Logo for Kami

Security Engineer

Role overview

Qualifications

  • 5-8+ years of experience in Application Security or Security Engineering role
  • Proven experience managing technical debt and legacy code paths
  • Excellent written skills with a knack for building clean security playbooks
  • Familiarity with cloud-native architectures and automated security testing systems

Responsibilities

  • Utilize automated scanners and internal risk processes to hunt down defects
  • Collaborate with engineering teams to assist in troubleshooting and defect remediation
  • Draft security playbooks and remediation documentation for internal distribution
  • Embed automated security scanning tools and guardrails into the software development lifecycle

About the company

Kami logo

Kami

E-Learning / EdTech

We come to work everyday to help foster a positive learning journey for everyone. Kami was developed in Aotearoa, New Zealand by four university friends who decided to make a difference. Ten years later, we’ve grown into a team of over 100 Kami-leons with a shared goal of supporting classroom heroes and leveling the playing field so that all students, no matter their age, grade, or ability, can love learning. We’re proud to have been named one of Time magazine’s most influential companies in 2022 and included in the Deloitte Fast 50 as the fastest growing company and fastest growing exporter in 2021. Our investors include leading Australian venture capitalist firm Right Click Capital, CapitalPitch, New Zealand-based Flying Kiwi Angels, New Zealand Venture Investment Fund, and notable Silicon Valley investors such as Sam Altman of Y Combinator and Scott Nolan of Founders Fund. Our Team: We believe that having a dedicated, enthusiastic, and non-hierarchical team can achieve remarkable things — we’re well on-track to proving it, too. Our company culture embraces diversity, compassion, transformation, and most importantly, fun! With these values, we're working to add a little magic to education so that teachers and students can achieve so much more together. We thrive in an encouraging environment where people can share ideas, generate solutions, and grow. Join us in building the future of education. Get in touch at careers@kamiapp.com, we’d love to hear from you!

Company details

Company typeSME
IndustryE-Learning / EdTech
Company size51 - 200

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

About Kami
Kami is a thriving organisation filled to the brim with talented, creative, and passionate people! It’s hard not to love what you do when our leading digital classroom platform offers meaningful solutions to over 70 million users worldwide, empowering students and supporting teachers!


You’ll be joining at a pretty magical time. Kami’s user base is growing by the day. With over 170 team members across the world, we couldn’t be prouder of the accomplishments and milestones we’ve achieved to date. Now, this is your chance to join our team and become an integral member of Kami’s growth, while shaping your own future (and having fun doing it)!

The Opportunity

As a Security Engineer at Kami, you won't just be identifying risks and writing reports—you will be the one actively fixing them. We are expanding our in-house security team and need a hands-on engineer who thrives on pure engineering remediation. In this role, you will leverage our automated security tools, scanning platforms, and risk/vulnerability processes to pinpoint faults and defects across our systems and applications. 

Instead of just passing off a ticket, you will jump directly into the codebase to patch those vulnerabilities, refactor out-of-life or legacy code, upgrade outdated libraries and dependencies to ensure our environment is secure and modernized. You will act as a core technical resource for the broader engineering team, writing clear security documentation and playbooks, and actively assisting and guiding developers to successfully remediate defects within their own workflows.

You will be the ultimate bridge between automated threat detection and active engineering execution, embedding robust security guardrails directly into our software development life cycle. If you are a builder who loves deep, code-level troubleshooting, enjoys replacing stale legacy infrastructure with secure code, and wants to protect a platform supporting over 50 million global users, this is the perfect place to make a massive impact.


What You’ll Do

Vulnerability & Legacy Code Remediation

  • Utilize automated scanners and internal risk processes to hunt down defects. Actively dive into code bases to update outdated libraries, rewrite out-of-life legacy components, and resolve critical technical debt.
  • Ensure continuous modernization of Kami’s codebase by wiping out vulnerabilities stemming from deprecated packages and old dependencies before they can be exploited.

Developer Support & Cross-Team Guidance

  • Collaborate actively with engineering pods, reviewing their security posture and directly assisting them in troubleshooting and executing defect remediation.
  • Accelerate internal security engineering cycles by clearing remediation blockers for engineering teams, turning security into a supportive peer function.

Security Documentation & Playbooks

  • Draft comprehensive, easy-to-follow security playbooks, coding standards guidelines, and remediation documentation for internal distribution.
  • Create a standardized knowledge base that upskills the entire engineering group on modern secure coding practices and streamlined defect fixing.

Secure SDLC Integration

  • Embed automated security scanning tools, analysis processes, and proactive guardrails cleanly inside the active software development lifecycle.
  • Ensure systematic and early-stage identification of technical faults across applications, moving toward a continuous 'shift-left' security model.


Infrastructure Hardening

  • Implement and maintain robust cloud infrastructure protections, including customized firewalls, intrusion detection mechanisms, and advanced encryption protocols.
  • Preserve the absolute structural integrity of our global digital infrastructure, securely partitioning and safeguarding core assets. 

Incident Response Automation

  • Manage and execute the emergency incident response lifecycle, building automated logic to spot, flag, and contain system anomalies instantly.
  • Deliver rapid technical resolution timelines during active security incidents, significantly minimizing structural exposure or system downtime. 

What You’ll Bring

  • Hands-on Engineering Depth: You have 5-8+ years of experience in an Application Security or Security Engineering role. You don't just know how to run security scanners; you know how to read code, identify architectural flaws, and write the necessary fixes or scripts to resolve them.
  • Dependency & Legacy Management: Proven experience managing technical debt, identifying out-of-life or legacy code paths, and safely updating third-party libraries/dependencies without breaking production features.
  • Documentation & Collaboration Focus: Excellent written skills with a knack for building clean security playbooks. You enjoy working side-by-side with developers, pairing to debug technical issues, and assisting teams in pushing code fixes over the finish line.
  • Modern Tooling & Environments: Familiarity with cloud-native architectures, containerized applications, CI/CD integrations, and configuring automated security testing systems (SAST/DAST/SCA).
  • Proactive Problem Solving: You possess a strong builder mindset. When a security weakness is exposed, you don't just pass off a ticket—you enjoy digging into the architecture to implement lasting infrastructure or code-level safeguards.
  • Application Security Fundamentals: Exposure to application security fundamentals, specifically with OWASP, is required or preferred.
  • Network & Deployment: Experience with network configuration and application deployment is preferred.


Why Kami?
We’re building a high performance, best in class team to help capitalize on our exciting momentum, and continue scaling Kami's magic and making a difference to schools, students, and teachers. With Kami, you’ll have

  • people-first employer that is on an inspiring mission to build the future of education while changing the lives of millions.
  • High calibre and diverse team ranging from successful startup veterans, to Fortune 500 and big tech professionals.
  • Continuous learning and development opportunities, including subsidised course fees, certifications, conferences, and free access to Udemy and more.
  • A strong mission; the satisfaction of knowing you’re not only helping modern-day superheroes, aka teachers but also helping them shape the minds of future generations all across the globe.
  • Happy customers: Helping thousands of schools worldwide through the digital transformation of education for the 21st century. Just read our reviews.
  • Huge potential: Already used by 70M users in 175 countries. One of the most popular and fastest-growing EdTech platforms worldwide.

If you’re looking for a new challenge and the opportunity to impact the lives of millions, apply now!

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Security Engineer Related jobs

Other jobs at Kami

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.