Application Security Consultant
3 weeks ago
Job Description
WHAT IS THE OPPORTUNITY?
The Application Security team is undertaking multiple complex enterprise-wide initiatives to improve the security and quality of RBC applications. In this role, you will provide technical execution and expertise in the area of application security tools for the global RBC business and application development teams across all enterprise information technology groups. Primarily, you act as a primary point of contact for application teams, prioritizing and triaging SAST Security scan results, and communicating the needs of application teams to strategic security leadership. As the vital link between security and developer functions, your expertise will contribute to the development of application security best practices, tools, and processes within RBC. This role will require you to understand various application security testing techniques such as SAST, SCA and DAST.
WHAT WILL YOU DO?
- Support end users of application security testing tools, managing tickets through a ticketing platform
- Proactively solve problems to ensure application development teams are able to best use the latest application security testing tools
- Educate key organizational stakeholders (e.g. developers, security consultants, executives) on application security matters across the organization
- Assist in the integration of application security processes and tools into existing enterprise development processes and pipelines
- Participate in and lead a range of application security assessment activities
- Assist in the development, evaluation, and implementation of application security testing processes and tools
- Work in a diverse environment leveraging other team members’ experience and knowledge
- Research and keep up to date on application security emerging threats, techniques, tools, and trends
WHAT DO YOU NEED TO SUCCEED?
Must have:
- Exposure to application security best practices such as secure coding, security testing techniques and Secure Software Development Lifecycle
- Experience supporting SAST tools, especially in a role responsible for triaging findings and refining scanning rules.
- 2+ Experience developing and testing apps in any of the following programming languages: Python, Java, Bash, Perl, JavaScript, C++, C#
- Strong ability to manage client and stakeholder relations
- Understanding of CI/CD, DevOps and DevSecOps approaches and experience working with DevOps tools
- Knowledge of OWASP, SANS or other security-related frameworks
- Knowledge of SAST Security Scanning tools
Nice-to-have:
- Familiarity with AI/ML systems security -such as securing machine learning models or evaluating LLM-based applications – would be highly valuable
- Experience supporting SCA/DAST tools, especially in a role responsible for triaging findings and refining scanning rules.
- Experience with Threat Modelling and Risk Assessment activities
- Understanding and experience in agile methodology
What’s in it for you?
We thrive on the challenge to be our best, progressive thinking to keep growing, and working together to deliver trusted advice to help our clients thrive and communities prosper. We care about each other, reaching our potential, making a difference to our communities, and achieving success that is mutual.
- A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation, commissions, and stock where applicable
- Leaders who support your development through coaching and managing opportunities
- Ability to make a difference and lasting impact
- Work in a dynamic, collaborative, progressive, and high-performing team
- A world-class training program in financial services
- Flexible work/life balance options
- Opportunities to do challenging work
#LI-POST
#TECHCPJ
Job Skills
Application Security, Critical Thinking, Encryption Software, Group Problem Solving, Information Security, Information Security Management, Information Technology Security, Infrastructure Penetration Testing, IT Security Architecture, IT Systems Integration
Additional Job Details
Address:
16 YORK ST:TORONTO
City:
Toronto
Country:
Canada
Work hours/week:
37.5
Employment Type:
Full time
Platform:
TECHNOLOGY AND OPERATIONS
Job Type:
Regular
Pay Type:
Salaried
Posted Date:
2025-11-14
Application Deadline:
2025-12-01
Note: Applications will be accepted until 11:59 PM on the day prior to the application deadline date above
Inclusion and Equal Opportunity Employment
At RBC, we believe an inclusive workplace that has diverse perspectives is core to our continued growth as one of the largest and most successful banks in the world. Maintaining a workplace where our employees feel supported to perform at their best, effectively collaborate, drive innovation, and grow professionally helps to bring our Purpose to life and create value for our clients and communities. RBC strives to deliver this through policies and programs intended to foster a workplace based on respect, belonging and opportunity for all.
Join our Talent Community
Stay in-the-know about great career opportunities at RBC. Sign up and get customized info on our latest jobs, career tips and Recruitment events that matter to you.
Expand your limits and create a new future together at RBC. Find out how we use our passion and drive to enhance the well-being of our clients and communities at jobs.rbc.com.
-
Application Security Consultant
4 weeks ago
Toronto, Canada Forward Security Full timeOverview MUST RESIDE IN TORONTO, OTTAWA, OR VANCOUVER As an Application Security Consultant, you will be responsible for performing security assessments on applications and cloud environments. This includes conducting vulnerability assessments, penetration testing, code reviews, and providing recommendations for remediation. The role involves collaborating...
-
Application Security Consultant
3 weeks ago
Toronto, Canada Avanade Full timeApplication Security Consultant Join to apply for the Application Security Consultant role at Avanade At Avanade, cybersecurity consultants are innovators, risk‑takers, and challengers of the status quo. If you’re an experienced Application Security Consultant who can help our clients solve complex application security business challenges, this might be...
-
Application Security Consultant
3 weeks ago
Toronto, Canada Avanade Full timeApplication Security Consultant Join to apply for the Application Security Consultant role at Avanade At Avanade, cybersecurity consultants are innovators, risk‑takers, and challengers of the status quo. If you’re an experienced Application Security Consultant who can help our clients solve complex application security business challenges, this might be...
-
Security Consultant
2 weeks ago
Toronto, Canada Redwolf Security Full time**Security Consultant**: **Toronto, Ontario, Canada***: As a Security Consultant, you will be expected to execute and lead security projects, including DDoS assessments, methodology development, security advisory, and research. You will drive the creation of project deliverables such as scoping documents, test implementation and reporting (the delivery of a...
-
Toronto, Canada Optiv Full timeThis position will be fully remote and can be hired in any Canadian province._ Our consultants are skilled technical and consultative resources expected to be strong in both technical and soft skills. A consultant must be a proven self-starter with the ability to problem-solve, communicate, participate in diverse project teams from a technical perspective,...
-
Application Security Consultant, Mandiant
2 weeks ago
Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Halifax, Saskatoon, Burnaby, Hamilton, Surrey, Victoria, London, Halton Hills, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada Google Full timeApplication Security Consultant, Mandiant Remote locations: Ontario, Alberta, British Columbia, CA. Minimum Qualifications Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience. 5 years of experience assessing and developing cybersecurity solutions across multiple security...
-
Toronto, Canada RBC Full timeJob Description We are seeking a Application & API Security Consultant to join our dynamic API Security Runtime Protection team. You will play a key role in deploying and operationalizing API Runtime Protection solution, collaborating with cross-functional teams, and ensuring seamless integration across cloud and on-prem environments. What is the...
-
Toronto, Canada RBC Full timeJob Description We are seeking a Application & API Security Consultant to join our dynamic API Security Runtime Protection team. You will play a key role in deploying and operationalizing API Runtime Protection solution, collaborating with cross-functional teams, and ensuring seamless integration across cloud and on-prem environments. What is the...
-
Toronto, Canada RBC Full timeJob Description We are seeking a Application & API Security Consultant to join our dynamic API Security Runtime Protection team. You will play a key role in deploying and operationalizing API Runtime Protection solution, collaborating with cross-functional teams, and ensuring seamless integration across cloud and on-prem environments. What is the...
-
TORONTO, Canada Royal Bank of Canada Full timeJob Description What is the opportunity? We are seeking a Application & API Security Consultant to join our dynamic API Security Runtime Protection team. You will play a key role in deploying and operationalizing API Runtime Protection solution, collaborating with cross-functional teams, and ensuring seamless integration across cloud and on-prem...