Cybersecurity - Application Security Consultant
Tasks
- Assess application architectures for security design flaws
- Collaborate with developers to integrate security scanning into CI CD pipeline
- Conduct application SSDLC reviews
- Develop and enhance security policies procedures and risk management strategies
- Identify vulnerabilities using security assessments code reviews threat modeling and scanning
- Perform DAST, SAST, and SCA
- Recommend improvements to application security posture
- Review security scan results and prioritize remediation
Perks/Benefits
- N/A
Skills/Tech-stack
Access Management | Amazon Web Services | Ansible | Application Security | Application Security Testing | Azure DevOps | CI/CD | Chef | Cloud platform | CloudFormation | Composition analysis | Data Governance | Data leakage | Data poisoning | Development Lifecycle | Docker | Dynamic Application Security | Dynamic Application Security Testing | Embeddings | Encryption | Google Cloud | Google Cloud Platform | Guardrails Moderation | Identity and Access Management | Identity and access | Infrastructure as Code | Jailbreak mitigation | Jenkins | Kubernetes | Microsoft Azure | Model Serving | Model inversion | OWASP Top | OWASP Top 10 | Penetration Testing | Prompt injection | Prompt injection mitigation | Puppet | RAG | Risk-based | Risk-based prioritization | Secure Coding | Secure Software | Secure Software Development | Secure Software Development Lifecycle | Security Testing | Sensitive Data Leakage | Sensitive data | Software Composition Analysis | Software Development Lifecycle | Static Application Security Testing | Terraform | Threat modeling | Top 10 | Vector Database | Vulnerability scanning | Web Application | Web Services | Web application security | “as-code”
Related jobs
-
Information Security Advisor CAD 65K-105KAWS | Cloud Computing | Contract Review | IT Risk | IT Risk ManagementCareer development | Financial health programs | Hybrid work model | Mental health support programs | Networking opportunitiesMid-level Full TimeSun Life Toronto One York, Canada1d ago
-
Presales Sr. Cybersecurity Advisor | Remote, Calgary CAD 91K-150KAccess Management | Cloud Security | Cybersecurity | Data Protection | DevSecOpsProfessional training resources | Remote work | Volunteer opportunities | Work-life balanceSenior-level Full TimeCA-BC-Home, Canada R2d ago
-
ARM architecture | Attack Surface Enumeration | Attack surface | Black box testing | Black-boxCommunity Volunteering Program | Dental insurance | Family planning support | Flexible working | Holiday allowanceSenior-level Full TimeCAN Waterloo7d ago
-
Sr. Consultant, Information Security CAD 75K-88KAccess Control | Access Management | Agile delivery | Automation | Cause analysisDefined benefit pension plan | Employee recognition program | Employee share purchase plan | Paid time off | Wellbeing supportSenior-level Full TimeToronto-81 Bay, 19th Floor, Canada8d ago
-
Conseiller senior en cybersécurité CAD 101K-168KAutomation and response | CVSS | Common Vulnerability Scoring System | Cybersecurity | Detection and ResponseSenior-level Full TimeQuébec City, Canada14d ago
-
Offensive Security Consultant - Penetration Testing CAD 98K-167KAuthorization management | Bash | Burp Suite | C# | CommunicationFlexibility in schedule | Inclusive culture | Total rewardsMid-level Full TimeCAN-AB-Calgary-112 4th Avenue SW, Canada1mo ago
-
AWS | Application Security | Application Security Testing | Application development | CDKCareer growth opportunities | Flexible schedule | Total rewardsSenior-level Full TimeCAN-ON-Toronto-11 King Street W #700, Canada1mo ago