Talent.com
Application Security Analyst, Information Security
Application Security Analyst, Information SecurityFirst National • Toronto, ON, Canada
Application Security Analyst, Information Security

Application Security Analyst, Information Security

First National • Toronto, ON, Canada
30+ days ago
Job type
  • Full-time
Job description

We are hiring an Application Security Analyst, Information Security!

The Role:

We're seeking an Application Security Analyst well-versed in risk analysis, vulnerability assessment methodologies, and information security concepts. Your role involves supporting security risk assessments for both internally developed and third-party/open-source software, setting up security processes, and educating various application teams within the organization. You'll be integral in documenting and developing security controls while ensuring compliance with established frameworks.

Reporting To:

Application Security Manager

Full-Time/Part- Time:

Full-time

Posting Date:

March 5, 2024

Closing Date:

April 5, 2024

Hours of Work:

8:30 – 5:00

Grade:

Office Location:

Toronto, ON

Great location! Steps away from the main public transit station

What we offer:

Highly competitive compensation package which includes, base salary, bonus, benefits, and career advancement opportunities!

*Eligibility for benefits is dependent on the terms of employment

What you will do:

  • Analyzing and documenting processes, policies, controls, and standards to comply with security frameworks and regulations.
  • Understand technical and architectural issues from a security perspective and provide recommendations.
  • Performing security reviews and provide insights throughout all phases of software development.
  • Support the Application Security Manager in managing internal and external stakeholders related to Application Security.
  • Managing and coordinating secure code reviews with stakeholders, encompassing Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST).
  • Conducting application vulnerability assessments for web, mobile, webservices and cloud applications
  • Performing or overseeing manual/automated application Vulnerability Assessment & Penetration Testing, and subsequently managing technical documentation including VAPT/Application Security tracking and reporting
  • Reviewing the configurations to Web Application Firewalls (WAF)
  • Work closely with the application development delivery teams to integrate security controls within the development pipeline ensuring an efficient development process with early security control gates.
  • Assisting the Security Leadership in collaborating with IT Groups to define, develop, communicate, and implement a comprehensive long-term application security roadmap. This involves creating threat models for web applications and supporting development teams across the agile Software Development Life Cycle (SDLC).
  • Assisting in the evaluation, selection, onboarding, and management of AppSec vendors and Solutions

The Requirements Needed:

  • Strong grasp of application design and architecture
  • Proficiency in manual and automated penetration testing methods/tools (, Burp Suite, Fortify, Backtrack Kali, Metasploit Framework)
  • Knowledge of programming languages (.Net, C#, JavaScript, etc.), cloud platforms (, Azure), and database technologies in the security domain
  • Familiarity with WAF technologies, security frameworks (OWASP-TOP 10, SANs-TOP 25, CWE), and participation in Bug Bounties & Capture the Flag (CTF) would be beneficial.

Transferable Skills:

  • Excellent verbal communication
  • Excellent written skills for preparing reports and briefings.
  • Excellent analytical reasoning
  • Problem-solving approach

Education:

• Post-secondary education, University education and Technical Certifications required.

• Certifications and Skills:

  • Preference will be given to candidates to have CISSP.
  • Good to have Offensive Security Certified Professional (OSCP)

The team you will join:

Founded in 1988, First National is one of Canada’s largest non-bank lenders. We provide residential mortgages exclusively through our mortgage broker channel and service commercial clients through our national origination team of empowered advisors.

At First National, It’s in our Nature is our rallying cry. It underlies our values, beliefs, and how we show up for each other, our clients, our partners and the community. Our nature defines who we are and guides every decision we make.

First National is proud to be an equal opportunity employer and is committed to diversity and inclusion regardless of race, color, religion, national origin, age, gender identity, physical or mental disability, sexual orientation or any other category protected by law.

First National supports requests for accommodation from applicants with disabilities; please contact Human Resources at .

We would like to thank all applications for their interest, but only candidates selected for an interview will be contacted.

#FNLOON

Create a job alert for this search

Application Security Analyst, Information Security • Toronto, ON, Canada

Similar jobs
Information Security Analyst

Information Security Analyst

CAA South Central Ontario • Markham
Full-time
Company: CAA SCO Systems & Services Inc.At CAA Club Group, we are passionate about keeping ourMemberssafe - whether they are on the road, at home, or travelling abroad.As atrusted Member-based orga...Show more
Last updated: 14 days ago • Promoted
Information Security Analyst

Information Security Analyst

CAA Club Group • Markham
Full-time
Company: CAA SCO Systems & Services Inc.As Canada's largest automobile association, we are passionate about keeping our Members safe - whether they are on the road, at home, or travelling abroad.Me...Show more
Last updated: 14 days ago • Promoted
Information Security Analyst

Information Security Analyst

Onico Solutions • Richmond Hill
Full-time +1
The Information Security Analyst is responsible for the identification, investigation and resolution of security events across networks and Cloud environments; as well as for conducting vulnerabili...Show more
Last updated: 30+ days ago • Promoted
Cyber Security Analyst | Apple

Cyber Security Analyst | Apple

Sky States • Toronto
Full-time
We are seeking a skilled and motivated.The ideal candidate will be responsible for protecting the organization’s systems, networks, and data from cyber threats while ensuring compliance with securi...Show more
Last updated: 30+ days ago • Promoted
Senior Application Security Specialist

Senior Application Security Specialist

AIR MILES Reward Program • Toronto
Full-time
The AIR MILES Reward Program is one of Canada’s most recognized loyalty programs, with over 10 million active collector accounts, representing more than half of all Canadian households.AIR MILES co...Show more
Last updated: 30+ days ago • Promoted
Information Security Risk Management Analyst

Information Security Risk Management Analyst

Vancity • Toronto
Full-time +1
We’re Vancity, a member-owned credit union built on the principles of inclusion and social justice.Since 1946, our relentless commitment to these values has helped us challenge the status quo and b...Show more
Last updated: 14 days ago • Promoted
Director, Application Security

Director, Application Security

CIBC • Toronto
Full-time
We’re building a relationship-oriented bank for the modern world.We need talented, passionate professionals who are dedicated to doing what’s right for our clients.At CIBC, we embrace your strength...Show more
Last updated: 3 days ago • Promoted
Penetration Testing & Application Security Consultant

Penetration Testing & Application Security Consultant

Rsm Us Llp. • Toronto
Full-time
A leading professional services firm in Toronto is seeking a Security Analyst with expertise in web security.The role involves performing security assessments, conducting penetration testing, and c...Show more
Last updated: 14 days ago • Promoted
Director, Application Security

Director, Application Security

Canadian Imperial Bank of Commerce • Toronto
Full-time
We’re building a relationship-oriented bank for the modern world.We need talented, passionate professionals who are dedicated to doing what’s right for our clients.At CIBC, we embrace your strength...Show more
Last updated: 2 days ago • Promoted
Lead Application Security Engineer

Lead Application Security Engineer

Nasdaq, Inc. • Toronto
Full-time
Lead Information Security Engineer page is loaded## Lead Information Security Engineerlocations: St.John's - 18 Hebron Way: Canada - Montreal - Québec: Canada - Toronto - Ontariotime type: Full tim...Show more
Last updated: 15 days ago • Promoted
Senior Information Security Analyst

Senior Information Security Analyst

CAAT Pension Plan • Toronto
Full-time
Senior Information Security Analyst.At CAAT, we’re passionate about what we do.And it shows! Here, you’ll find a cultural spark in everything we do – from the way we partner with members and employ...Show more
Last updated: 30+ days ago • Promoted
Information Security Analyst — Toronto Opportunity

Information Security Analyst — Toronto Opportunity

Canada fruit produce company • Toronto
Full-time
Information Security Analyst vacancy in Toronto Canada.Information Security Analyst Jobs in Toronto:.The most in-demand professions in Toronto:.Users also frequently search in these cities::.More p...Show more
Last updated: 30+ days ago • Promoted
Information Security Engineer (Application Security Focus)

Information Security Engineer (Application Security Focus)

Mechanical Orchard Inc. • Toronto, Canada, CA
Full-time
At Mechanical Orchard, we specialize in safely rewriting the most critical and complex business applications—the software that runs the world as we know it today—so they're ready to adapt quickly a...Show more
Last updated: 14 days ago • Promoted
Application Security, Lead

Application Security, Lead

Interac Corp. • Toronto
Full-time
Who We Are:**Every transaction matters.At Interac, we protect both — driving trust, security, and inclusion, so our digital economy thrives.Founded in 1984, Interac connects Canadians through secur...Show more
Last updated: 14 days ago • Promoted
Hybrid Information Security Analyst - 12-Month Contract

Hybrid Information Security Analyst - 12-Month Contract

Canadian Investment Regulatory Organization • Toronto
Full-time +1
A self-regulatory investment organization in Toronto seeks an experienced Information Security Analyst for a 12-month contract.The role involves implementing security programs, monitoring complianc...Show more
Last updated: 30+ days ago • Promoted
Application Security Engineer

Application Security Engineer

Valence • Toronto
Full-time
Valence has built the only first-to-market AI native coaching platform for enterprise, offering personalized, expert, and human-like guidance and support to any leader or employee.We’re not just ta...Show more
Last updated: 30+ days ago • Promoted
Senior Specialist Application Security

Senior Specialist Application Security

ipss inc. • Toronto, Canada, CA
Full-time +1
Job Title: Senior Specialist Application Security Division: Office of the Chief Information Security Officer Reports To: Manager Application Security Salary Range: $122,305 to $163,639 Work Locatio...Show more
Last updated: 22 days ago • Promoted
Senior Information Security Analyst

Senior Information Security Analyst

Caatpension • Toronto, Canada, CA
Full-time
At CAAT, we're passionate about what we do.And it shows!Here, you'll find a cultural spark in everything we do – from the way we partner with members and employers, to the way we work, collaborate,...Show more
Last updated: 22 days ago • Promoted