Senior Engineering Manager - Security Platform Engineering (Open to remote across ANZ)

Canva

New ZealandSoftware Development

About the group/team

The Security Group is responsible for protecting Canva systems and data from information security threats. The group runs programs across Application Security, Risk Management, Enterprise Security, and Threat Detection and Response domains. Our teams work together, and with other groups, to deliver preventive and detective controls and processes that reduce security risk.

This role will be responsible for directly leading two teams; Security Platform Engineering and Security Development.

The Security Platform Engineering team takes charge for solving security-specific problems, using security domain expertise to unblock engineering to work on Canva-differentiating features. Our vision is to empower every engineer to build secure code with ease, through establishing a suite of paved roads for engineers to consume. The team is currently focused on building sandbox capabilities, workload isolation, BYOK and more.

The Security Development team builds and runs software that accelerates and strengthens the work of the wider Security Group. Beyond maintaining existing platforms, the team builds net-new capabilities that enable the security team to move faster, make better decisions, and reduce security risk across Canva. This includes things like vulnerability scanning and incident response tooling.

Role Responsibilities

  • Managing two small teams of software engineers who design and implement software to reduce risk.

  • Owning the strategy and roadmap for both teams, balancing security and developer experience to build an experience that allows Canvanauts to move quickly, while having secure guardrails in place.

  • Coach and develop engineers by providing regular, practical feedback to help them reach their personal growth goals.

  • Own the team’s development methodology including sprint planning, stand-ups and retrospectives resulting in a high-performing team.

  • Driving adoption of our systems internally across Canva engineering teams, championing the benefits of what we build.

Required Experience

  • Experience in directly managing a high-performing team, guided by company or specialty missions, and goals.

  • Strong software engineering fundamentals; be able to hold court with principal-level engineers and significantly contribute to design documents and complex software architecture.

  • Experience partnering cross-functionally with software engineering, SRE/DevOps, and compliance teams to embed security into developer workflows.

  • You’re experienced with languages such as Golang, Java, Rust or similar.

  • Experience in building and operating cloud-based services.

Nice to Haves

  • Experience in a security domain (application sandboxing, encryption, vulnerability scanning, etc) is a strong plus.

  • An understanding of the security products industry, and security risk. You know the security market, and can evaluate needs against existing security tools and products that meet product needs & identify areas where we should challenge the status quo.

  • Experience with infrastructure tools like Terraform, Helm, K8s, or similar.

  • Experience working with CI/CD systems and defining integration pipelines.