We're looking for a Senior Security Engineer to strengthen Later's company-wide security posture through hands-on engineering, thoughtful collaboration, and pragmatic standards. This role blends deep security expertise with strong software engineering skills, with a focus on application security, cloud and infrastructure security, secure development practices, vulnerability management, compliance enablement, and security improvements across our corporate systems and business operations. You'll partner closely with teams across Engineering, Infrastructure, Product, IT, Legal, People, Finance, and other business functions to embed security into Later's systems, tools, workflows, and operating practices. A core focus of this role is helping Later mature its security capabilities in support of SOC 2 and other compliance expectations through practical controls, automation, evidence-ready processes, and clear guidance that works across the company. This role is ideal for a senior security practitioner who thinks like a defender, builds like a software engineer, and leads through influence across both technical and non-technical teams
Assess and continuously improve Later's overall security posture across applications, infrastructure, cloud environments, corporate systems, vendor tooling, and business workflows
Define and implement scalable security standards, best practices, and guardrails that support SOC 2 readiness through practical, automated, and auditable solutions
Partner with Engineering, Infrastructure, IT, Product, Legal, People, Finance, and business leaders to align security priorities with company goals, risk reduction, and delivery timelines
Translate SOC 2 and related compliance requirements into sustainable technical and operational controls, procedures, and evidence collection practices
Identify security gaps across the company, prioritize remediation efforts, and help teams make pragmatic, risk-based decisions
Support company-wide security awareness, secure operating practices, and adoption of security controls across business teams
Partner with teams across the company to identify, understand, and fix security issues in a collaborative, non-blocking way
Provide pragmatic security guidance on designs, implementations, vendor tools, operational practices, and business workflows
Communicate security risks, tradeoffs, and recommendations clearly across technical and non-technical audiences
Embed security into development workflows, corporate systems, and company operating practices without slowing teams unnecessarily
Support SOC 2 and related compliance efforts through automation, well-defined controls, reliable evidence practices, and cross-functional coordination
Within the first 90 days, you've completed a security posture assessment, identified the highest-priority gaps, and have a remediation roadmap that's been reviewed and socialized with key stakeholders across Engineering, IT, and Leadership
By 6 months, core SOC 2 controls are documented, automated where possible, and evidence collection is running reliably without manual heroics from any single team
Security is embedded into Later's CI/CD pipelines, with scanning, secret management, and container security integrated and maintained as a standard part of the development lifecycle
Teams across Engineering, IT, and the business have a clear point of contact for security questions, a shared understanding of the risk landscape, and security guidance that helps them move faster, not slower
Later's security observability has materially improved: logging, alerting, and detection coverage are in place, and the company has a documented, practiced incident response process
Driven by Impact: You deliver results that matter, prioritizing high-value work, meeting deadlines, and adapting quickly while keeping outcomes clear
Strategic & Customer-Centric: You anticipate risks and opportunities, connect decisions to long-term growth, and build trust through proactive insights
Curious & Growth-Oriented: You seek knowledge, ask sharp questions, and apply learnings fast, challenging the status quo with a mindset of improvement
Collaborative & Resilient: You thrive in change by staying resourceful, solution-focused, and positive, removing roadblocks, sharing insights, and keeping morale high
Accountable & Honest: You own your work, hold yourself and others to a high bar, and use transparent feedback to drive growth
Emotionally Intelligent: You build trust through empathy and collaboration, foster inclusion, and inspire others with grit, optimism, and integrity
We have offices in Boston, MA; Vancouver, BC; and Vancouver, WA. For select positions, we are open to hiring fully remote candidates. We post our positions in the location(s) where we are open to having the successful candidate be located
At Later, we are committed to fostering a culture rooted in an inclusion-first mindset at every level of the company, embracing the importance of hiring and building teams for culture add rather than culture fit. We openly build and maintain unbiased hiring, pay, and promotion practices to create a foundation for an equitable workplace, paving the way for systemic change