Intermediate Software Developer, Wealthsimple

Application Security

Salary not provided
SQL
JavaScript
Python
GraphQL
Java
Kotlin
Ruby on Rails
Junior, Mid and Senior level
Remote in Canada
Wealthsimple

Professional investing services made simple

Be an early applicant

Wealthsimple

Professional investing services made simple

1001+ employees

FintechB2CPersonal financeInvestingFinancial ServicesSocial Impact

Be an early applicant

Salary not provided
SQL
JavaScript
Python
GraphQL
Java
Kotlin
Ruby on Rails
Junior, Mid and Senior level
Remote in Canada

1001+ employees

FintechB2CPersonal financeInvestingFinancial ServicesSocial Impact

Company mission

To help everyone achieve financial freedom.

Role

Who you are

  • Has proficiency with Javascript and Ruby on Rails
  • Is able to reason through Python and Java/Kotlin code bases
  • Understands and can identify and propose fixes for application security gotchas such as those listed in OWASP Top 10
  • Exhibits and offensive security mindset - thinking critically about what could go wrong
  • Is comfortable with digging into logs using tools such as SQL and SIEM
  • Is able to clearly and effectively communicate, internally and externally, security best practices and strategy
  • Is an effective listener, consensus builder and effectively incorporates diverse ideas into a coherent vision

What the job involves

  • Audit source code and perform code reviews for critical application changes
  • Develop and maintain custom security libraries, tools, and services such as geolocator, panko, security-bot, Input Sanitization middleware to mitigate Injection based attacks; and GraphQL API Security controls
  • Integrate tooling used for automated security scanning, including Semgrep for SAST, SCA and Secrets Detection; and Nuclei
  • Lead bug bounty efforts and provide hands-on guidance for vulnerability remediation and train developers on common security pitfalls, fostering a proactive security culture within the development process
  • Implement data pipeline to aggregate data from security tools and build monitors and detection to alert us of potential compromise
  • Design and implement attack scenarios to simulate real-world threats, allowing us to uncover any potential weaknesses in our systems and infrastructure
  • Keep up-to-date with the latest security trends, tools, and techniques to continuously enhance the security posture of the organization, research and evaluate emerging threats and vulnerabilities, and provide recommendations for improving our security practices

Our take

Wealthsimple is one of a crop of robo-advisors trying to democratize investment management. These companies are disrupting the industry by automating many of the processes involved in investment removing the need for human advisors.

But while other so-called robo-advisors are focused on courting the high end of the market, Wealthsimple is trying to provide the same types of tools and advice to all users, regardless of the amount they have to invest.

Wealthsimple does have higher fees than some other robo-advisors such as Betterment and Charles Schwab. However, the company believes that it provides a more user-friendly platform, tailored to millennials who will be attracted to Wealthsimple due to its ease of use and social impact offerings.

Kirsty headshot

Kirsty

Company Specialist

Insights

Top investors

Some candidates hear
back within 2 weeks

-10% employee growth in 12 months

Company

Funding (last 2 of 8 rounds)

May 2021

$554m

LATE VC

Oct 2020

$87m

LATE VC

Total funding: $854.1m

Company benefits

  • Retirement savings matching plan through Wealthsimple Work
  • Company equity for full-time employees
  • Access to Premium Client perks, including personal finance learning & advice and a boosted interest rate on deposits
  • Paid parental leave (6 months topped up to 100% of salary)
  • 20 vacation days per year
  • 90 Days Away program
  • Top-tier health benefits
  • Life & disability insurance
  • Generous sick and mental health days
  • Employee resource plan including services like RMT, psychology, and physiotherapy
  • Up to $5,000 per year for mental health supports
  • Gender Affirmation benefits
  • Up to $1,500 per year for professional development
  • Up to $1,500 per year for wellness and home office expenses
  • Employee resource groups
  • Social impact hours

Company HQ

Fashion District, Toronto, ON

Leadership

Previously worked as a Business Analyst at McKinsey and then at Ancestry.com as Country Director for Canada.

Share this job

View 13 more jobs at Wealthsimple