Application Security Analyst

Tundra Talent Community
Vancouver, BC, Canada (On-site)
$39,5 an hour (estimated)
Full-time

Job description :

Key Accountabilities :

  • Conducting vulnerability assessments and penetration testing in cloud and on-prem environments against applications (web, mobile, APIs and desktops).
  • Analyzing vulnerabilities and delivering clear and coherent written reporting, identifying risks, and providing mitigation recommendations
  • Design and implement security automation as part of the continuous integration (CI) and continuous delivery (CD) pipeline of key Business teams in order to proactively uncover security vulnerabilities in a shift-left approach
  • Design and Implement secure architecture to protect the confidentiality, integrity, and availability of the CI and CD pipelines of key Business teams
  • Work effectively with various stakeholders from development, quality assurance (QA), program management, and security teams
  • Work with various stakeholders and business teams to provide security automation tools maintenance training
  • Build internal knowledge, processes, KPIs, and tools
  • Create artifacts for various stakeholders and customers

Key Competencies :

  • 5+ cyber security expertise
  • Minimum 3+ years experience in application security (preferably with DevSecOps Implementation)
  • Understanding of DevSecOps / CI / CD Integration and Agile Security testing methodology
  • Good understanding of secure software development lifecycle processes across technologies
  • Strong knowledge on methodologies like OWASP , SANS etc.
  • Ability to conduct vulnerability assessment and penetration testing using popular tools Fortify, Veracode, Rational AppScan, BurpSuite, etc.
  • Understanding of DevSecOps / CI / CD Integration and Agile Security testing methodology
  • Security Certifications preferred CEH, OSWE, CSSLP, GWAPT
  • Experience of at least one cloud platform (Azure, GCP).
  • Experience in at least one scripting language (Bash, Python, Ruby etc)
  • Experience containerization and Kubernetes
  • Experience of automating and templating security processes and documentation for compliance purposes.
  • Experience of at least one Infrastructure as Code solution (Terraform, SCALR, Ansible, Chef etc)

Successful candidates must be fully vaccinated against infection by COVID-19. Candidates who are unable to be vaccinated due to a personal characteristic protected under applicable human rights legislation may request to be exempt from this requirement.

We will do our best to accommodate those who are unable to be vaccinated.

Job 59918

30+ days ago
Related jobs
Tundra Talent Community
Vancouver, British Columbia

Design and implement security automation as part of the continuous integration (CI) and continuous delivery (CD) pipeline of key Business teams in order to proactively uncover security vulnerabilities in a shift-left approach. Minimum 3+ years experience in application security (preferably with DevS...

S.i. Systems
Vancouver, British Columbia

Intermediate Application Support Analyst to manage Windows Servers and Network hardware for security applications. Understanding of security patch compliance. ...

Promoted
Encore Corporate Travel
Canada

Encore is seeking a highly adaptable and motivated Cyber Security Analyst to join our Information Technology division. Encore recherche un analyste en cybersécurité très adaptable et motivé pour rejoindre notre division des technologies de l'information. Manage and monitor all installed security sys...

Promoted
Aviso
Vancouver, British Columbia

We're looking for a Technical Business Analyst to join our IT team for a 12 month contract. Reporting to the Lead Technical Solutions the Technical Business Analyst is responsible for a wide range of duties at a strategic and tactical level. You will apply your industry and technical knowledge, and ...

Promoted
Esri Canada
Canada

Reporting to the Manager, Technology Infrastructure, The Information Security Analyst will primarily protect Esri Canada's computer systems, networks and sensitive information from cyber threats, attacks, and unauthorized access. Esri Canada has an exceptional opportunity for an Information Security...

Promoted
Pacific Vector Technologies
Vancouver, British Columbia

Create reports on cyber-security threats, attacks, incidents, and other indicators of cyber-security issues. Operate and monitor Intrusion Detection Systems (IDS), Security Incident and Event Management (SIEM), anti-malware and other cyber-security tools, logs and technologies, enabling rapid detect...

Promoted
Red River Commodities, Inc.
Canada

Collaborate with cross functional teams including Process Improvement, end users and vendors to ensure seamless application support. We work hard, play harder, embrace authenticity, and always support one another to achieve our goals. User Support and Incident Management. Provide first and second le...

ED Tech Solutions Inc.
Surrey, British Columbia

Assess physical and technical security risks to data, software and hardware. Develop policies, procedures and contingency plans to minimize the effects of security breaches. ...

Stripe
Canada
Remote

Business Intelligence Engineering, Data Engineering, Data Analysis or Data Science roles, building data pipelines and analyzing large datasets to solve problems. Data Science at Stripe is a vibrant community where data analysts, data scientists and engineers learn and grow together. You will work wi...

Futura Security Services Ltd.
Surrey, British Columbia

Secondary (high) school graduation certificate.Arrange for maintenance and repair work.Be the point of contact when in need to handle emergency situations.Co-ordinate activities with other work units or departments.Ensure smooth operation of computer equipment and machinery.Prepare and submit progre...