gm
.careers
Back to Jobs
RO
Robinhood

Senior Security Engineer, AI Vulnerability Management

Toronto, CanadaFull-timePosted March 19, 2026

About this role

Join us in building the future of finance.

Our mission is to democratize finance for all. An estimated $124 trillion of assets will be inherited by younger generations in the next two decades. The largest transfer of wealth in human history. If you’re ready to be at the epicenter of this historic cultural and financial shift, keep reading.

About the team + role

We are building an elite team, applying frontier technologies to the world’s biggest financial problems. We’re looking for bold thinkers. Sharp problem-solvers. Builders who are wired to make an impact. Robinhood isn’t a place for complacency, it’s where ambitious people do the best work of their careers. We’re a high-performing, fast-moving team with ethics at the center of everything we do. Expectations are high, and so are the rewards.

The Vulnerability Management team’s mission is to reimagine security as an engineering and design challenge by building scalable, automated defense systems that proactively identify and reduce risk. The team is driving a shift toward an intelligence-driven defense model, leveraging advanced technologies like AI and machine learning to move beyond traditional “scan-and-patch” approaches and make security seamless for developers.

As a Senior Vulnerability Management Engineer, you will lead the transformation of vulnerability management into a self-scaling security platform. You’ll architect next-generation automated defense systems, using Agentic AI and machine learning to continuously discover, prioritize, and remediate risk at scale—helping make security efficient, proactive, and embedded into the development lifecycle.

This role is based in our Toronto, Canada office(s), with in-person attendance expected at least 3 days per week.

At Robinhood, we believe in the power of in-person work to accelerate progress, spark innovation, and strengthen community. Our office experience is intentional, energizing, and designed to fully support high-performing teams.

What you’ll do

  • Set Strategic RBVM Vision: Act as the technical lighthouse, defining the multi-year roadmap and driving the move toward Risk-Based Vulnerability Management (RBVM), prioritizing vulnerabilities based on real-world exploitability and business context.
  • Architect Agentic AI Systems: Design and deploy AI agents that autonomously triage findings, correlate threat intelligence, and generate production-ready remediations (e.g., automated Pull Requests for dependency updates and config drift).
  • Build Exposure Intelligence: Develop systems that correlate vulnerabilities with runtime context and infrastructure topology (Kubernetes/AWS) to accurately model real-world blast radius and ensure engineers only fix what is actually exploitable.
  • Automate Triage & Self-Healing: Create "paved roads" and CI/CD guardrails that prevent specific vulnerability categories from ever reaching production, reducing manual toil for the entire engineering organization.
  • Data-Centric Visibility: Build high-fidelity dashboards using LLM-powered summarization to translate complex security signals into actionable insights for engineering leadership.
  • Lead Emergency Response: Orchestrate the technical response to high-impact zero-days by rapidly performing cross-environment blast-radius analysis.
  • Drive Execution Ownership: Take full ownership of operational security work, ensuring that critical vulnerabilities are systematically eradicated while maintaining high engineering velocity.

What you bring

  • Experience: 5+ years in Security Engineering with a track record of leading high-impact automation or security platform initiatives at a Senior or Staff level.
  • AI & Agentic System Fluency: Hands-on experience building or deploying agentic systems or LLM orchestration frameworks (e.g., LangChain, AutoGPT) to solve complex security or engineering problems at scale.
  • Bug Bounty & Exploit Proficiency: Active experience participating in or managing Bug Bounty programs; a deep understanding of how attackers exploit vulnerabilities and how to translate those findings into systemic fixes.
  • Engineering Excellence: Strong software engineering background with proficiency in Go or Python and a history of building scalable, API-driven security tooling.
  • Modern Infrastructure Depth: Deep knowledge of securing AWS and Kubernetes-based architectures.
  • Vulnerability Domain Knowledge: High familiarity with vulnerability categories, exploitability, and modern risk frameworks (CVSS, EPSS, CISA KEV).
  • Detection Ecosystems: Experience with modern platforms like Snyk, Semgrep, Wiz, EndorLabs, or TruffleHog.
  • Velocity Mindset: A commitment to reducing security friction and a track record of working effectively with high-velocity engineering teams.

Nice to have

  • Fintech Experience: Experience navigating security in highly regulated or high-growth financial environments.
  • Security as Code: Experience implementing "Security as Code" within large-scale CI/CD environments.

What we offer

  • Challenging, high-impact work to grow your career
  • Performance driven compensation with multipliers for outsized impact, bonus programs, and equity ownership
  • Top tier benefits to fuel your work, including supplemental health insurance, ancillary insurance, and mental health support programs
  • Lifestyle wallet - a highly flexible employer-paid benefits spending account expenses beyond traditional benefits such as wellness, childcare, learning, and more.
  • Time off to recharge including company holidays, paid time off, sick time, paid volunteer time off, parental leave, and more!
  • Exceptional office experience with catered meals, events, and comfortable workspaces.
  • Monthly commuter stipend to help offset in-office commuting costs

Our team is committed to providing an inclusive and welcoming interview experience for all candidates. If you require a specific accommodation during the application or interview process due to a physical or mental condition, please complete this Applicant Accommodation Form to notify our team. The form should only be completed if you need a specific accommodation.

AI Usage Disclosure: Robinhood uses artificial intelligence (AI) tools to support parts of our recruiting process. These tools enhance the efficiency and consistency of our hiring process; however, all hiring decisions are made by our hiring teams.

Vacancy Notice: This job posting represents an existing vacancy that we are actively seeking to fill.

In addition to the base pay range listed below, this role is also eligible for bonus opportunities + equity + benefits.

Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected base pay range for this role is based on the location where the work will be performed.

Base Pay Range:

Toronto, ON$165,750—$195,000 CAD

Click here to learn more about our Total Rewards, which vary by region and entity.

If our mission energizes you and you’re ready to build the future of finance, we look forward to seeing your application.

Robinhood provides equal opportunity for all applicants, offers reasonable accommodations upon request, and complies with applicable equal employment and privacy laws. Inclusion is built into how we hire and work—welcoming different backgrounds, perspectives, and experiences so everyone can do their best. Please review the Privacy Policy for your country of application.

Requirements

  • Experience: 5+ years in Security Engineering with a track record of leading high-impact automation or security platform initiatives at a Senior or Staff level.
  • AI & Agentic System Fluency: Hands-on experience building or deploying agentic systems or LLM orchestration frameworks (e.g., LangChain, AutoGPT) to solve complex security or engineering problems at scale.
  • Bug Bounty & Exploit Proficiency: Active experience participating in or managing Bug Bounty programs; a deep understanding of how attackers exploit vulnerabilities and how to translate those findings into systemic fixes.
  • Engineering Excellence: Strong software engineering background with proficiency in Go or Python and a history of building scalable, API-driven security tooling.
  • Modern Infrastructure Depth: Deep knowledge of securing AWS and Kubernetes-based architectures.
  • Vulnerability Domain Knowledge: High familiarity with vulnerability categories, exploitability, and modern risk frameworks (CVSS, EPSS, CISA KEV).
  • Detection Ecosystems: Experience with modern platforms like Snyk, Semgrep, Wiz, EndorLabs, or TruffleHog.
  • Velocity Mindset: A commitment to reducing security friction and a track record of working effectively with high-velocity engineering teams.
  • Fintech Experience: Experience navigating security in highly regulated or high-growth financial environments.
  • Security as Code: Experience implementing "Security as Code" within large-scale CI/CD environments.
  • Base pay for the successful applicant will depend on a variety of job-related factors, which may include education, training, experience, location, business needs, or market demands. The expected base pay range for this role is based on the location where the work will be performed.
  • Base Pay Range:
  • Toronto, ON$165,750—$195,000 CAD
  • Click here to learn more about our Total Rewards, which vary by region and entity.
  • If our mission energizes you and you’re ready to build the future of finance, we look forward to seeing your application.
  • Robinhood provides equal opportunity for all applicants, offers reasonable accommodations upon request, and complies with applicable equal employment and privacy laws. Inclusion is built into how we hire and work—welcoming different backgrounds, perspectives, and experiences so everyone can do their best. Please review the Privacy Policy for your country of application.

Benefits

  • Challenging, high-impact work to grow your career
  • Performance driven compensation with multipliers for outsized impact, bonus programs, and equity ownership
  • Top tier benefits to fuel your work, including supplemental health insurance, ancillary insurance, and mental health support programs
  • Lifestyle wallet - a highly flexible employer-paid benefits spending account expenses beyond traditional benefits such as wellness, childcare, learning, and more.
  • Time off to recharge including company holidays, paid time off, sick time, paid volunteer time off, parental leave, and more!
  • Exceptional office experience with catered meals, events, and comfortable workspaces.
  • Monthly commuter stipend to help offset in-office commuting costs
  • Our team is committed to providing an inclusive and welcoming interview experience for all candidates. If you require a specific accommodation during the application or interview process due to a physical or mental condition, please complete this Applicant Accommodation Form to notify our team. The form should only be completed if you need a specific accommodation.
  • AI Usage Disclosure: Robinhood uses artificial intelligence (AI) tools to support parts of our recruiting process. These tools enhance the efficiency and consistency of our hiring process; however, all hiring decisions are made by our hiring teams.
  • Vacancy Notice: This job posting represents an existing vacancy that we are actively seeking to fill.

Job Overview

Employment Type
Full-time
Seniority Level
Senior
Location
Toronto, Canada

About the Company

RO
Robinhood
enterprise

Commission-free trading platform for stocks, options, and crypto.

Get Job Alerts

Weekly updates matching your interests.