Talent.com
First National
Application Security Analyst, Information SecurityFirst National • Toronto, ON, Canada
Application Security Analyst, Information Security

Application Security Analyst, Information Security

First National • Toronto, ON, Canada
Il y a plus de 30 jours
Salaire
45,00 $CA –65,00 $CA par heure
Type de contrat
  • Temps plein
Description de poste

We are hiring an Application Security Analyst, Information Security!

The Role:

We're seeking an Application Security Analyst well-versed in risk analysis, vulnerability assessment methodologies, and information security concepts. Your role involves supporting security risk assessments for both internally developed and third-party/open-source software, setting up security processes, and educating various application teams within the organization. You'll be integral in documenting and developing security controls while ensuring compliance with established frameworks.

Reporting To:

Application Security Manager

Full-Time/Part- Time:

Full-time

Posting Date:

March 5, 2024

Closing Date:

April 5, 2024

Hours of Work:

8:30 – 5:00

Grade:

Office Location:

Toronto, ON

Great location! Steps away from the main public transit station

What we offer:

Highly competitive compensation package which includes, base salary, bonus, benefits, and career advancement opportunities!

*Eligibility for benefits is dependent on the terms of employment

What you will do:

  • Analyzing and documenting processes, policies, controls, and standards to comply with security frameworks and regulations.
  • Understand technical and architectural issues from a security perspective and provide recommendations.
  • Performing security reviews and provide insights throughout all phases of software development.
  • Support the Application Security Manager in managing internal and external stakeholders related to Application Security.
  • Managing and coordinating secure code reviews with stakeholders, encompassing Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST).
  • Conducting application vulnerability assessments for web, mobile, webservices and cloud applications
  • Performing or overseeing manual/automated application Vulnerability Assessment & Penetration Testing, and subsequently managing technical documentation including VAPT/Application Security tracking and reporting
  • Reviewing the configurations to Web Application Firewalls (WAF)
  • Work closely with the application development delivery teams to integrate security controls within the development pipeline ensuring an efficient development process with early security control gates.
  • Assisting the Security Leadership in collaborating with IT Groups to define, develop, communicate, and implement a comprehensive long-term application security roadmap. This involves creating threat models for web applications and supporting development teams across the agile Software Development Life Cycle (SDLC).
  • Assisting in the evaluation, selection, onboarding, and management of AppSec vendors and Solutions

The Requirements Needed:

  • Strong grasp of application design and architecture
  • Proficiency in manual and automated penetration testing methods/tools (, Burp Suite, Fortify, Backtrack Kali, Metasploit Framework)
  • Knowledge of programming languages (.Net, C#, JavaScript, etc.), cloud platforms (, Azure), and database technologies in the security domain
  • Familiarity with WAF technologies, security frameworks (OWASP-TOP 10, SANs-TOP 25, CWE), and participation in Bug Bounties & Capture the Flag (CTF) would be beneficial.

Transferable Skills:

  • Excellent verbal communication
  • Excellent written skills for preparing reports and briefings.
  • Excellent analytical reasoning
  • Problem-solving approach

Education:

• Post-secondary education, University education and Technical Certifications required.

• Certifications and Skills:

  • Preference will be given to candidates to have CISSP.
  • Good to have Offensive Security Certified Professional (OSCP)

The team you will join:

Founded in 1988, First National is one of Canada’s largest non-bank lenders. We provide residential mortgages exclusively through our mortgage broker channel and service commercial clients through our national origination team of empowered advisors.

At First National, It’s in our Nature is our rallying cry. It underlies our values, beliefs, and how we show up for each other, our clients, our partners and the community. Our nature defines who we are and guides every decision we make.

First National is proud to be an equal opportunity employer and is committed to diversity and inclusion regardless of race, color, religion, national origin, age, gender identity, physical or mental disability, sexual orientation or any other category protected by law.

First National supports requests for accommodation from applicants with disabilities; please contact Human Resources at .

We would like to thank all applications for their interest, but only candidates selected for an interview will be contacted.

#FNLOON

Créer une alerte emploi pour cette recherche

Application Security Analyst, Information Security • Toronto, ON, Canada

Offres similaires

Application Security Engineer/Developer

Stryker CorporationToronto, ON, CA
Temps plein

Our Marsh Information Security team is seeking candidates for the following position based in NYC, Toronto or Louisville, KY and be onsite 3 days a week.The Application Security Engineer/Developer ... Voir plus

 • Offre sponsorisée

Information Security Governance Analyst

Ontario Medical AssociationToronto, ON, CA
Temps plein

Advance the cybersecurity landscape as an Information Security Governance Analyst.Focus on compliance oversight, risk management strategies, and security improvements in a flexible hybrid environme... Voir plus

 • Offre sponsorisée

Hybrid Information Security Analyst - 12-Month Contract

Canadian Investment Regulatory OrganizationToronto, ON, CA
Temporaire

A self-regulatory investment organization in Toronto seeks an experienced Information Security Analyst for a 12-month contract.The role involves implementing security programs, monitoring complianc... Voir plus

 • Offre sponsorisée

IT - Info Security Analyst - Expert

Apex SystemsToronto, ON, CA
Temps plein

Job Description# IT - Info Security Analyst - Expert· The Senior Consultant, AI Security Service Management will support enterprise AI security initiatives by evaluating and integrating AI security... Voir plus

 • Offre sponsorisée

Senior Information Security Analyst

ivari CanadaToronto, ON, CA
Temps plein

With more than 300+ employees across Canada, ivari is a company that’s making a difference in the world of life insurance.How? By finding and hiring employees who are passionate about helping peopl... Voir plus

 • Offre sponsorisée

Hybrid Security Analyst - Cloud Security & Incident Response

McCarthy TétraultToronto, ON, CA
Temps plein

A leading Canadian law firm is seeking a Senior Security Analyst to join their team in Toronto, Calgary, or Vancouver.The successful candidate will have at least 5 years of experience in Security A... Voir plus

 • Offre sponsorisée

Information Security Analyst

HaventreebankToronto, ON, CA
Temps plein

Haventree Bank is a private Canadian Schedule 1 bank specializing in alternative mortgage programs and insured GIC deposits.We help hardworking Canadians from coast-to-coast achieve homeownership b... Voir plus

 • Offre sponsorisée

Sr. Analyst, Information Security

Canadian Imperial Bank of CommerceToronto, ON, CA
Temps plein

Analyst, Information SecurityApplylocations: Toronto, ONtime type: Full timeposted on: Posted Todaytime left to apply: End Date: June 4, 2026 (7 days left to apply)job requisition id: 261... Voir plus

 • Offre sponsorisée

Principal Information Security Analyst

BenevityToronto, ON, CA
Temps plein

Benevity is looking for a Principal Information Security Analyst to join our Security Operations team.In this senior‑level role, you will provide technical leadership and operational oversight acro... Voir plus

 • Offre sponsorisée

Information and Applications Security Manager

Targeted TalentToronto, ON, CA
Temps plein +1

Information & Application Security Manager.Location: Remote with monthly Site Visits in Northeast BC.Own and shape the security strategy for a mission‑critical, 24/7 operating environment.High‑impa... Voir plus

 • Offre sponsorisée

Senior Application Security Engineer

CognizantToronto, ON, CA
Temps plein

Job Title - App Security Specialist.DevOps, with at least 2 - 3 years hands-on security exposure (secure coding, pipeline security, API security, threat modeling).Seniority level: Mid-Senior level.... Voir plus

 • Offre sponsorisée

Application Security Engineer/Developer

National Asset Mgmt IncorporatedToronto, ON, CA
Temps plein

Our Marsh Information Security team is seeking candidates for the following position based in NYC, Toronto or Louisville, KY and be onsite 3 days a week.The Application Security Engineer/Developer ... Voir plus

 • Offre sponsorisée

Information Security Analyst

Haventree BankToronto, ON, CA
Temps plein

Haventree Bank is a private Canadian Schedule 1 bank specializing in alternative mortgage programs and insured GIC deposits.We help hardworking Canadians from coast-to-coast achieve homeownership b... Voir plus

 • Offre sponsorisée

Information Security Analyst

Onico SolutionsRichmond Hill, York Region, CA
Permanent

The Information Security Analyst is responsible for the identification, investigation and resolution of security events across networks and Cloud environments; as well as for conducting vulnerabili... Voir plus

 • Offre sponsorisée

Information Security Analyst (1-Year Contract)

NumerisToronto, ON, CA
Temps plein

Numeris is Canada’s most trusted and authoritative source for broadcast measurement and consumer behaviour data.As well, the industry leading intelligence provider to broadcasters, advertisers, and... Voir plus

 • Offre sponsorisée

Info Security Analyst IV

ICONMAToronto, ON, CA
Temps plein

Location: Toronto, ON / Hybrid.Duration: months with possible extension.Pod structure; team members and contractor will work together.Validate security and mature the platform, performing yearly se... Voir plus

 • Offre sponsorisée

Security Analyst

Insight GlobalToronto, ON, CA
Temps plein

Insight Global is looking for an Information Security Consultant to assist a large financial services enterprise in creating frameworks to help the TPRM team understand how to intake data, document... Voir plus

 • Offre sponsorisée

Information Security Analyst

Compunnel, Inc.Toronto, ON, CA
Temps plein

We are seeking an experienced Information Security Analyst with strong expertise in Identity and Access Management (IAM) and SailPoint.The ideal candidate will be responsible for supporting identit... Voir plus

 • Offre sponsorisée

Information Security Analyst

ScotiabankToronto, ON, CA
Temps plein

The Cryptographic Services Analyst safeguards the organization’s cryptographic trust infrastructure by managing day‑to‑day operations and oversight for certificate, secrets, and cryptographic key s... Voir plus

 • Offre sponsorisée

Remote Information Risk & Security Analyst

DexianToronto, ON, CA
Télétravail
Temps plein

A leading IT services firm is seeking an Information Control Testing Specialist to manage information risk and ensure compliance with security policies.You will work on global initiatives, conduct ... Voir plus