Cybersecurity Expert: Secure Applications with CARFAX

2 weeks ago


London, Ontario, Canada CARFAX Full time

At CARFAX, we're seeking a skilled Cybersecurity Expert to join our Information Security team. As an Application Security Engineer, you'll play a crucial role in ensuring the security of our applications.

About the Role

This position offers an exciting opportunity to work with diverse applications and technologies in a fast-paced environment. You'll be responsible for identifying, evaluating, and mitigating security vulnerabilities, as well as implementing best practices and security standards.

Key Responsibilities:
  • Conduct manual and automated security assessments of web, mobile, and cloud-based applications.
  • Implement and maintain application security testing tools (SAST, DAST, and IAST) and coordinate related vulnerability remediation activities.
  • Conduct & coordinate both internal and 3rd party penetration testing engagements.
  • Collaborate with development, DevOps, and infrastructure teams to integrate security practices into the Software Development Lifecycle (SDLC).
  • Prepare and present security reports to management, highlighting key metrics, risks, and mitigation strategies.
  • Identify and prioritize potential application security threats through the use of modeling and risk assessments.
  • Assist with the detection, triage, and response to security incidents, while conducting root cause analysis and post-incident reviews to improve security posture.
  • Develop and deliver security training and awareness programs for developers, QA, and other relevant teams.
Requirements:
  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
  • Proven experience (3+ years) in application security, including security assessment, penetration testing, and secure code review.
  • Strong understanding of security principles, including OWASP Top Ten, CWE/SANS Top 25, and other industry-standard security frameworks.
  • Hands-on experience with security tools such as Burp Suite, OWASP ZAP, Veracode, Checkmarx, Fortify, Nessus, NMAP, Kali Linux etc.
  • Proficiency in one or more programming languages (Java, C#, Python, JavaScript).
  • Working knowledge of common web technologies like HTML, CSS, JavaScript, HTTP/HTTPS, APIs, etc as well as basic understanding of web application architectures (client-server model).
  • Knowledge of cloud security principles and experience with cloud platforms (AWS, Azure, GCP).
  • Strong analytical and problem-solving skills, with the ability to think like an attacker to identify potential security weaknesses.
  • Excellent communication and interpersonal skills to effectively collaborate with cross-functional teams and explain complex security concepts to non-technical stakeholders.
  • Careful approach to reviewing code, configurations, and application logic.
What We Offer:
  • Competitive salary range $120,000 - $180,000 per year.
  • 4-Day summer work weeks and a winter holiday break.
  • 401(k)/DCPP matching.
  • Annual bonus program.
  • Casual, dog-friendly, and innovative office spaces.


  • London, Ontario, Canada CARFAX Full time

    Job OverviewCARFAX is a leading provider of vehicle history reports and other automotive services. We are seeking an experienced Information Security Director to lead our cybersecurity efforts.Estimated Salary: $170,000 - $200,000 per yearJob DescriptionThe successful candidate will be responsible for developing and implementing our overall cybersecurity...


  • London, Ontario, Canada CARFAX Full time

    About the Role:We are seeking an experienced Cyber Security Engineer to join our team at CARFAX. This role plays a vital part in safeguarding our organization's information assets by designing, implementing, and maintaining robust security measures.This includes identifying and mitigating security vulnerabilities, responding to security incidents, and...


  • London, Ontario, Canada CARFAX Full time

    About the Role:As a Cybersecurity Senior Manager at CARFAX, you will play a critical role in safeguarding our organization's information systems, networks, and data assets from cyber threats. This position requires a seasoned security professional with a proven track record of leading security operations, managing incident response activities, and driving...


  • London, Ontario, Canada CARFAX Full time

    Job SummaryCARFAX is seeking a highly skilled Cyber Security Engineer to join our team. As a Cyber Security Engineer, you will play a vital role in safeguarding our organization's information assets by designing, implementing, and maintaining robust security measures.This role involves identifying and mitigating security vulnerabilities, responding to...


  • London, Ontario, Canada CARFAX Full time

    About CARFAXCARFAX is a mission-driven organization dedicated to delivering accurate and reliable data. We pride ourselves on fostering a balanced work environment that supports our team members in tackling challenging projects.The Cloud Security Architect RoleAs a Cloud Security Architect at CARFAX, you will play a vital role in safeguarding the...


  • London, Ontario, Canada CARFAX Full time

    Role OverviewWe are seeking a highly motivated and detail-oriented Associate Cyber Security Engineer to join our team at CARFAX. As a key member of our cybersecurity team, you will play a critical role in supporting our organization's cybersecurity posture by assisting in the design, implementation, and maintenance of security measures.Key...


  • London, Ontario, Canada CARFAX Full time

    About the Role:We're seeking a skilled Cyber Security Engineer to join our team at CARFAX. As a Cyber Security Engineer, you will play a vital role in safeguarding our organization's information assets by designing, implementing, and maintaining robust security measures.Key Responsibilities:Design, deploy, and maintain security solutions such as Endpoint...


  • London, Ontario, Canada CARFAX Full time

    About the RoleWe are seeking a highly skilled Chief Information Security Officer to join our team at CARFAX. As a senior leader, you will play a pivotal role in safeguarding our organization's information systems, networks, and data assets from cyber threats.In this key position, you will lead a team of talented security professionals, implement robust...


  • London, Ontario, Canada CARFAX Full time

    We are seeking a Cyber Security Senior Manager to safeguard our organization's information systems, networks, and data assets from cyber threats. This role plays a pivotal part in protecting our digital assets.Key Responsibilities:Lead and mentor a team of cybersecurity professionals to promote a culture of security and teambuilding.Collaborate with...


  • London, Ontario, Canada CARFAX Full time

    Job SummaryThe Associate Cyber Security Engineer plays a critical role in supporting CARFAX's cybersecurity posture by assisting in the design, implementation, and maintenance of security measures. This entry-level position involves working closely with senior cybersecurity professionals to protect the organization's data and IT infrastructure from cyber...


  • London, Ontario, Canada CARFAX Full time

    Job Description:We are seeking a highly skilled Cyber Security Engineer to join our team at CARFAX. The successful candidate will play a key role in designing, implementing, and maintaining robust security measures to safeguard our information assets.Key Responsibilities:Design, deploy, and maintain security solutions to protect our systems and...


  • London, Ontario, Canada CARFAX Full time

    About CARFAXCARFAX is a leading provider of vehicle history reports and other automotive services. Our team is dedicated to helping consumers make informed decisions when buying or selling a vehicle.Salary: $85,000 - $110,000 per year, depending on experienceJob Description: We are seeking an Enterprise Information Security Specialist to join our IT team....


  • London, Ontario, Canada CARFAX Full time

    Job SummaryThe IT Security Compliance Analyst is responsible for ensuring that CARFAX's information systems and practices comply with applicable regulatory requirements, industry standards, and internal policies.This role involves assessing security controls, evaluating risk, conducting audits, and providing recommendations for improving the security posture...


  • London, Ontario, Canada CARFAX Full time

    OverviewAt CARFAX, we are seeking an experienced Chief Cyber Security Project Strategist to lead our cyber security initiatives and ensure the effective implementation of security controls, technologies, and best practices across the organization. This role involves overseeing the planning, execution, and delivery of various cyber security strategies and...


  • London, Ontario, Canada CARFAX Full time

    Secure Our ApplicationsWe are seeking a skilled Application Security Engineer to join our Information Security team at CARFAX. As an Application Security Engineer, you will be responsible for identifying, evaluating, and mitigating security vulnerabilities in our applications. This involves conducting manual and automated security assessments, implementing...


  • London, Ontario, Canada CARFAX Full time

    Company Overview:CARFAX is a leading company that values teamwork and innovation.About the Role:We are seeking an experienced Senior Software Engineer - Full Stack to join our dynamic team in London, ON.Job Summary:Design and develop high-performing, robust code for new system features on high-visibility projects.Participate in design decisions, including...


  • London, Ontario, Canada CARFAX Full time

    About the RoleWe are seeking a Business Analyst Co-Op to join our Project Services team at CARFAX. As a Business Analyst Co-Op, you will work directly with project managers and business analysts to help deliver technical products across team specialties.Key ResponsibilitiesWork with project managers and business analysts to deliver technical productsGain...

  • Data Architect Leader

    2 weeks ago


    London, Ontario, Canada Carfax Full time

    Job OverviewAt Carfax, we're dedicated to helping millions of Canadians buy, sell and maintain cars with confidence. As a Data Architect, you'll play a key role in designing our data environment, ensuring scalability, reliability, and security.We offer a competitive salary range of $140,000 - $180,000 per year, depending on experience, as well as a...

  • Project Director

    1 month ago


    London, Ontario, Canada CARFAX Full time

    Project Manager RoleWe're seeking a skilled Project Manager to oversee the planning, execution, and delivery of diverse projects involving data products, infrastructure management, and security.This role requires a strong understanding of project management principles, including agile development methodologies, and the ability to manage multiple projects...


  • London, Ontario, Canada CARFAX Full time

    Transformative Opportunity at CARFAXWe are seeking a highly skilled Senior Software Engineer to join our CARFAX AI team, where you will play a pivotal role in developing cutting-edge AI solutions that help millions of consumers make informed decisions about vehicles.As a senior member of our team, you will be responsible for leading design decisions,...