Application Security Specialist

3 weeks ago


Toronto, Ontario, Canada Thomson Reuters Full time

As an Application Security Specialist, your primary focus will be on enhancing Secure Software Development Life Cycle (S-SDLC) practices and controls to ensure our software solutions are developed and deployed with the utmost security standards.

Role Overview

In this position, you will:

Ensure secure design, architecture, and implementation throughout all phases of our Secure Software Development Life Cycle (SDLC). Lead security initiatives, including conducting security assessments, developing tools, and establishing new security methodologies. Engage in Threat modeling sessions to facilitate secure design conversations and contribute to risk evaluations. Develop security guidelines and documentation, incorporating compliance as code. Collaborate closely with our Security Awareness team to deliver exceptional application security training tailored for our engineering teams. Uphold high standards for engineering excellence and execution, resulting in superior product security deliverables to safeguard our products' SDLCs.

Candidate Profile

You are an ideal candidate for the Application Security Specialist role if you possess:

Developer Empathy: A deep understanding of developer workflows, enabling you to communicate security initiatives effectively to development teams. Expertise in Application Security: A strong passion for application security, including secure coding practices, supply chain security, and SecDevOps methodologies. Commitment to Continuous Improvement: The ability to assess existing processes and identify opportunities for enhancement and efficiency gains.

Required Technical Skills:

Proven experience collaborating with product development teams to integrate security measures. Proficiency in building and evaluating threat models and recommending secure design patterns. In-depth technical knowledge and experience in identifying common security vulnerabilities and risks, along with advising on mitigations and compensating controls. Familiarity with SAST, DAST, and SCA scanning tools and the ability to analyze identified security findings. Experience with DevSecOps in a cloud-native environment and integrating security into CI/CD pipelines (preferably GitHub Actions, but other CI tools like GitLab CI are also acceptable). Automation skills, particularly in relation to security tools, with proficiency in Python or Golang being advantageous. Knowledge of various security frameworks such as OWASP's ASVS, CIS Benchmarks, and NIST CSF. Strong organizational skills to manage and prioritize multiple tasks and projects effectively.

Additional Skills:

Excellent Communication Skills (both verbal and written, with the ability to influence others) A Learning Mindset (staying updated on emerging technical trends and continuous learning) Experience with Agile Methodologies Familiarity with Linux systems and containerization Experience with cloud platforms such as AWS or Azure Knowledge of Infrastructure as Code using Terraform Experience with Security tools (Web attack proxies, SAST, DAST, SCA)

What We Offer

Joining our team means becoming part of a culture that values diversity and inclusion, where we are dedicated to your personal and professional development through:

Flexible Work Environment: We support a hybrid working model that balances in-office and remote work to ensure a seamless experience. Comprehensive Wellbeing Programs: We provide extensive benefits that promote work-life balance, including flexible vacation policies, mental health days, and resources for overall wellbeing. Inclusive Culture: We are recognized for our commitment to equality, diversity, and inclusion, fostering a supportive work environment. Learning & Development Opportunities: Access to LinkedIn Learning and internal talent marketplaces for cross-company project involvement. Social Responsibility: Participation in employee-driven resource groups and initiatives that contribute to local and global impact. Purpose-Driven Work: Our mission is to assist customers in pursuing justice, truth, and transparency, making a meaningful impact in the industries we serve.

Are you ready to be part of a team that is redefining how knowledge professionals operate? At Thomson Reuters, we have been committed to this mission for nearly 160 years, providing industry-leading products and services that empower professionals across various sectors.

Accessibility Commitment

We believe in the importance of diversity in our workforce and are committed to providing equal employment opportunities to all qualified candidates, regardless of background or identity. We also ensure reasonable accommodations for individuals with disabilities and sincerely held religious beliefs in accordance with applicable laws.

For more information about Thomson Reuters, please visit our website.



  • Toronto, Ontario, Canada Amazon Full time $137,800

    About the RoleWe are seeking a highly skilled Application Security Specialist to join our team at Amazon. As a key member of our security team, you will be responsible for ensuring the security and integrity of our cloud-based applications and services.Key ResponsibilitiesConduct thorough security reviews of applications and services to identify...


  • Toronto, Ontario, Canada Amazon Full time $137,800

    About the RoleWe are seeking a highly skilled Application Security Specialist to join our team at Amazon. As a key member of our security team, you will be responsible for ensuring the security and integrity of our cloud-based applications and services.Key ResponsibilitiesConduct thorough security reviews of applications and services to identify...


  • Toronto, Ontario, Canada Amazon Full time $137,800

    About the RoleWe are seeking a highly skilled Application Security Specialist to join our team at Amazon. As a key member of our security team, you will be responsible for ensuring the security and integrity of our cloud-based applications and services.Key ResponsibilitiesConduct thorough security reviews of applications and services to identify...


  • Toronto, Ontario, Canada Amazon Full time $137,800

    About the RoleWe are seeking a highly skilled Application Security Specialist to join our team at Amazon. As a key member of our security team, you will be responsible for ensuring the security and integrity of our cloud-based applications and services.Key ResponsibilitiesConduct thorough security reviews of applications and services to identify...


  • Toronto, Ontario, Canada Thomson Reuters Full time

    As an Application Security Specialist, your primary focus will be on enhancing the Secure Software Development Life Cycle (S-SDLC) processes and implementing controls that guarantee our applications are developed and deployed according to the highest security standards. Role Overview In this position, you will: Ensure secure design, architecture, and...


  • Old Toronto, Ontario, Canada Amazon Full time

    About the RoleWe are seeking a highly skilled Application Security Specialist to join our team at Amazon. As a key member of our security team, you will be responsible for ensuring the security and integrity of our cloud-based applications and services.Key ResponsibilitiesConduct thorough security reviews of applications and services to identify...


  • Old Toronto, Ontario, Canada Amazon Full time

    About the RoleWe are seeking a highly skilled Application Security Specialist to join our team at Amazon. As a key member of our security team, you will be responsible for ensuring the security and integrity of our cloud-based applications and services.Key ResponsibilitiesConduct thorough security reviews of applications and services to identify...


  • Old Toronto, Ontario, Canada Amazon Full time

    About the RoleWe are seeking a highly skilled Application Security Specialist to join our team at Amazon. As a key member of our security team, you will be responsible for ensuring the security and integrity of our cloud-based applications and services.Key ResponsibilitiesConduct thorough security reviews of applications and services to identify...


  • Old Toronto, Ontario, Canada Amazon Full time

    About the RoleWe are seeking a highly skilled Application Security Specialist to join our team at Amazon. As a key member of our security team, you will be responsible for ensuring the security and integrity of our cloud-based applications and services.Key ResponsibilitiesConduct thorough security reviews of applications and services to identify...


  • Toronto, Ontario, Canada Condor Security Full time

    Job Summary:We are seeking a highly motivated and customer-focused Concierge Security Specialist to join our team at Condor Security. As a Concierge Security Specialist, you will be responsible for providing exceptional customer service and security services to our clients in the Greater Toronto Area.Key Responsibilities:Provide hotel-style front desk...


  • Toronto, Ontario, Canada Condor Security Full time

    Job Summary:We are seeking a highly motivated and customer-focused Concierge Security Specialist to join our team at Condor Security. As a Concierge Security Specialist, you will be responsible for providing exceptional customer service and security services to our clients in the Greater Toronto Area.Key Responsibilities:Provide hotel-style front desk...


  • Old Toronto, Ontario, Canada ipss inc. Full time

    Job Title: Senior Application Security SpecialistWe are seeking a highly skilled Senior Application Security Specialist to join our team at ipss inc. as a key member of our Application Security team. The ideal candidate will have a strong background in application security, with a focus on DevSecOps practices, container security, threat modeling, and cloud...


  • Old Toronto, Ontario, Canada ipss inc. Full time

    Job Title: Senior Application Security SpecialistWe are seeking a highly skilled Senior Application Security Specialist to join our team at ipss inc. as a key member of our Application Security team. The ideal candidate will have a strong background in application security, with a focus on DevSecOps practices, container security, threat modeling, and cloud...


  • Toronto, Ontario, Canada First National Full time

    We are seeking an Application Security Specialist, Information Protection Position Overview: We are in search of an Application Security Specialist who possesses a strong understanding of risk evaluation, vulnerability assessment techniques, and information protection principles. In this role, you will be responsible for facilitating security risk...


  • Toronto, Ontario, Canada Paladin Security Full time

    Job SummaryWe are seeking a highly skilled and experienced Security Operations Specialist to join our team at Paladin Security. As a key member of our security team, you will be responsible for ensuring the safety and security of our facilities and personnel.Key ResponsibilitiesOperate the Security Command Centre 24/7, monitoring CCTV/Security Alarms, Fire...


  • Toronto, Ontario, Canada First National Full time

    We are seeking an Application Security Specialist in Information Protection Position Overview: We are in search of an Application Security Specialist who possesses a deep understanding of risk evaluation, vulnerability assessment techniques, and core information security principles. In this position, you will be responsible for facilitating security...


  • Toronto, Ontario, Canada Condor Security Full time

    Condor Security is a leading provider of security services for luxury condominiums in the Greater Toronto Area. Our team is dedicated to professionalism and exceptional customer service. As a Luxury Condo Security Specialist, you will play a vital role in providing top-tier service to residents and guests in a high-end condominium setting.Your...


  • Toronto, Ontario, Canada Nexus Systems Group Inc. Full time

    Job DescriptionNexus Systems Group Inc. is seeking a highly skilled Software Development Security Specialist to join our team. As a key member of our organization, you will play a critical role in ensuring the security and integrity of our software applications.Key ResponsibilitiesSupport Senior Leadership: Collaborate with senior management to achieve IS&C...


  • Toronto, Ontario, Canada Nexus Systems Group Inc. Full time

    Job DescriptionNexus Systems Group Inc. is seeking a highly skilled Software Development Security Specialist to join our team. As a key member of our organization, you will play a critical role in ensuring the security and integrity of our software applications.Key ResponsibilitiesSupport Senior Leadership: Collaborate with senior management to achieve IS&C...


  • Toronto, Ontario, Canada Paladin Security Full time

    Position: Security Patrol OfficerLocation: Healthcare FacilityStatus: Full-TimeSchedule: Continental NightsCompensation: $18.36/hrOverview:Join our team at Paladin Security, where we prioritize safety and community service. This role is ideal for recent graduates in Law Enforcement or related fields, providing an opportunity to gain essential experience in a...