Talent.com
Randstad Canada
Application Security Analyst- 1658Randstad Canada • Toronto, Ontario, CA
Application Security Analyst- 1658

Application Security Analyst- 1658

Randstad Canada • Toronto, Ontario, CA
4 days ago
Job type
  • Temporary
  • Quick Apply
Job description
Our client, is seeking a talented and proactive Application Security Analyst to join their Global Cyber Security division.

In this critical technical role, you will act as a key accelerator for the organization's enterprise-wide DevSecOps transformation. You will lead the evaluation, custom tuning, and integration of automated application security tools and compliance guardrails directly inside global CI/CD pipelines. This position requires an analyst who bridges the gap between deep cyber security auditing and modern application engineering; you will work shoulder-to-shoulder with developers, cloud engineers, and DevOps squads across major international operating geographies. Your mission is to foster a development-first security culture, ensuring software is built securely from day one without creating operational friction.

Duration: 8-Month Contract (August 10, 2026 – April 9, 2027)

Work Arrangement: Hybrid — primarily remote; optional onsite attendance 1–2 times per quarter at the corporate hub.

Hours: Monday–Friday, 9:00 a.m.–5:00 p.m. (Standard 37.5-hour work week)



Advantages
Global Modernization Scope: Own and orchestrate the security tooling roadmap for distributed development clusters across major international operating regions.

True DevSecOps Sandbox: Move away from passive spreadsheet auditing—use your development background to automate redundant workflows, write custom infrastructure scripts, and configure serverless security checks.

High Executive Visibility: Elevate your professional profile by designing program-level Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs) delivered directly to senior cyber security leadership.

Workplace Flexibility: Enjoy a modern, remote-first schedule that offers maximum geographical autonomy, paired with structured quarterly alignment sessions.



Responsibilities
DevSecOps Automation & Tooling Governance
Pipeline Security Engineering: Assist with the running, deployment, and configuration of automated application security testing platforms, including SAST, SCA, MAST, and DAST engines.

Vulnerability Remediation Consulting: Analyze raw scanning results and penetration testing reports, translate vulnerabilities into actionable fixes, and provide remediation blueprints to active software delivery pods.

Platform Custom Tuning: Continuously evaluate tool accuracy, eliminate false positives, and execute software upgrades and rule-set tuning based on emerging threat profiles and system bugs.

Process Automation: Build custom scripts and internal tooling to automate repetitive security tasks, removing administrative overhead and accelerating code promotion metrics.

Program Strategy, Metrics & Documentation
Security Metrics & Reporting: Develop, track, and aggregate program metrics (KPIs and KRIs) for the macro vulnerability management initiative, packaging data into professional reports for executive leadership.

AppSec Compliance Blueprints: Assist in authoring global application security guidelines, threat-modeling templates, standard operating procedures, and technical documentation.

Developer Advisory & Training: Act as an internal security evangelist, educating software engineering teams on OWASP Top 10 (Web, Mobile, API) and SANS Top 25 code vulnerabilities.

Production Operations Support: Provide tier-3 diagnostic support for live web and mobile platforms, resolving security incidents and triaging threat escalations.



Qualifications
Experience: Minimum 3+ years of dedicated, professional Cyber Application Security experience, coupled with 2+ years of prior practical experience in IT System Design / Application Development.

Software Engineering Foundation: Strong structural background (2+ years) reading, writing, or debugging applications written in C++, Java, or .NET stacks.

AppSec Platform Mastery: 1+ years of direct experience administering and configuring Application Security testing infrastructure (SAST/DAST/SCA/MAST tools).

Automation Engineering: 1+ years of demonstrated success designing automated infrastructure configurations or writing utility scripts to stitch development tools together.

Framework Mastery: In-depth technical command of OWASP Top 10 vulnerabilities (spanning Web architectures, Mobile frameworks, and REST/SOAP APIs) alongside SANS Top 25 controls.

Education & Core Certification: University or College diploma in Computer Science, Systems Engineering, or a related technical discipline. An active cybersecurity designation (such as CISSP, CEH, or equivalent) is required.

Soft Skills: Outstanding communication skills with the ability to articulate highly technical security threats to non-technical business partners; a proactive problem-solver who can create high-fidelity technical diagrams (such as Visio workflows) and excels in fast-paced Agile sprint environments.

Nice-to-Haves
Holding advanced validation credentials, including GWAPT, GWEB, CASE, or CSSLP certifications.

Direct experience engineering secure CI/CD pipelines, container environments (Docker/Kubernetes), microservices architectures, and Amazon Web Services (AWS) environments (1+ years).

Prior experience in business process engineering, software procurement lifecycles, and managing enterprise application integrations.



Summary
If you are a tech-savvy Application Security Analyst who pairs an absolute command of modern AppSec testing tools (SAST/DAST) with the software engineering background (Java/.NET/C++) and pipeline automation depth needed to drive a global DevSecOps transformation, this 8-month hybrid contract is an exceptional professional platform. Bring your risk remediation precision, scripting agility, and collaborative team-first drive to our client's elite cyber security group today!

Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.

Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
Create a job alert for this search

Application Security Analyst- 1658 • Toronto, Ontario, CA

Similar jobs

Cyber Security Analyst

Amica-Senior-LifestylesToronto, ON, CA
Full-time

Amica Senior Lifestyles is redefining senior living in Canada by combining premium hospitality, personalized care, and innovative wellness services to create exceptional experiences for older adult... Show more

 • Promoted

Application Security Software Engineer

PointClickCareToronto, ON, CA
Full-time

This range is provided by PointClickCare.Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.PointClickCare is a leading North American healthcare t... Show more

 • Promoted

Senior Application Security Consultant, Mandiant

GoogleToronto, ON, CA
Full-time

As a Senior Application Security Consultant at Mandiant (part of Google Cloud), you will be responsible for helping clients effectively prepare for, proactively mitigate, and detect and respond to ... Show more

 • Promoted

Senior PeopleSoft Security & Apps Analyst

Legal Aid OntarioToronto, ON, CA
Full-time

A public legal aid organization in Toronto is seeking an experienced PeopleSoft Security Analyst to manage application security and user access.This role involves configuring security roles, conduc... Show more

 • Promoted

Principal Security Analyst - Remote

CyderesToronto, ON, CA
Remote
Full-time

Be among the first 25 applicants.Cyderes (Cyber Defense and Response) is a pure-play, full life-cycle cybersecurity services provider with award-winning managed security services, identity and acce... Show more

 • Promoted

Security Systems Application Specialist

AinsworthToronto, ON, CA
Full-time

Reporting to the Project Manager, you will have the opportunity to execute and lead various security system projects.Your role will encompass estimation, engineering design, programming, commission... Show more

 • Promoted

SAP Security Analyst - Afternoon Shift

Tech Talent InternationalToronto, ON, CA
Temporary

Support SAP security frameworks in the Electronics Manufacturing sector as a SAP Security Analyst.Focus on user management and compliance during afternoon hours, remotely.This 6-month contract role... Show more

 • Promoted

Senior Application Security Engineer

CognizantToronto, ON, CA
Full-time

Job Title - App Security Specialist.DevOps, with at least 2 - 3 years hands-on security exposure (secure coding, pipeline security, API security, threat modeling).Seniority level: Mid-Senior level.... Show more

 • Promoted

Penetration Testing & Application Security Consultant

Rsm Us Llp.Toronto
Full-time

A leading professional services firm in Toronto is seeking a Security Analyst with expertise in web security.The role involves performing security assessments, conducting penetration testing, and c... Show more

 • Promoted

Akamai API Security or NoName API Security Analyst

Net2Source Inc.Toronto, ON, CA
Full-time

Akamai API Security or NoName API Security Analyst.This position is offered by Net2Source Inc.Your actual pay will depend on your skills and experience — please consult with your recruiter for more... Show more

 • Promoted

Cyber Security Analyst

Amica Senior LifestylesToronto, ON, CA
Full-time

Amica Senior Lifestyles is redefining senior living in Canada by combining premium hospitality, personalized care, and innovative wellness services to create exceptional experiences for older adult... Show more

 • Promoted

Senior Application Security Engineer

HelloFreshToronto, ON, CA
Full-time

We're looking for a new teammate to join us on the journey of keeping HelloFresh a trusted name - someone with a passion for security and appetite for new challenges.Security Engineers work in a va... Show more

 • Promoted

Security Analyst - Part Time

Equifax, Inc.Toronto, ON, CA
Part-time

As our IT Security Analyst, this role requires a motivated self-starter.Someone who has strong analytical and problem-solving skills, a deep understanding of risk and compliance management principl... Show more

 • Promoted

Security Analyst

Onico SolutionsRichmond Hill, York Region, CA
Full-time

The Security Analyst is responsible for our client’s computer, network and cyber security.The Security Analyst administers all aspects of information security and is responsible for the identificat... Show more

 • Promoted

IT Application Security Manager

Randstad DigitalToronto, ON, CA
Full-time

Candidates MUST be located in Toronto, ON / GTA --- This is a HYBRID Role --- 3 days a week work from office.Seniority Level - 10+ Years (Senior).People Management Experience is a MUST.App Sec tech... Show more

 • Promoted

Analyst III, Security Strategy, Architecture & Innovation

Moneris Solutions CorpToronto, ON, CA
Full-time

Analyst III, Security Strategy, Architecture & Innovation.In this role, you will shape how security is embedded across Moneris’ application, cloud, and infrastructure environments.You will partner ... Show more

 • Promoted

Senior Application Security Specialist

AIR MILES Reward ProgramToronto, ON, CA
Full-time

The AIR MILES Reward Program is one of Canada’s most recognized loyalty programs, with over 10 million active collector accounts, representing more than half of all Canadian households.AIR MILES co... Show more

 • Promoted

Workday Security Analyst

neteffectsToronto, ON, CA
Full-time

Remote from the UK - to work for an International US-based company.Workday security area – focusing on Workday HR user, domain, business process, and integrations security, privacy, audit, controls... Show more

 • Promoted

Hybrid Security Operations Analyst: Cloud & Threat Detection

IFSToronto, ON, CA
Full-time

A leading tech company in Toronto is seeking a Security Operations Analyst to enhance security in a hybrid environment combining on-premise and cloud systems.The candidate will manage incident resp... Show more

 • Promoted

Remote Information Risk & Security Analyst

DexianToronto, ON, CA
Remote
Full-time

A leading IT services firm is seeking an Information Control Testing Specialist to manage information risk and ensure compliance with security policies.You will work on global initiatives, conduct ... Show more