Int. DevSecOps to implement and maintain security throughout the entire SDLC for our SaaS client

3 weeks ago


Old Toronto, Canada S I Systems Full time
Int. DevSecOps to implement and maintain security throughout the entire SDLC for our SaaS client

Location: Mississauga (2 Days in Office)

The DevSecOps Engineer is responsible for implementing and maintaining security throughout the entire software development lifecycle, enhancing and validating the confidentiality, integrity, and availability of CLIENT’s public cloud and Kubernetes based platform. The DevSecOps Engineer will work with the DevOps team to ensure that architecture, controls and processes are appropriate and working effectively to enforce CLIENT security policy and compliance with other relevant standards notably SOC2 and PCI-DSS. The DevSecOps Engineer will act as a liaison between the CLIENT Security and Risk Management teams and the CLIENT Platform Engineering teams to ensure the infrastructure and application security for the CLIENT Platform.

Must Have Skills:

  • Experience in public cloud is required (AWS, Azure, GCP)
  • At least 3-5 years of experience in Cyber Security roles with a preference in the engineering field.
  • Proficiency in Infrastructure as Code (IaC) technologies such as CloudFormation or Terraform.
  • Scripting and automation skills (APIs, Python, Bash, PowerShell, Go)
  • Experience in systems or network administration
  • Experience working with industry standard regulations and compliance frameworks (PCI-DSS, ISO, NIST, SANS, SOX, SOC II, HIPAA)

Job Description:

  1. Implement security controls and best practices across CI/CD pipelines.
  2. Perform and review vulnerability assessments (including DAST and SAST).
  3. Build and maintain security tools with an emphasis on automation.
  4. Provide architectural security guidance to product engineering teams building software applications in compliance with industry standards (PCI-DSS, NIST, CIS, OWASP) in public cloud environments.
  5. Provide architectural security guidance to DevOps team building cloud infrastructure in compliance with industry standards (PCI-DSS, NIST, CIS, OWASP) in public cloud environments.
  6. Collaborate with development teams to implement secure coding practices.
  7. Review and suggest enhancements for security of software supply chain.
  8. Act as a member of the DevOps and security teams as well as processes.
  9. Develop best practices and security standards for CLIENT Cloud Platform.
  10. Work with CLIENT Risk team to support risk assessments by providing mitigations to identified risks.
  11. Work with CLIENT Risk team to build appropriate threat models for CLIENT Cloud Platform.
  12. Work with CLIENT Security team, DevOps and Platform Engineering teams to maintain vulnerability and patch management processes in line with CLIENT security policy.
  13. Work with CLIENT Security team for incident response as necessary.
  14. Perform security assessments of CLIENT systems, applications, and infrastructure providing written reports and recommendations for management review.
  15. Identify and arrange for updated security training for CLIENT DevOps and Cloud Platform Engineering teams when appropriate.
#J-18808-Ljbffr

  • Toronto, Ontario, Canada The Toronto-Dominion Bank (Canada) Full time

    OverviewTD is a leading global financial institution seeking an experienced DevSecOps Security Leader to join our team. As a key member of our security organization, you will play a crucial role in developing and implementing security policies, standards, and guidelines for DevSecOps practices.Job SummaryThe ideal candidate will have 5+ years of experience...


  • Old Toronto, Canada S I Systems Full time

    Int. DevOps Engineer to monitor, maintain, and support applications in Azure and AWS for our SaaS ClientLocation: Mississauga (2 Days in Office)The DevOps Engineer works as part of a team of engineers focused on building, maintaining, and supporting cloud native infrastructure for our client's SaaS platforms. The engineer will be primarily focused on...


  • Toronto, Ontario, Canada The Toronto-Dominion Bank (Canada) Full time

    Job SummaryThis role is responsible for developing, implementing, and maintaining security policies, standards, and guidelines for DevSecOps practices. The successful candidate will ensure adherence to regulatory and internal compliance requirements within DevSecOps processes.Key ResponsibilitiesDevelop and implement security policies, standards, and...

  • Building Security

    1 month ago


    Old Toronto, Canada TD Bank Full time

    h3>Senior Manager, Information Security (DevSecOps Governance) Line of Business: Technology Solutions Pay Details: na - na CAD Develop, implement, and maintain security policies, standards, and guidelines for DevSecOps practices.Ensure adherence to regulatory and internal compliance requirements within DevSecOps processes.Ensure the seamless integration of...


  • Old Toronto, Canada S I Systems Full time

    Sr. Staff DevSecOps Engineer to design, implement, and support cloud based solutions for our SaaS clientLocation: Mississauga (2 Days in Office)Length: 12 MonthsMust Have Skills:8-10 years of cumulative experience in network engineering or closely related fields, demonstrating comprehensive knowledge of network architecture, design, implementationExperience...


  • Toronto, Ontario, Canada mccainfood Full time

    About the RoleWe are seeking a highly skilled Cloud DevSecOps Engineering Manager to join our team at McCain Foods. As a key member of our engineering organization, you will be responsible for designing and implementing secure and efficient software development and deployment processes.The ideal candidate will have a strong background in DevSecOps, cloud...


  • Old Toronto, Canada The Toronto-Dominion Bank (Canada) Full time

    About This RoleWe are seeking a highly skilled Senior DevSecOps Engineer to join our team as we embark on a transformative journey to adopt DevSecOps principles and practices across our organization. As a key member of our team, you will play a critical role in designing and implementing comprehensive end-to-end solutions that enable our technology partners...


  • Old Toronto, Ontario, Canada TD Bank Full time

    Senior Manager, Information Security (DevSecOps Governance)Job Summary:TD Bank is seeking a seasoned Senior Manager, Information Security to lead our DevSecOps Governance team. As a key member of our Information Security organization, you will be responsible for developing and implementing security policies, standards, and guidelines for DevSecOps...


  • Old Toronto, Canada TD Bank Full time

    Job Summary:We are seeking a Senior Information Security Manager to lead our DevSecOps Governance team. The successful candidate will be responsible for developing and implementing security policies, standards, and guidelines for DevSecOps practices.Key Responsibilities:Develop and maintain security policies, standards, and guidelines for DevSecOps...


  • Toronto, Canada The Toronto-Dominion Bank (Canada) Full time

    Description : KEY ACCOUNTABILITIES: Develop, implement, and maintain security policies, standards, and guidelines for DevSecOps practices. Ensure adherence to regulatory and internal compliance requirements within DevSecOps processes. Ensure the seamless integration of security practices into DevOps workflows, reducing security vulnerabilities and...


  • Old Toronto, Ontario, Canada The Toronto-Dominion Bank (Canada) Full time

    About This RoleWe are seeking a highly skilled Senior DevSecOps Engineer to lead our DevOps to DevSecOps transformation. As a key member of our team, you will be responsible for creating comprehensive end-to-end solutions for our technology partners, ensuring technical design and delivery of specific solutions based on requirements and needs defined by our...

  • DevSecOps Intern

    4 weeks ago


    Old Toronto, Canada Univeris Corporation Full time

    The CompanyUniveris, headquartered in Toronto, Canada, is a privately held company and is the leader in enterprise wealth management for the Canadian market. Founded in 1991, Univeris has over 80 staff and 15 leading financial services clients representing over 12,000 financial advisors on the platform. It offers the most comprehensive wealth management...

  • Devsecops Intern

    2 months ago


    Toronto, Canada Univeris Full time

    **The Company** Univeris, headquartered in Toronto, Canada, is a privately held company and is the leader in enterprise wealth management for the Canadian market. Founded in 1991, Univeris has over 80 staff and 15 leading financial services clients representing over 12,000 financial advisors on the platform. It offers the most comprehensive wealth...


  • Toronto, Canada mccainfood Full time

    ​  Position Title: Sr Engineering Mgr, Cloud & DevSecOps Position Type: Regular - Full-Time ​Position Location: Toronto HQ Requisition ID: 30462   ​​JOB PURPOSE: Reporting to the Director, Cloud, DevSecOps, the Sr Engineering Manager will be responsible for: Design, implement and monitor enterprise-grade secure fault-tolerant...


  • Toronto, Canada mccainfood Full time

    ​  Position Title: Sr Engineering Mgr, Cloud & DevSecOps Position Type: Regular - Full-Time ​Position Location: Toronto HQ Requisition ID: 30462   ​​JOB PURPOSE: Reporting to the Director, Cloud, DevSecOps, the Sr Engineering Manager will be responsible for: Design, implement and monitor enterprise-grade secure fault-tolerant...


  • Toronto, Ontario, Canada The Toronto-Dominion Bank (Canada) Full time

    About the RoleThe Toronto-Dominion Bank (Canada) is seeking a highly motivated and experienced SaaS Security Governance Specialist to join our Public Cloud Security Governance team. This role will be responsible for integrating security practices and best practices into our SaaS Security Governance processes, ensuring compliance with regulatory standards,...


  • Toronto, Ontario, Canada mccainfood Full time

    Job Title: Cloud DevSecOps EngineerJob Summary:We are seeking an experienced Cloud DevSecOps Engineer to join our team at McCain Foods. As a Cloud DevSecOps Engineer, you will be responsible for designing, implementing, and monitoring enterprise-grade secure fault-tolerant infrastructure.Key Responsibilities:Develop and implement a Cloud and DevSecOps...


  • Old Toronto, Canada Colliers Int Full time

    Unlock Your ExpertiseAt Colliers Int, we're driven by a passion for excellence. Our people are passionate, take ownership, and always do what's right for our clients, people, and communities.Why Colliers Int?Our enterprising environment needs your expertise to facilitate Colliers Int's continued growth as an industry leader. Our nimble, decentralized culture...


  • Toronto, Ontario, Canada Sage Recruiting Full time

    Company OverviewWe are a SaaS company dedicated to providing innovative solutions for nonprofits and associations.Salary: CAD 60-75KAs a highly skilled Implementation Specialist, you will be responsible for configuring and deploying CRM-based SaaS projects for our clients. You will collaborate with cross-functional teams, including product, engineering, and...


  • Old Toronto, Canada S I Systems Full time

    Job Title: DevSecOps EngineerJob Description:As a DevSecOps Engineer at S I Systems, you will play a crucial role in implementing and maintaining security throughout the entire software development lifecycle. Your primary responsibility will be to enhance and validate the confidentiality, integrity, and availability of our public cloud and Kubernetes-based...