Manager, IAM least privilege, and full log coverage across every account.
- Secure the delivery pipeline. Git Hub Advanced Security, code scanning, Dependabot, secret scanning and push protection, Crowdstrike container and image scanning, and Kubernetes admission policy.
- Automate the repetitive work. Build workflows and scripts that triage, enrich, and remediate without a human in the loop.
- Write the runbooks, standards, and detection documentation engineers will actually use, and produce the technical evidence behind our PCI DSS Level 1, GDPR, and SOC 2 obligations.
- A Bachelor’s degree in a relevant field and 4 years of experience, or a minimum of 6 years of practical experience in security engineering, detection engineering, or incident response.
- You write code. You can read an unfamiliar application repository, reason about the vulnerability, and ship the fix as a pull request rather than a ticket.
- Deep AWS security experience. IAM and least-privilege design, Guard Duty, Cloud Trail, KMS, VPC controls, and securing container and serverless workloads.
- Hands-on detection engineering in a SIEM. You have written rules, tuned them…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).