Application Security Engineer

Aquanow
Canada
$150K a year (estimated)
Full-time

Aquanow, a leading infrastructure and liquidity provider that provides institutional and enterprise application platforms for digital assets, This is a unique opportunity to work alongside a highly-experienced team and contribute to the development of a high-growth trading and technology company.

As Aquanow grows, so does the risk surrounding its cloud footprint. The Security team is responsible for building safeguards that allow our developers to move fast while minimizing risk, maintaining a secure software supply chain, and developing secure infrastructure patterns such that our applications run safely with a reduced blast radius.

If you want to have your name in the success story of a globalizing company, we look forward to receiving your application to the winning Aquanow team!

What You’ll Do :

Educate our engineering team on security best practices to curate a culture where everyone feels invested and responsible for building a secure product.

Champion security through code quality, new technologies, and architectural design.

  • Partner with product teams to implement a secure-by-default design into their products.
  • Consult with teams to ensure data is properly handled throughout our environment.
  • Help drive the shift left movement within Aquanow by implementing tooling within our CI / CD pipelines (DevSecOps)
  • Perform security assessments and audits of our infrastructure, identifying and mitigating security gaps and weaknesses.
  • Responsible for the configuration and tuning of application security tooling, process and alerting.
  • Responding to and validating Bug Bounty submissions.
  • Serving as a liaison between Compliance and Engineering to ensure we are meeting our regulatory requirements.
  • Keep up to date with the latest offensive security techniques, application security threats, and best practices, including recommending improvements to security posture.

You’ll Need to Have :

  • 5+ years of experience in Application Security engineering, application security penetration testing, developing and implementing changes.
  • You're familiar with our tech stack : Javascript, TypeScript, Node.js, GitHub (repositories and actions), AWS.
  • Familiarity with OWASP Top 10, OWASP Secure Headers and OWASP standards like ASVS and MASVS.
  • Have experience in authentication and authorization standards and protocols (SAML, Oauth, LDAP, AD, etc.)
  • Practical knowledge of applied cryptography and common attacks against modern cryptographic algorithms (encryption at rest, TLS, hashing, etc.)

We’d Love to See :

  • You wearing many hats and have a passion for tackling the broad security challenges that a fast-growing startup faces and you’ve done this a few times before for the last 5+ years in a highly compliant environments
  • Experience in security techniques, with a focus on blockchain technology.

The Interview Process :

  • Stage 1 : A 30-minute video call with the Security Manager
  • Stage 2 : A 45-minutes technical deep dive with the members of the Security team
  • Stage 3 : A 30-minute video call with the CTO and Co-Founder
  • 7 days ago
Related jobs
Promoted
Aquanow
Canada

Application Security engineering, application security penetration testing, developing and implementing changes. Keep up to date with the latest offensive security techniques, application security threats, and best practices, including recommending improvements to security posture. The Security team...

Promoted
Hard Yaka
Canada

We are looking for an Application Security Engineer to join our rapidly growing security team to help embed security into all phases of the software development lifecycle. Senior Application Security Engineer - MetaMask. Write code to support the development of security engineering projects, or fix ...

VDart Inc
Canada

Role: Application Security Engineer - Code Scanning (VIT)</b></p> <p><b>Location: Halifax, NS (Permanent remote)</b></p> <p><b>Type: Contract</b></p> <p> </p> <p style="margin-bottom:11px"><b>Job specific ...

1Password
Canada
Remote

Demonstrated success at designing, implementing, deploying, securing critical production systems with broad company impact, in at least one of the following application security spaces: data security, cryptography, identity and access management, dependency management, application-layer security lib...

Sophos
Canada

Sophos is seeking an experienced Principal Product / Applications Security Engineer to join its Cybersecurity Architecture team and bolster our ability to build world-class products capable of tackling emerging threats. Strong knowledge of application security and common web application vulnerabilit...

VDart Inc
Canada

Title: Application Security Engineer - Code Scanning (IAST)</b></p> <p><b>Location: : Halifax, NS (Permanent Remote)</b></p> <p><b>Type:Contract</b></p> <p><b>Job specific activities:</b></p> <ul> <li>Onb...

Promoted
Ada Meher
Canada

DevOps Engineer - $120K - $180K D. Collaborate with engineering teams to integrate DevOps best practices into the development lifecycle. If you are a driven DevOps Engineer looking to make a significant impact in a dynamic and fast-paced environment, we would love to hear from you! Please contact Ch...

Promoted
Talent
Canada

They offer services in enterprise security, modern infrastructure, and platform engineering, focusing on areas like cloud security, DevOps, and managed security services. We have partnered with a Canadian Consultancy that specializes in creating transformative infrastructure, security, and platform ...

Promoted
Intelliswift Software
Canada

Software Developer- Data Engineering Background. ...

Promoted
Calian Advanced Technologies
Canada

The Software Developer (M&S) Resource must have a minimum of four (4) years of experience in the last five (5) years performing the role of a Software Developer in a modeling and simulation environment. The Software Developer (M&S) Resource must have a minimum of ten (10) years of demonstrated exper...