Talent.com
Randstad Canada
Application Security Analyst- 1670Randstad Canada • Toronto, Ontario, CA
Application Security Analyst- 1670

Application Security Analyst- 1670

Randstad Canada • Toronto, Ontario, CA
11 days ago
Job type
  • Temporary
  • Quick Apply
Job description
Our client, is seeking a talented and proactive Application Security Analyst to join their Global Cyber Security division.

In this critical technical role, you will act as a key accelerator for the organization's enterprise-wide DevSecOps transformation. You will lead the evaluation, custom tuning, and integration of automated application security tools and compliance guardrails directly inside global CI/CD pipelines. This position requires an analyst who bridges the gap between deep cyber security auditing and modern application engineering; you will work shoulder-to-shoulder with developers, cloud engineers, and DevOps squads across major international operating geographies. Your mission is to foster a development-first security culture, ensuring software is built securely from day one without creating operational friction.

Duration: 8-Month Contract (August 10, 2026 – April 9, 2027)

Work Arrangement: Hybrid — primarily remote; optional onsite attendance 1–2 times per quarter at the corporate hub.

Hours: Monday–Friday, 9:00 a.m.–5:00 p.m. (Standard 37.5-hour work week)



Advantages
Global Modernization Scope: Own and orchestrate the security tooling roadmap for distributed development clusters across major international operating regions.

True DevSecOps Sandbox: Move away from passive spreadsheet auditing—use your development background to automate redundant workflows, write custom infrastructure scripts, and configure serverless security checks.

High Executive Visibility: Elevate your professional profile by designing program-level Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs) delivered directly to senior cyber security leadership.

Workplace Flexibility: Enjoy a modern, remote-first schedule that offers maximum geographical autonomy, paired with structured quarterly alignment sessions.



Responsibilities
DevSecOps Automation & Tooling Governance
Pipeline Security Engineering: Assist with the running, deployment, and configuration of automated application security testing platforms, including SAST, SCA, MAST, and DAST engines.

Vulnerability Remediation Consulting: Analyze raw scanning results and penetration testing reports, translate vulnerabilities into actionable fixes, and provide remediation blueprints to active software delivery pods.

Platform Custom Tuning: Continuously evaluate tool accuracy, eliminate false positives, and execute software upgrades and rule-set tuning based on emerging threat profiles and system bugs.

Process Automation: Build custom scripts and internal tooling to automate repetitive security tasks, removing administrative overhead and accelerating code promotion metrics.

Program Strategy, Metrics & Documentation
Security Metrics & Reporting: Develop, track, and aggregate program metrics (KPIs and KRIs) for the macro vulnerability management initiative, packaging data into professional reports for executive leadership.

AppSec Compliance Blueprints: Assist in authoring global application security guidelines, threat-modeling templates, standard operating procedures, and technical documentation.

Developer Advisory & Training: Act as an internal security evangelist, educating software engineering teams on OWASP Top 10 (Web, Mobile, API) and SANS Top 25 code vulnerabilities.

Production Operations Support: Provide tier-3 diagnostic support for live web and mobile platforms, resolving security incidents and triaging threat escalations.



Qualifications
Experience: Minimum 3+ years of dedicated, professional Cyber Application Security experience, coupled with 2+ years of prior practical experience in IT System Design / Application Development.

Software Engineering Foundation: Strong structural background (2+ years) reading, writing, or debugging applications written in C++, Java, or .NET stacks.

AppSec Platform Mastery: 1+ years of direct experience administering and configuring Application Security testing infrastructure (SAST/DAST/SCA/MAST tools).

Automation Engineering: 1+ years of demonstrated success designing automated infrastructure configurations or writing utility scripts to stitch development tools together.

Framework Mastery: In-depth technical command of OWASP Top 10 vulnerabilities (spanning Web architectures, Mobile frameworks, and REST/SOAP APIs) alongside SANS Top 25 controls.

Education & Core Certification: University or College diploma in Computer Science, Systems Engineering, or a related technical discipline. An active cybersecurity designation (such as CISSP, CEH, or equivalent) is required.

Soft Skills: Outstanding communication skills with the ability to articulate highly technical security threats to non-technical business partners; a proactive problem-solver who can create high-fidelity technical diagrams (such as Visio workflows) and excels in fast-paced Agile sprint environments.

Nice-to-Haves
Holding advanced validation credentials, including GWAPT, GWEB, CASE, or CSSLP certifications.

Direct experience engineering secure CI/CD pipelines, container environments (Docker/Kubernetes), microservices architectures, and Amazon Web Services (AWS) environments (1+ years).

Prior experience in business process engineering, software procurement lifecycles, and managing enterprise application integrations.



Summary
If you are a tech-savvy Application Security Analyst who pairs an absolute command of modern AppSec testing tools (SAST/DAST) with the software engineering background (Java/.NET/C++) and pipeline automation depth needed to drive a global DevSecOps transformation, this 8-month hybrid contract is an exceptional professional platform. Bring your risk remediation precision, scripting agility, and collaborative team-first drive to our client's elite cyber security group today!

Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.

Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
Create a job alert for this search

Application Security Analyst- 1670 • Toronto, Ontario, CA

Similar jobs

Experienced Info Security Analyst Position

Haventree Banktoronto, on, Canada
Full-time

Elevate your career as a Senior Information Security Analyst at Haventree Bank, where your skills will directly enhance our security practices.This role combines technical execution with strategic ... Show more

 • Promoted

Security Analyst

Obsidiantoronto, on, Canada
Full-time

Mercor is partnering with leading AI labs to engage experienced cybersecurity professionals — security analysts, penetration testers, incident responders, threat intelligence specialists, and secur... Show more

 • Promoted

IT Security Analyst

ERCO WorldwideToronto, ON, CA
Permanent

Satellite Drive, Mississauga (Hybrid).ERCO Worldwide’s century‑long tradition of excellence has firmly established its reputation for providing reliable, intelligent, and environmentally responsibl... Show more

 • Promoted

Security Analyst, Lawful Acces

Rogers CommunicationsToronto, ON, CA
Full-time

We are committed to connecting Canadians through unique partnerships, our world-class network and content Canadians love—and our innovative team is growing.We are looking for dedicated team members... Show more

 • Promoted

Lead Application Security Engineer

Nasdaqtoronto, on, Canada
Full-time

As a Lead, Information Security reporting to Senior Director, Information Security, you'll serve as the primary point of contact for information security across a major cloud-based technology proje... Show more

 • Promoted

Security Systems Application Specialist

AinsworthToronto, ON, CA
Full-time

Reporting to the Project Manager, you will have the opportunity to execute and lead various security system projects.Your role will encompass estimation, engineering design, programming, commission... Show more

 • Promoted

Security Analyst

York UniversityToronto, ON, CA
Permanent

The Security Analyst contributes to the mission of the University by supporting the delivery of information security program.This includes security investigations, assessments, monitoring and incid... Show more

 • Promoted

IT Application Security Manager

Randstad DigitalToronto
Full-time

Candidates MUST be located in Toronto, ON / GTA --- This is a HYBRID Role --- 3 days a week work from office.Seniority Level - 10+ Years (Senior).People Management Experience is a MUST.App Sec tech... Show more

 • Promoted

Senior Application Security Engineer

CognizantToronto, ON, CA
Full-time

Job Title - App Security Specialist.DevOps, with at least 2 - 3 years hands-on security exposure (secure coding, pipeline security, API security, threat modeling).Seniority level: Mid-Senior level.... Show more

 • Promoted

Penetration Testing & Application Security Consultant

Rsm Us Llp.Toronto
Full-time

A leading professional services firm in Toronto is seeking a Security Analyst with expertise in web security.The role involves performing security assessments, conducting penetration testing, and c... Show more

 • Promoted

Applications Security Architect

Ward Technology TalentToronto, ON, CA
Full-time

Applications Security Architect – CONTRACT – (2-3 days per week).Application Security Architect.Onsite is required once every 2 weeks in GTA by Toronto Airport.Perform security assessments on new p... Show more

 • Promoted

Akamai API Security or NoName API Security Analyst

Net2Source Inc.Toronto
Full-time

Akamai API Security or NoName API Security Analyst.This position is offered by Net2Source Inc.Your actual pay will depend on your skills and experience — please consult with your recruiter for more... Show more

 • Promoted

IT Security Analyst - Governance Focus

Nexus Systems Group Inc.Toronto, ON, CA
Full-time

Advance your career as an IT Security Analyst specializing in governance with Scotiabank.This remote opportunity involves oversight of IAM compliance and security control measures.In this role, you... Show more

 • Promoted

Senior Application Security Engineer

HelloFreshToronto
Full-time

We're looking for a new teammate to join us on the journey of keeping HelloFresh a trusted name - someone with a passion for security and appetite for new challenges.Security Engineers work in a va... Show more

 • Promoted

Senior Application Security Specialist

AIR MILES Reward ProgramToronto, ON, CA
Full-time

The AIR MILES Reward Program is one of Canada’s most recognized loyalty programs, with over 10 million active collector accounts, representing more than half of all Canadian households.AIR MILES co... Show more

 • Promoted

Workday Security Analyst

neteffectsToronto, ON, CA
Full-time

Remote from the UK - to work for an International US-based company.Workday security area – focusing on Workday HR user, domain, business process, and integrations security, privacy, audit, controls... Show more

 • Promoted

Application Security Engineer

Segment (Twilio)Toronto, ON, CA
Full-time

Deep conviction that AI and automation should eliminate manual work humans shouldn't be doing anyway.You're excited to replace developer toil and reactive vuln triage with automated systems, guardr... Show more

 • Promoted

Hybrid Security Operations Analyst: Cloud & Threat Detection

IFSToronto, ON, CA
Full-time

A leading tech company in Toronto is seeking a Security Operations Analyst to enhance security in a hybrid environment combining on-premise and cloud systems.The candidate will manage incident resp... Show more

 • Promoted

Security Analyst - Security & Governance Compliance

TVET CollegeRichmond Hill, York Region, CA
Full-time

Security Analyst - Security & Governance Compliance.The Security Analyst, Security Risk & Compliance will support the management and continuous improvement of Staples Canada’s PCI compliance progra... Show more

 • Promoted

Security Analyst - Security & Governance Compliance

Staples CanadaRichmond Hill
Full-time

Some of what you will do: The Security Analyst, Security Risk & Compliance will support the management and continuous improvement of Staples Canada’s PCI compliance program and broader cybersecurit... Show more