Headquarters: Ontario, Canada (Remote)
About CircleCI Engineering
CI/CD has been solved. Now it's being reinvented. AI agents don't just run pipelines. They write code, trigger builds, interpret failures, and propose fixes. The interfaces that developers use to understand and trust that work don't exist yet. We're building them.
At CircleCI, our guiding principles aren't posters on a wall. We learn fast: we run experiments, accept failure, and scale what works. We think like the customer: every decision connects back to the developer sitting in front of a failing build at 2 am. We own the outcome: not just our slice of it, but the whole thing. If that's how you already work, you'll fit here.
Team-Agnostic Placement
We don't hire for a team. We hire for CircleCI. Where you land depends on where your strengths create the most leverage, and we figure that out together. You might own the CI pipeline experience, deploy and release tooling, notification infrastructure, monetization flows, AI agent surfaces, or the foundational web platform. The through line across all of it is the same: full-stack ownership, a high bar for craft, and work that directly shapes how tens of thousands of developers experience CircleCI every day.
What You'll Do
- Build AI-natively. AI is how we work. It’s not a productivity layer on top of engineering, but the default starting point for how problems get approached and solved.
- Invent new interfaces. Software delivery is being reinvented. Pipelines run autonomously, generate fixes, and surface results that need human judgment. The tools developers use to understand, trust, and act on that work don't exist yet. You'll define what they look like.
- Own the full stack. Build features end-to-end in Go, React, and TypeScript. You don't hand off at a layer boundary. You own the outcome.
- Obsess over craft. Reliability and responsiveness are design concerns, not afterthoughts. Care about how the interface holds up when stakes are high.
- Champion observability. Use Honeycomb, Datadog, and Rollbar to understand and improve your systems. Operational data drives stability, not just incident response.
- Pick up slack. You'll notice gaps and close them — not because you were asked, but because that's the standard we hold ourselves to.
What You'll Bring
- AI-native engineering practices. You use AI tools daily and can speak to what you've built, where they changed your approach, and where they fall short.
- A track record of shipping. You've built something real and put it in front of users. 3+ years of production full-stack experience.
- Full-stack depth. Strong React and TypeScript. Comfortable owning backend services in Go: API design, data modeling, service integration.
- System design. You think about architecture, not just features. You make conscious tradeoffs and document your reasoning.
- Production mindset. Latency, responsiveness, and reliability are design concerns. You're comfortable operating services in a distributed environment.
Sound like you?
You've stopped waiting for AI to mature and are already building with it, not as a productivity trick, but as a core part of how you think about problems. You care about the product as much as the code. You're drawn to work where the patterns don't exist yet and the best answer requires you to invent it. If that's how you already operate, we want to talk.
Security Operations Engineer
DevOps
DevOps · full time · worldwide
Headquarters: Ontario, Canada (Remote)
Security Operations Engineer
About the Team
The Security Operations team plays a critical role in protecting CircleCI’s infrastructure, product, and customer data against an evolving threat landscape. From incident response to hardening our cloud and CI/CD environments, the team works closely with engineering to keep CircleCI secure, resilient, and ready for what’s next.
About the Role
As a Security Operations Engineer, you’ll play a key role in protecting CircleCI’s infrastructure, product, and customer data against an evolving threat landscape increasingly shaped by AI-driven attacks and AI-augmented defenses. This intermediate-level role offers the opportunity to take meaningful ownership of security challenges, work closely with Engineering as a trusted security partner, and expand your impact across the organization. You’ll contribute to our security roadmap while leveraging AI tooling to advance how we detect, respond to, and automate security threats across CircleCI.
What You’ll Do:
Threat Detection & Incident Response
- Monitor, investigate, and respond to security threats across CircleCI’s cloud and application environments, using security and AI-assisted tooling to improve detection and triage.
- Participate in security risk assessments, incident response, post-incident reviews, and rotating on-call support, turning findings into stronger controls and processes.
Security Engineering & Architecture
- Build and maintain security tooling, controls, and automation across cloud, application, and CI/CD environments, following established security patterns and best practices.
- Identify vulnerabilities and configuration risks, contribute to security runbooks and compliance requirements, and develop a growing understanding of CircleCI’s security architecture.
AI & Security
- Incorporate AI-powered security tools into day-to-day workflows and help evaluate emerging technologies that can improve detection, response, and automation.
- Stay current on AI-specific security threats and contribute to responsible approaches for using AI in security operations.
Cross-Team Partnership & Ownership
- Partner with Engineering teams to understand security needs, provide practical guidance, and translate technical risks into clear, actionable recommendations.
- Contribute to security roadmap planning, technology evaluations, and team documentation while building strong relationships across Security and Engineering.
What You’ll Bring:
- 3+ years of security engineering or security operations experience, or equivalent demonstrated expertise.
- Hands-on experience with cloud, application, and CI/CD security, ideally in AWS, GCP, or Azure environments.
- Experience with security incident response and common security tooling, including EDR, CNAPP, SASE, vulnerability scanners, and log analysis.
- Ability to build and maintain security automation and tooling, with experience in languages or technologies such as Go, Python, or Terraform.
- Strong security judgment and problem-solving skills, with the ability to assess risk, make recommendations, and take action when information is incomplete.
- Hands-on experience using AI/ML-powered security tools in a production environment, with an understanding of where AI can improve security workflows and where human judgment remains essential.
Bonus Skills (Nice to Have)
- Familiarity with AI-specific threat categories (prompt injection, model supply chain risks, LLM abuse patterns).
- Experience secu
Senior Software Engineer
DevOps
DevOps · full time · worldwide
Headquarters: Remote, Ontario, Canada
About CircleCI Engineering
CI/CD has been solved. Now it's being reinvented. AI agents don't just run pipelines. They write code, trigger builds, interpret failures, and propose fixes. The interfaces that developers use to understand and trust that work don't exist yet. We're building them.
At CircleCI, our guiding principles aren't posters on a wall. We learn fast: we run experiments, accept failure, and scale what works. We think like the customer: every decision connects back to the developer sitting in front of a failing build at 2 am. We own the outcome: not just our slice of it, but the whole thing. If that's how you already work, you'll fit here.
Team-Agnostic Placement
We don't hire for a team. We hire for CircleCI. Where you land depends on where your strengths create the most leverage, and we figure that out together. You might own the CI pipeline experience, deploy and release tooling, notification infrastructure, monetization flows, AI agent surfaces, or the foundational web platform. The through line across all of it is the same: full-stack ownership, a high bar for craft, and work that directly shapes how tens of thousands of developers experience CircleCI every day.
What You'll Do
- Build AI-natively. AI is how we work. It's not a productivity layer on top of engineering, but the default starting point for how problems get approached and solved.
- Set technical direction. You define the approach others build from. When the problem is complex or the answer isn't obvious, you're the person who leads the design discussion, writes the ADR, and makes the call.
- Invent new interfaces. Software delivery is being reinvented. Pipelines run autonomously, generate fixes, and surface results that need human judgment. The tools developers use to understand, trust, and act on that work don't exist yet. You'll define what they look like and establish the patterns the team builds on.
- Own the full stack. Build features end-to-end in Go, React, and TypeScript. You don't hand off at a layer boundary. You own the outcome.
- Obsess over craft. Reliability and responsiveness are design concerns, not afterthoughts. Care about how the interface holds up when stakes are high and hold your team to that same standard.
- Champion observability. Use Honeycomb, Datadog, and Rollbar to understand and improve your systems. Operational data drives stability, not just incident response.
- Close gaps and fix the conditions that created them. You'll notice gaps and close them. When a gap reflects something broken in how the team works, you fix that too.
What You'll Bring
- AI-native engineering practices. You use AI tools daily and can speak to what you've built, where they changed your approach, and where they fall short.
- A track record of shipping. You've built something real and put it in front of users. 5+ years of production full-stack experience, with latency, responsiveness, and reliability treated as design concerns, not afterthoughts.
- Full-stack depth. Strong React and TypeScript. Comfortable owning backend services in Go: API design, data modeling, service integration.
- System design. You lead architectural decisions on complex systems. You make conscious tradeoffs, document your reasoning, and create the foundation others build on.
- Adaptability. You don't just thrive in ambiguity, you reduce it for others. You turn unclear requirements into a direction the team can execute on.
- Technical leadership. You mentor engineers,