Talent.com
Aarorn Technologies
Remote Vulnerability Management Specialist Application SecurityAarorn Technologies • Stouffville, Ontario
Remote Vulnerability Management Specialist Application Security

Remote Vulnerability Management Specialist Application Security

Aarorn Technologies • Stouffville, Ontario
30+ days ago
Job type
  • Full-time
  • Remote
Job description

Role: Vulnerability management (Remote, Canada)
Location: Remote (Canada)
Employment Type: Contract
Work Authorization: Open Work Permit (OWP), PR, Canadian Citizen only

Mandatory skills for vulnerability management we are looking for the candidate having below key skills:

Regarding skills for appsec. We need below hands-on experience and not only tool based.

AppSec:

Web Application Security

Mobile Application Security

API Security

SAST (Static Application Security Testing), SCA (Software Composition Analysis)

Vulnerability Management lifecycle

VM: Risk Assessment & Prioritization
Ability to assess vulnerabilities based on risk, not just severity—considering CVSS scores, exploitability, asset criticality, business impact, and threat intelligence to prioritize remediation effectively.

Vulnerability Scanning & Tool Proficiency
Hands-on expertise with vulnerability scanning tools (e.g., Nessus, Qualys, Rapid7, OpenVAS) and the ability to interpret scan results accurately, reduce false positives, and tune scans for different environments.

Patch & Remediation Management
Strong coordination skills to drive timely patching and mitigation—working with IT, cloud, DevOps, and application teams to remediate vulnerabilities while minimizing operational and business disruption.

Reporting & Stakeholder Communication
Ability to translate technical vulnerability data into clear, actionable reports for different audiences (engineers, management, auditors), including dashboards, trends, SLAs, and risk narratives.

Compliance & Continuous Improvement
Knowledge of security frameworks and standards and the skill to embed vulnerability management into continuous security processes, audits, and metrics-driven improvement.

Job Description:

"Summary

The Vulnerability Management Specialist – Application Security is responsible for end to end management of application security vulnerabilities across the SDLC using SAST, DAST, and SCA tools, with a strong focus on risk based prioritization, remediation tracking, and posture visibility through ASPM platforms.

Technical Skills

Strong hands on experience with:

• SAST (e.g., AppScan, Check Marx, GitHub Advanced Security)

• DAST tools and runtime testing approaches

• SCA / OSS security and dependency risk analysis

Working knowledge of ASPM platforms and vulnerability aggregation.

Understanding of OWASP Top 10, secure coding practices, and application threat models.

Soft Skills:

• Must be from global support background.

• Strong documentation, presentation, and communication skills

Experience

• 8-10 + years of experience in application security or vulnerability management roles.

• Experience supporting enterprise scale AppSec programs with multiple applications and teams.

Key -Responsibilities

• Interpret findings across SAST, SCA, Secrets, API and Mobile scanning (tools like GitHub Advanced Security, Traceable, etc)

• Hand-off findings to development teams for remediation

• Provide technical remediation assistance to product development teams

• Track and report remediation progress

• Facilitate extension requests for remediation timelines

• Collaborate across teams using JIRA for ticketing and dashboards

• Familiarity with RBVM/ASPM tools like ArmorCode, Seemplicity, Brinqa a plus.

• Should have good knowledge of information security areas as Vulnerability Management Lifecycle, hardening controls (CIST, NIST) etc.

• Good understanding of information security related fields, including security operations and administration

• Should possess good understanding of assets, threats and vulnerabilities and their correlation in an organization

• Good understanding of vulnerability reports from tools like Qualys/ Tenable etc.

• Hands on experience on vulnerability prioritization tool, RiskSense or Kenna would be a plus

• Strong practical knowledge of vulnerability remediation tracking across infrastructure, applications, and teams/ 3rd parties

• Knowledge on vulnerability exception management process

• Strong practical knowledge on presenting vulnerability remediation tracking updates to the management

• Hands on experience on vulnerability patching

• Should have a good customer handling skill

• Good to have Experience on vulnerability scanning tools Like Qualys and Tenable.

Create a job alert for this search

Remote Vulnerability Management Specialist Application Security • Stouffville, Ontario

Similar jobs

Senior Analyst, Employee & Travel Risk Management (Global Security)

RBCToronto, ON, CA
Full-time

This role is critical to protecting RBC employees and assets across the enterprise.The Senior Analyst monitors global security threats, evaluates travel risks, and delivers actionable intelligence ... Show more

 • Promoted

Hybrid Ai Vulnerabilities Security Specialist - C$114,000 - C$136,800 Par An

TD BankToronto, Canada
Full-time

Recherche d'un spécialiste en sécurité de l'information pour évaluer et gérer les vulnérabilités AI, collaborant avec des équipes techniques. Show more

 • Promoted

Hybrid Vulnerability Management & Remediation Lead - C$109,920 - C$164,880 A Year

Public Transportation AuthorityNorth York, Canada
Full-time

Lead cybersecurity vulnerability management and remediation efforts, deliver IT solutions, manage teams, and possess strong product management and IT operations understanding. Show more

 • Promoted

Senior Application Security Engineer - C$140,000 - C$160,000 A Year - Remote

FigmentToronto, Canada
Remote
Full-time

Seeking a Senior Application Security Engineer to conduct security testing, identify vulnerabilities, and develop attack strategies for Web3 blockchain infrastructure.Requires expertise in modern w... Show more

 • Promoted

Senior Malware Protection Specialist (Trellix) – Remote

act digitalToronto, ON, CA
Remote
Full-time

A consulting and technology expertise company is seeking an experienced Senior IT and Security Administrator specializing in Malware Protection technologies.The ideal candidate will have a strong b... Show more

 • Promoted

Senior Security Specialist – Vulnerability & Mss Lead - $42 - $59 An Hour

IT solutions providerToronto, Canada
Full-time

Seeking a Senior Security Specialist for Managed Security Services in Toronto, providing 2nd level support, mentoring, and managing technical issues.Requires degree or IT experience and security ce... Show more

 • Promoted

HelloFresh Vulnerability Management Engineer

HelloFreshtoronto, on, Canada
Full-time

Become a Vulnerability Management Engineer at HelloFresh, where security is key.Enjoy a flexible hybrid work model while improving our applications and systems through rigorous testing and assessme... Show more

 • Promoted

Vulnerability Management Team Leader

Tree Top Staffing LLCToronto, Ontario, Canada
Full-time

Become the Senior IT Manager specializing in Threat and Vulnerability, overseeing critical security initiatives.Guide our organization’s strategy to protect against threats and vulnerabilities.As S... Show more

 • Promoted

Senior Specialist Application Security - $122,305 - $163,639 A Year

ipss inc.East York, Canada
Full-time

This role provides strategic and operational guidance for application security, enhancing cloud-native security and integrating DevSecOps. Show more

 • Promoted

Presales Security Expert-Communications Service Providers

Fortinet, Inc.Toronto, ON, CA
Full-time

Fortinet Canada is seeking a PreSales Security Expert to support direct (Sell-to) engagements with Canadian Communications Service Providers, working in close alignment with a Major Account Manager... Show more

 • Promoted

Senior Manager, Vulnerability Management - C$150,000 - C$175,000 A Year - Remote

PhreesiaNorth York, Canada
Remote
Full-time

Oversees and matures vulnerability management and penetration testing functions, managing teams and infrastructure, assessing risks, and driving remediation efforts in a dynamic tech landscape. Show more

 • Promoted

Sr. Application Security Engineer - $150,000 - $190,000 A Year - Remote

vCluster LabsToronto County, Canada
Remote
Full-time

Responsible for end-to-end security of a Kubernetes multi-tenancy product, including security reviews, threat modeling, vulnerability management, and developer training. Show more

 • Promoted

RQ08437 - Security Specialist - Penetration Testing - Senior

Rubicon PathToronto, ON, CA
Full-time

RQ08437 - Security Specialist - Penetration Testing - Senior.Conducts penetration tests, web application vulnerability assessments, code reviews and network vulnerability assessments of all environ... Show more

 • Promoted

IT Security Analyst - Vulnerability & Risk (Hybrid, 8-Mo Contract)

TekStaff IT SolutionsToronto, Ontario, Canada
Full-time

A leading IT solutions provider is seeking an IT Security Analyst for an 8-month hybrid contract based in Scarborough, ON.Candidates should have 5-8 years of experience in cybersecurity concepts in... Show more

 • Promoted

Palo Alto Security SME - Implementation

Tech Talent InternationalToronto, ON, CA
Full-time

About the job Palo Alto Security SME - Implementation.Fortune 100/500/1000 and other companies in Canada/US.We are currently hiring for a Palo Alto Security SME - Implementation for our IT infrastr... Show more

 • Promoted

IT Application Security Manager

Randstad DigitalToronto, ON, CA
Full-time

Candidates MUST be located in Toronto, ON / GTA --- This is a HYBRID Role --- 3 days a week work from office.Seniority Level - 10+ Years (Senior).People Management Experience is a MUST.App Sec tech... Show more

 • Promoted

Senior Application Security Specialist

AIR MILES Reward ProgramToronto, Ontario, Canada
Full-time

The AIR MILES Reward Program is one of Canada’s most recognized loyalty programs, with over 10 million active collector accounts, representing more than half of all Canadian households.AIR MILES co... Show more

 • Promoted

Vulnerability Lifecycle Product Manager

eBay Inc.Toronto
Full-time

Manage AI-driven security initiatives as a Vulnerability Lifecycle Product Manager.Your role will focus on enhancing operational efficiency and reducing false positives across diverse platforms.In ... Show more

 • Promoted

Information Security Specialist - Ai Vulnerabilities (B3617) Evmai - C$114,000 - C$136,800 Par An

TdEast York, Canada
Full-time

Ce poste est responsable de l'identification, de l'évaluation et de la gestion des vulnérabilités uniques aux modèles d'IA.Le rôle contribue à la détection, classification et remédiatio... Show more

 • Promoted

Sr Security Specialist - Vulnerability Manager, Tenable

CDW CanadaToronto, Ontario, Canada
Full-time

At CDW, we make it happen, together.Trust, connection, and commitment are at the heart of how we work together to deliver for our customers.It’s why we’re coworkers, not just employees.Coworkers wh... Show more