Application Security Specialist

3 days ago


Québec, Quebec, Canada EXFO Inc Full time

EXFO develops smarter network test, monitoring, and analytics solutions for the world's leading telecommunications service providers, network equipment manufacturers, and web-scale companies—and we love what we do

With nearly 1,900 employees in more than 25 countries, EXFO is the world's number one provider of fiber optic test solutions and has the largest active assurance deployment. Our broad portfolio of intelligent hardware and software solutions enables our customers' network transformations related to fiber, 5G, virtualization, and big data analytics.

We are always looking for top talent to help us lead the way in a thriving industry with unlimited opportunities.


Job Summary

With more than 20% of our revenue invested in R&D, EXFO is recognized for its team of experts who create numerous new products to meet the current and future needs of the world's largest telecommunications network operators. By joining EXFO as an Application Security Specialist, you will work with sophisticated technologies in a dynamic and innovative environment.

The ideal candidate has experience in both application development and information security. The selected individual will work closely with IT security specialists to exchange ideas, collaborate on best practices, and coordinate approaches to address common vulnerabilities and more.


Your Role
  • Evolve, drive, and execute the strategy to ensure application security at EXFO.

  • Perform risk and vulnerability assessments at the system and application levels.

  • Define effective risk mitigation measures while contributing to security awareness programs.

  • Develop and implement application security controls.

  • Provide security expertise, including during product design phases.

  • Meet with application and product teams to discuss vulnerability remediation.

  • Deliver timely and detailed reports, including evidence of findings, risk analysis, recommendations, and remediation guidance.


Technical Skills
  • General understanding of security and data protection regulations and best practices, and their impact on application design.

  • Knowledge of application security testing methods and tools.

  • Knowledge of OWASP, SSDLC, and DevSecOps.

  • Knowledge of security controls and measures in a cloud-native environment (K8s, Docker, AWS, Azure).

  • Knowledge of cryptography (PKI, digital signatures, SSL/TLS).

  • Actively engaged with the broader security community, keeping up with the latest threats, trends, and technologies.

  • Knowledge of hacker attack methods.

  • Software development experience considered an asset.

  • Infrastructure security knowledge considered an asset.

  • Security certifications such as (ISC)² CSSLP or CEH considered an asset.

  • Knowledge of telecommunications technologies/industry considered an asset.


Required Skills
  • Proven leadership experience in security roles.

  • Ability to communicate complex topics clearly and concisely to various audience levels within the organization.

  • Ability to deliver training (e.g., secure coding, security best practices, or compliance with security requirements).

  • Ability to operate effectively in a complex matrix environment.

  • Ability to build trust.

  • Passion and curiosity.

  • Self-starter.

  • Ability to engage and develop team members.


Requirements
  • 8+ years of experience in software security.

  • Bilingual (French and English).

  • Bachelor's degree in Computer Science or a related field.

Any equivalent combination of education and relevant experience will be considered.



  • Québec, Quebec, Canada Magnet Forensics Full time

    Who We Are; What We Do; Where We're Going Magnet Forensics is a global leader in the development of digital investigative software that acquires, analyzes, and shares evidence from computers, smartphones, tablets, and IoT-related devices. We are continually innovating so our customers can deploy advanced and effective tools to protect their companies,...


  • Québec, Quebec, Canada Google Full time

    Note: Google's hybrid workplace includes remote roles. By applying to this position you will have an opportunity to share your preferred working location from the following: Remote locations: Alberta, CA; British Columbia, CA; Ontario, CA; Quebec, CA.Minimum qualifications:Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related...


  • Québec, Quebec, Canada GE HealthCare Full time

    Job Description SummaryAs the Clinical Application Specialist (CAS), you will deliver technical and clinical expertise within the Patient Care Solution portfolio by providing excellent education and training support to clinical end-users. The CAS is a clinical expert supporting the pre-sale product demonstrations (or clinical trial support), as well as...


  • Québec, Quebec, Canada Taghleef Industries Full time

    For more than 15 years, Taghleef Industries, Inc. has built a reputation as one of the world's largest and most recognized industry leaders in specialty BOPP (Biaxially Oriented Polypropylene) films.Application Manager - ITThe Application Manager – IT is responsible for managing and supporting all business applications used at the Ti NA sites. This...

  • Service Specialist

    5 days ago


    Québec, Quebec, Canada Canada Life Full time

    Base + CommWe are looking for a Service Specialist, bilingual (English/French).As a Service Specialist, you will be responsible for providing excellent customer service to our clients and Advisors. You will be a key part of the Canada Life Group Customer team, working with sales and service roles across multiple offices to achieve common goals, and delight...


  • Québec, Quebec, Canada Davie Full time

    Job DescriptionAs Quality Control Specialist, your main responsibilities involve capturing quality requirements and managing quality documentation. This includes creating and updating the control plan, verifying quality evidence, and managing non-conformities. More specifically, you will:Ensure that documentation complies with specifications, regulations,...


  • Québec, Quebec, Canada S3 Technologies Inc. Full time

    COMPANY VALUES: We succeed when our clients succeed + THE best at what we do + Passion drives our determination + Better every day + Cybersecurity in everything + Stronger togetherWith over 20 years of experience, S3 Technologies is proud to be a recognized leader in managed IT services in Montreal and one of the largest independent managed IT service...


  • Québec, Quebec, Canada Petal Full time

    Petal is a leading Canadian healthcare orchestration and billing company that revolutionizes healthcare systems to make them agile, efficient, and resilient by enabling the forecasting and shaping of world-class healthcare through Healthcare BI, advanced analytics, and informed insights.Our commitment to fostering an exceptional workplace culture has earned...

  • Advisor, Securities

    1 week ago


    Québec, Quebec, Canada Desjardins Full time

    As an investment assistant, you play a hands-on role supporting the advisors by performing all the administrative and operational tasks involved in securities account management. You track client account transactions on a daily basis and resolve various administrative situations. You have to be proactive and think ahead. You have the leadership required to...


  • Québec, Quebec, Canada Aversan Inc. Full time

    BI SpecialistAversan Inc. ) is a trusted multi-service engineering and electronics manufacturing company. Aversan delivers leading-edge and reliable safety-critical electronics and software systems to the aerospace, defense, and space industries.Location:Montreal, QuebecJob Type:Hybrid (2–3 days/week in office)Key ResponsibilitiesCollaborate with...