Consultant, Application Security
2 weeks ago
What You’ll Be Doing As an Application Security Consultant, you will act as a subject‑matter expert working with cross‑functional application development teams to identify, assess, report, and manage security risks and design flaws identified in key applications. You will influence enterprise teams to build security into design, operation, and development techniques. How You’ll Succeed Application Security Steward – Provide guidance to development teams and oversee application security testing services, including dynamic application security testing (DAST), static application security testing (SAST), software composition analysis (SCA), mobile application security testing (MAST), and container security. Risk‑Based Vulnerability Management – Review security scan results and collaborate with development teams to prioritize vulnerabilities using a risk‑based approach and support the remediation process. Training and Awareness – Deliver training and awareness sessions to application development teams on how to use application security tools and educate developers on integrating security testing throughout the software development lifecycle. Security Tool Integration – Collaborate with development teams to integrate automated security tools into continuous integration and continuous delivery (CI/CD) pipelines. Continuous Improvement – Promote continuous improvement by applying lessons learned from projects and ongoing security assessments. Who You Are You have at least three years of experience in application security, secure software development, or related fields and a bachelor’s degree in computer science, software engineering, or an equivalent combination of education and experience. You can demonstrate experience using application security testing tools and platforms to manage and perform static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), and mobile application security testing (MAST). You have hands‑on experience in software development and a good understanding of application security concepts, including secure coding, design, and industry standards and best practices. You are comfortable working with security code issues across a variety of languages such as Java Enterprise Edition (JEE), .NET, JavaScript, HTML, JSP, and ASP. You have strong interpersonal and communication skills and are able to clearly articulate application security issues to a range of stakeholders, including developers, project managers, and management. You’re a certified professional. You have, or are working toward, relevant security certifications such as Certified Information Systems Security Professional (CISSP) or Certified Secure Software Lifecycle Professional (CSSLP). Values matter to you. You bring your real self to work and live our values – trust, teamwork, and accountability. Prior to starting in this role, security checks, including a criminal record check, must be successfully completed to the satisfaction of CIBC. An annual criminal record check may also be required. What CIBC Offers Competitive salary, incentive pay, and a comprehensive benefits program that includes a defined benefit pension plan, shared ownership plan, vacation, wellbeing support, and MomentMakers, a social, points‑based recognition program. An employee share purchase plan that gives you an ownership stake in CIBC. A technology‑enabled workplace that simplifies bringing together great minds to create innovative solutions for our clients. Purpose Day – a paid day off dedicated to help you invest in your growth and development. What You Need to Know CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and provide an accessible candidate experience. If you need accommodation, please contact You need to be legally eligible to work in the location(s) specified above and, where applicable, must have a valid work or study permit. We may ask you to complete attribute‑based assessments and other skills tests (such as simulation, coding, French proficiency). We use artificial intelligence tools during the recruitment process to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us. Job Location Toronto‑81 Bay, 19th Floor Employment Type Regular – Full‑time Weekly Hours 37.5 hours per week Skills Application Development, Application Security, Dynamic Application Security Testing (DAST), Information Security, Security Reviews, Security Testing, Security Tools, Software Development, Static Application Security Testing (SAST), Web Application Vulnerabilities #J-18808-Ljbffr
-
Application Security Consultant
4 weeks ago
Toronto, Canada Forward Security Full timeOverview MUST RESIDE IN TORONTO, OTTAWA, OR VANCOUVER As an Application Security Consultant, you will be responsible for performing security assessments on applications and cloud environments. This includes conducting vulnerability assessments, penetration testing, code reviews, and providing recommendations for remediation. The role involves collaborating...
-
Application Security Consultant
2 weeks ago
Toronto, Canada Avanade Full timeAt Avanade, cybersecurity consultants are innovators, risk-takers, and challengers of the status quo. If you’re an experienced Application Security Consultant, who can help our clients solve complex Application Security business challenges, this might be the perfect opportunity for you.· Collaborate with clients to design and implement secure application...
-
Consultant, Application Security
3 weeks ago
Toronto, Canada CIBC Full timeWhat You’ll Be Doing As an Application Security Consultant, you will act as a subject‑matter expert working with cross‑functional application development teams to identify, assess, report, and manage security risks and design flaws identified in key applications. You will influence enterprise teams to build security into design, operation, and...
-
Application Security Consultant
1 week ago
Toronto, Ontario, Canada RBC Full timeJob DescriptionWHAT IS THE OPPORTUNITY?The Application Security team is undertaking multiple complex enterprise-wide initiatives to improve the security and quality of RBC applications. In this role, you will provide technical execution and expertise in the area of application security tools for the global RBC business and application development teams...
-
Consultant, Application Security
7 days ago
Toronto, Ontario, Canada CIBC Full timeWe're building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what's right for our clients.At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and...
-
Security Consultant
2 weeks ago
Toronto, Canada RedWolf Security Full timeWe are so excited you are here! We are Red Wolf Security; a provider of the most comprehensive, safe and feature rich threat simulation platform available for enterprise. Our mission is to help organizations test and improve their cyber security resiliency in a thorough and reliable way. We love the security tech world, but true passion is providing the...
-
Consultant, Application Security
7 days ago
Toronto, Ontario, Canada CIBC Full timeWe're building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what's right for our clients.At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and...
-
Toronto, Canada CIBC Full timeA leading financial institution in Toronto is seeking an Application Security Consultant to assess security risks and design flaws in applications. You will work closely with development teams to enhance application security through testing and training. Ideal candidates will have 3+ years of experience in application security and a relevant degree. This...
-
Toronto, Canada CIBC Full timeA leading financial institution in Toronto is seeking an Application Security Consultant to assess security risks and design flaws in applications. You will work closely with development teams to enhance application security through testing and training. Ideal candidates will have 3+ years of experience in application security and a relevant degree. This...
-
Application Security Consultant
2 weeks ago
Toronto, Canada Royal Bank of Canada> Full timeJob DescriptionWHAT IS THE OPPORTUNITY? The Application Security team is undertaking multiple complex enterprise-wide initiatives to improve the security and quality of RBC applications. In this role, you will provide technical execution and expertise in the area of application security tools for the global RBC business and application development teams...