Search jobs > Toronto, ON > Application specialist

Senior Application Security Specialist

Infotek Consulting Services Inc.
Toronto, Ontario, Canada
$55 an hour (estimated)
Full-time

Infotek Consuting is searching for a Senior Application Security Consultant - this is a hybrid assignment based in Toronto

Looking for a Security Consultant (minimum 10 years of experience), with Application Security as the focus using any / all of the following tools : Veracode, Checkmarx, NowSecure, Fortify, Snyk, Burp Suite, Zap and working with any of the following domains SAST, MAST, SCA, DAST.

Knowledge of Owasp and Banking / Financial experience are also important

Project : The Security Architect will work closely with development and engineering, devOps, Security Product Management and other application owner teams across the organization to integrate security into the application development lifecycle right from requirements gathering to deployment to monitoring in production.

The role will drive the evolution of application security tooling and processes and define the corresponding strategy and roadmap for the Bank.

Candidate Value Proposition :

Typical Day in the Role :

  • Collaborate with stakeholders across the Bank - technology, application security product, security advisory, fraud, compliance and business channel teams - to drive the product features and roadmap in application security domains like SAST, MAST, SCA, DAST etc across the Bank.
  • Policies for SCA Security Policies, Licensing Policies and Operational Policies
  • Mobile App Publishing coordinate with stakeholders to define the minimum-security requirements for publishing a Mobile app to the App Store (Google Play store, Apple etc)
  • Continuously evolve app sec product features based on industry best practices and emerging security threats
  • Govern and define DevOps pipeline and developer tooling use cases to integrate with enterprise app sec products
  • Will work closely with multiple cross enterprise teams to gather requirements and the adoption of new security products.
  • Implementation and operations governance based on the defined enterprise standard solution architecture and design patterns
  • Co-ordinate efforts from business and technology teams.
  • Communicate regularly with various business channels on the progress made for various projects in the pipeline

Must Have Skills / Requirements :

  • 10+ years’ experience in IT Security with focus on application security and / or devops
  • 3+ years product management or similar experience with AppSec domains like SAST, MAST, SCA, DAST and / or tools like Veracode, Checkmarx, NowSecure, Fortify, Snyk, Burp Suite, Zap etc
  • 3+ years’ experience with documenting process, requirements and product information
  • General knowledge of threat modeling, vulnerability management and risk assessment
  • General knowledge of OWASP Top 10, Mitre, CVE / CVSS
  • 3+ years’ experience in the financial industry

Nice to have Skills :

  • Experience with deployment and managing IaaS, PaaS & SaaS solutions
  • Experience with infrastructure as code (IaC)
  • Experience with API Security
  • 3+ years’ experience with popular CI / CD tools like Jenkins, Azure DevOps, GitLab CI / CD, CircleCI
  • 3+ years’ experience with CI / CD Pipeline tools and processes like BitBucket / GitHub, Jfrog Artifactory, Ansible, Confluence, Jira, Bamboo etc
  • Experience building business cases demonstrative value of a product and cost-benefit analysis

Security certifications like CISSP

18 days ago
Related jobs
Maarut Inc
Toronto, Ontario

TheCyber Security Centre of Excellence (COE) is seeking one SeniorCyber Security Specialists to support in strengthening Ontario scyber security infrastructure as the province collectively movesmore government programs and servicesonline:. Adviseson the identification analysis and resolution of spec...

Services de Gestion Quantum Ltée
Toronto, Ontario

Position: Senior Cyber Security Risk Specialist Location: Toronto, Ontario Job Type: Full-time permanent, Hybrid Our client, a leader in the retail space, is currently seeking a Senior Cyber Security Risk Specialist. Policy Development and Awareness: Contribute to the development of cybersecurity po...

Randstad Canada
Toronto, Ontario

Applications Specialist collaborates with the client to install, administer, configure, update, maintain, and integrate EcoSys project controls software. Applications Specialist collaborates with the client to install, administer, configure, update, maintain, and integrate EcoSys project controls so...

Amazon Development Centre Canada ULC
Toronto, Ontario

AWS Security is looking for an Application Security Engineer to help validate that our services, applications, and websites are designed and implemented to the highest security standards. Minimum of 5 years of experience and understanding of security engineering, system and network security, authent...

Amazon
Toronto, Ontario

Amazon is seeking a talented and seasoned Senior Applications Security Engineer to focus on securing the ecosystem that powers Amazon Customer Service (CS). As a senior security engineer, you will help define short-term and long-term security strategy. Perform security reviews including secure desig...

Randstad Canada
Toronto, Ontario

Applications Specialist collaborates with the client to install, administer, configure, update, maintain, and integrate P6 project controls software. Applications Specialist collaborates with the client to install, administer, configure, update, maintain, and integrate P6 project controls software. ...

Sobeys
Mississauga, Ontario

Your role will be covering various Cyber Security domains including but not limited to Network Security, Cloud Security, Data security, Identity & Access Management, Application Security, Cyber Security, Endpoint Security and Compliance. Strong working knowledge and hands-on experience in one or...

Meridian
Etobicoke, Ontario

This role supports the Director - Fraud Management & Corporate Security ("FMCS"), Manager - Corporate Security, and the FMCS team in execution of their mandate for Meridian Credit Union, motusbank, and Meridian OneCap (collectively “Meridian”). Assist with Corporate Security investigations (inte...

Maarut Inc
Toronto, Ontario

Experiencewith DataPower security security policies authentication andauthorization. Experiencewith DataPower security security policies authentication andauthorization;. Experience creating complex Web Service Experiencewith Unix scripting & deployment automation Experience withDataPower security, ...

S.i. Systems
Toronto, Ontario

Position Title: Application Support Analyst - Senior. Providing technical expertise for small to medium complex projects and initiatives as they relate to the implementation and support of application and infrastructure technology for a multi-platform environment including: Enterprise Data Hub (EDH)...