Search jobs > Toronto, ON > Permanent > Security engineer

Tax Devsecops Security Engineer

Deloitte
Toronto, ON
$150K-$185K a year (estimated)
Permanent

Job Type : Permanent

Reference code : 124332

Primary Location : Toronto, ON

All Available Locations : Toronto, ON

Our Purpose

At Deloitte, we are driven to inspire and help our people, organization, communities, and country to thrive. Our Purpose is to build a better future by accelerating and expanding access to knowledge.

Purpose defines who we are and gives us reason to exist as an organization.

By living our Purpose, we will make an impact that matters.

  • Enjoy flexible, proactive, and practical benefits that foster a culture of well-being and connectedness.
  • Experience a firm where wellness matters.
  • Be expected to share your ideas and to make them a reality.

As a Tax DevOps Security Engineer, responsibilities will include :

  • Advocates for the application teams Cybersecurity, DevSecOps, and Agile engineering procedures, quality engineering practices and advanced requirement capturing techniques for improving end-to-end secure delivery practices.
  • Works to harden cloud infrastructure from attacks by implementing automated and integrated release cycles incorporated within the Agile Security Software Development Lifecycle's (SSDL) tools and processes.
  • Responsible for day-to-day collaboration with the Cyber team to ensure successful implementation of secure coding practices, and integration of secure application and design processes across Deloitte.
  • Supports the Secure Systems Development Lifecycle (SSDLC), including functional and non-functional cybersecurity requirements.
  • Builds Automation to validate security requirements within the CI / CD pipeline.
  • Applies secure application principles to the testing and validation of security requirements derived in the SSDLC processes.
  • Works with the application Infrastructure architect to complete security questionaires
  • Organizes and coordinates pen testing as needed
  • Acts as the Security Champion for the application team

What will your typical day look like?

You will focus on partnering with the Deloitte Global Cyber team to create, implement, and apply application security principles, DevSecOps, processes and culture.

You will provide subject matter expertise on application security and design, leading our engineering teams in building secure software and development along with implementing security controls in an Agile environment.

About the team

Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world.

In this truly global environment, we operate not in "what is" but rather "what can be" to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived.

Enough about us, let's talk about you

Requirements for this role include :

  • Minimum of 4 years of combined experience in software engineering, and DevOps / DevSecOps, preferably in an information security context
  • Working with Secure CI / CD pipelines and ALM tools to automate security requirements validation tasks
  • Programming skills in one or more of the following programming and markup languages : Java, .Net, Terraform, Python, Visual Basic, PowerShell, Bash, C++, C#, Django, JavaScript, HTML, CSS, etc.
  • Hands-on experience with containerization, orchestration, and Cloud infrastructure management (e.g., Infrastructure as Code, immutable infrastructure, Configuration as Code)
  • Knowledge of Source Code Management concepts (e.g., code lines, branching, merging, integration, versioning)
  • Experience producing PoCs (Proof of Concept) to support the development and DevOps teams
  • Ability to translate traditional SDLC approach (plan, code, build, test, release, deploy and monitor) to the phases of agile development when writing software to automate security related tasks.

Our promise to our people : Deloitte is where potential comes to life.

Be yourself, and more.

We are a group of talented people who want to learn, gain experience, and develop skills. Wherever you are in your career, we want you to advance.

You shape how we make impact.

Diverse perspectives and life experiences make us better. Whoever you are and wherever you're from, we want you to feel like you belong here.

We provide flexible working options to support you and how you can contribute. Be the leader you want to be.

Be the leader you want to be

Some guide teams, some change culture, some build essential expertise. We offer opportunities and experiences that support your continuing growth as a leader.

Have as many careers as you want.

We are uniquely able to offer you new challenges and roles - and prepare you for them. We bring together people with unique experiences and talents, and we are the place to develop a lasting network of friends, peers, and mentors.

Our TVP is about relationships - between leaders and their people, the firm and its people, peers, and within in our communities.

The next step is yours

At Deloitte, we are all about doing business inclusively - that starts with having diverse colleagues of all abilities. Deloitte encourages applications from all qualified candidates who represent the full diversity of communities across Canada.

This includes, but is not limited to, people with disabilities, candidates from Indigenous communities, and candidates from the Black community in support of living our values, creating a culture of Diversity Equity and Inclusion and our commitment to our AccessAbility Action Plan, Reconciliation Action Plan and the BlackNorth Initiative.

30+ days ago
Related jobs
Deloitte
Toronto, Ontario

Advocates for the application teams Cybersecurity, DevSecOps, and Agile engineering procedures, quality engineering practices and advanced requirement capturing techniques for improving end-to-end secure delivery practices. As a Tax DevOps Security Engineer, responsibilities will include:. You will ...

Promoted
Vaco
Markham, Ontario

Our client is a financial services subsidiary looking to hire an Information Security Analyst . Any Security Certification – CISSP, CCSP, ISSAP, AWS Security, CCSK . You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco about the posi...

Promoted
iVedha Inc.
Canada

You will work closely with cross-functional teams, including developers, security professionals, and system administrators. Define and enforce security policies related to machine identities using automation and workflows. Work closely with security teams to discover and manage machine identities. U...

Promoted
Challenger Motor Freight Inc
Toronto, Ontario

Research and develop a system security context and define security assurance requirements based on industry standards and cyber security policies and practices. The Cybersecurity Implementation Architect oversees the implementation, operation, support, and protection of the information systems and t...

Promoted
Esri Canada
Canada

Reporting to the Manager, Technology Infrastructure, The Information Security Analyst will primarily protect Esri Canada's computer systems, networks and sensitive information from cyber threats, attacks, and unauthorized access. Esri Canada has an exceptional opportunity for an Information Security...

Promoted
Centerra Gold Inc.
Toronto, Ontario

Cyber Security & Network Specialist. Cyber Security and Network Specialist. You will play an integral role in recommending and implementing appropriate security controls to protect company information assets from unauthorized access and compromise/loss, mitigate cyber-related risks, and ensure t...

Promoted
Locke and McCloud
Toronto, Ontario

Role: Network Security EngineerLocation: Toronto, CA (Hybrid)Salary: $110,000 - $140,000 CAD + BenefitsAre you a Network Security Engineer with a passion for safeguarding complex financial systems? Do you have extensive experience with Azure infrastructure and expertise in managing firewalls? If so,...

Bank of Montreal
Toronto, Ontario

Verifies and streamline all security processes of the Certificate & Key Management Team conform to the applicable industry and Bank's security regulations, policies and standards. Identity & Access Management, IT operations, Certification & Key Management, Security Platform Administratio...

Control Risks
Toronto, Ontario

As the Physical Security Specialist, you will play a crucial role in ensuring the safety and security of our clients' events. We are seeking an experienced Physical Security Specialist to join our team at Control Risks. Support Client event security team in the execution of safe secure and successfu...

Big Viking Games
CA
Remote

Big Viking Games is looking for a DevOps Engineer to join our Technology team! Reporting to our Senior Engineering Manager, you'll be working on our flagship games - YoWorld and FishWorld! The ideal candidate will be a seasoned devops engineer with extensive cloud experience. Work with engineering l...