ezCater

Associate Security Engineer (Remote)

ezCater$84K — $104K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 1-3 years in security engineering, application security, cloud security, IT, GRC, security operations, software engineering, or related field.
  • Foundational knowledge of security concepts, including access control, secure development, and incident response.
  • Basic scripting, API, automation, data analysis, and cloud platform skills.
  • Strong detail orientation and organizational skills for managing documentation and tasks.
  • Ability to articulate security risks to both technical and non-technical stakeholders.
  • Collaboration and service-oriented attitude with a proactive mindset.

Responsibilities

  • Support security reviews, architecture discussions, and risk assessments with Engineering and IT.
  • Identify and remediate various security risks across applications and infrastructure.
  • Integrate security measures into software and systems lifecycle in collaboration with teams.
  • Build automation and improve processes for efficient security management.
  • Assist in triaging and tracking vulnerabilities during remediation efforts.
  • Support incident response activities and security configuration reviews.
  • Contribute to data security practices and compliance with GRC requirements.

Benefits

  • Innovative work environment with engaged colleagues.
  • Opportunities for career growth and work/life balance.
  • Market competitive salary and stock options.
  • Flexible paid time off policy and 12 paid holidays.
  • Comprehensive health, dental, and disability insurance.
  • Flexible work arrangement (remote or hybrid) and employee meal programs.
Full Job Description
The Associate Security Engineer will help improve ezCater's security posture across products, systems, data, and business operations. This is a hands-on role for someone who wants to learn how security requirements become practical engineering solutions, technical controls, automation, monitoring, documentation, and measurable risk reduction.
You'll work closely with Security Engineering teammates and partner with Engineering, IT, Data, Legal, and other business teams. You'll contribute across product security, vulnerability management, data protection, AI security, security operations, and governance, risk, and compliance. The primary focus will develop based on team and business needs, with opportunities to build depth in areas that match your interests and strengths.

What You'll Do:
  • Partner with Engineering and IT
    • Support security reviews, architecture discussions, threat modeling, and risk assessments for products, services, integrations, and technology partners.
    • Help identify and remediate application, infrastructure, identity, configuration, and data security risks.
    • Partner with Engineering and IT teams to integrate security into the software and systems lifecycle.
    • Translate security requirements into practical controls, secure configurations, workflows, monitoring, or policy-as-code where appropriate.
    • Provide clear, actionable guidance to technical and non-technical stakeholders.
    Build security automation and tooling
    • Identify manual, repetitive, or error-prone security processes and recommend practical improvements.
    • Build or improve lightweight automation, scripts, dashboards, workflows, and integrations that make security work more reliable and scalable.
    • Use APIs, cloud platforms, security tools, and data analysis to investigate issues and improve visibility.
    • Contribute to monitoring and alerting that helps the team detect, prioritize, and respond to security risks.
    • Document technical decisions, procedures, runbooks, and implementation guidance.
    Support vulnerability management and security operations
    • Help triage, investigate, prioritize, and track vulnerabilities through remediation.
    • Support incident response activities, including investigation, containment, remediation, documentation, and follow-up improvements.
    • Assist with security configuration reviews, access reviews, and other recurring activities that reduce operational risk.
    • Help improve the quality of security findings by connecting technical severity, exploitability, business impact, and practical remediation paths.
    • Contribute to team metrics, operating cadences, and continuous-improvement activities.
    Contribute to data security, AI security, and GRC
    • Help maintain and improve technical and operational controls for data protection, access, sharing, retention, classification, and handling.
    • Assist with evaluating and securing AI-enabled tools and workflows, including access, data protection, monitoring, usage controls, and safe adoption practices.
    • Support control documentation, evidence collection, testing, remediation tracking, and audit readiness for SOC 2, PCI-DSS, SOX, ITGC, and internal security requirements.
    • Help identify gaps between documented requirements and how systems or teams operate in practice.
    • Work with GRC and partner teams to make security and compliance requirements clearer, more observable, and easier to implement.

What You Have:

  • 1-3 years of experience in security engineering, application security, cloud security, IT, GRC, security operations, software engineering, or a related field; equivalent practical experience is welcome.
  • Foundational understanding of security concepts such as access control, secure software development, vulnerability management, identity, network or cloud security, data protection, incident response, or risk management.
  • Basic experience or strong interest in scripting, APIs, automation, data analysis, cloud platforms, AI tooling, or security engineering workflows.
  • Ability to investigate questions, identify missing information, troubleshoot issues, and follow problems through to resolution.
  • Strong attention to detail and the ability to organize technical findings, tasks, documentation, and follow-up across multiple workstreams.
  • Comfort working with developer workflows, ticketing systems, documentation platforms, cloud services, security tools, or GRC tools.
  • Ability to explain security risks and recommendations clearly to technical and non-technical partners.
  • A collaborative, service-oriented approach and a proactive, curious, and pragmatic mindset.
  • A continuous-learning mindset and interest in developing depth across multiple security domains.
  • Ability to travel up to 5 days per quarter for Together Weeks, team gatherings and other events, when applicable.

The national total targetcash compensation range for this position, including base salary and bonus target, is $84,000-$104,000 annually.*

*Please note: Final offer amounts are determined by multiple factors, including prior experience, expertise and region & may vary from the amount above. This range does not represent additional compensation benefits (such as equity, 401K or medical, dental or vision insurance).

ezCater does not sponsor applicants for work visas or legal permanent residence.

What You'll Get from Us:

You'll get a terrifically compelling experience in an innovative, high performing environment. You'll get to work with engaged and passionate colleagues on challenging and impactful projects. You will have opportunities to grow in your career, and work in a place that values work/life harmony.

Oh, and you'll get all this: Market competitive salary, stock options that you'll help make worth a lot, 12 paid holidays, flexible PTO, 401K with ezCater match, health/dental/FSA, long-term disability insurance, mental health and family planning resources, remote-hybrid work from our awesome Boston office OR your home OR a mixture of both home and office, a tremendous amount of responsibility and autonomy, wicked awesome co-workers, employee meal program (and many more goodies) when you're in our office, and knowing that you helped transform the food for work space.

#BI-Remote

About ezCater

ezCater is an online marketplace for business catering. The company was founded in 2007 by Stefania Mallett and Briscoe Rodgers and is based in Boston, Massachusetts. ezCater connects businesses with local caterers and restaurants, providing a streamlined ordering and delivery process. The company has partnerships with over 60,000 restaurants and caterers across the United States and has served over 2.5 million business customers. ezCater has raised over $300 million in funding and was valued at $1.25 billion in 2019.
Learn more about ezCater
Size
1,000 employees
Industry
Founded
2007

Similar Jobs

More Jobs at ezCater

More Information Technology Jobs

Find similar Associate Security Engineer (Remote) jobs: