Senior Application Security Specialist

1 month ago


Montreal, Canada Petal Full time

Petal is a leading Canadian healthcare orchestration and billing company that revolutionizes healthcare systems to make them agile, efficient, and resilient by enabling the forecasting and shaping of world-class healthcare through Healthcare BI, advanced analytics, and informed insights.


Our commitment to fostering an exceptional workplace culture has earned us notable recognitions, including being listed as a Great Place to Work in both the technology and healthcare sectors. Join us in our mission to empower healthcare innovators and improve healthcare differently.

What you can expect when joining the team

As a Senior Application Security Specialist at Petal, you will play an important role in helping to protect the security of our customers' information in our applications. Your role will also be vital in promoting a security by design mindset throughout the organization.

We are seeking a candidate who combines in-depth knowledge of security practices with a sharp ability to effectively transmit this knowledge. Your efforts will be essential in integrating a robust security culture at the core of our company. Your role will not only involve teaching security but also transforming our mindset and approach to security in our daily operations.

Your daily life

During the day, you will be led to:

Play a crucial role in building a strong security culture within Petal, emphasizing the importance of security in all aspects of our work, notably through initiatives such as our Security Champions program or our practice communities; Work closely with development teams to understand their current security training needs to create engaging and diverse educational content that caters to different learning preferences, ensuring that all development team members understand and apply security principles; Stay informed about the latest security threats, trends, and technologies to keep our security strategies as well as our training materials up to date with best practices; Understand software security needs by closely collaborating with stakeholders to identify specific security requirements; Participate in the design of our applications by integrating security mechanisms from the outset. This may include defining secure architecture, designing access controls, managing identities, and considering encryption mechanisms; Oversee vulnerability management in our application code and ensure that they are addressed by our teams within specified timelines; Ensure that sensitive data is properly protected, using encryption techniques, key management policies, and ensuring data confidentiality and integrity; Participate in security incident response when necessary; Contribute to the evolution of our SDLC, our application security policy, as well as the processes/procedures that support them; Collaborate and serve as a bridge between the compliance team and our developers, especially during audits; Identify and assess potential security risks in existing and new applications. This may include conducting risk analyses, security audits, and code reviews to detect vulnerabilities; Effectively communicate with other team members, write reports on vulnerabilities, and raise awareness of the importance of security.

Your profile

Are you a senior security expert known for your ability to design and implement robust application protection solutions? Are you seeking an opportunity to leverage your skills and experience to make a real difference?The sky is the limit If you have:

A bachelor's degree in Computer Science, Software Engineering, Computer Security, or a related field - a master's degree in computer security is an asset; A minimum of 5 years of experience in application security and at least 7 years of experience in IT; Excellent communication and presentation skills, with the ability to explain complex security concepts to both technical and non-technical audiences.; A thorough understanding of modern web application vulnerabilities and their remediation (OWASP Top 10, CWE Top 25); The ability to quickly learn and teach various security topics such as threat modeling, shifting left, cloud security, etc.; The ability to demonstrate that a vulnerability is technically exploitable through a proof of concept (PoC); Experience in software development in the healthcare domain, knowledge of FHIR, HL7 as well as familiarity with common security frameworks such as ISO 27001, NIST, OWASP, etc.; A deep understanding of computer security principles (common vulnerabilities, attack techniques, and best security practices); Good knowledge of security tools such as vulnerability scanners, intrusion detection tools, etc.; Strong attention to detail and solid analytical, organizational, and task management skills; Experience in secure development (secure development practices, penetration testing, and application auditing to identify and resolve vulnerabilities) (strong asset); Security certifications (CISSP/CSSLP/CCSP/OSCP, etc.) (asset); Since you will be regularly interacting with English-speaking colleagues and suppliers located outside of Québec, advanced proficiency in both English and French (spoken, written, and read) is preferable.

Petal’s position on remote working

In our opinion, a company cannot claim to be modern, innovative and have the well-being of their team at heart, without attempting to integrate remote working to the level that their business model allows them to. Post-pandemic, Petal employees will continue to benefit from the option of teleworking up to the maximum flexibility permitted by the nature of the position and the smooth running of operations.

Our benefits

A signing bonus of $1,000 for your remote work set-up; Compensation that recognizes your contribution; 4 to 6 weeks of paid vacation per year; 5 ​paid personal days​ per year​; A ​group RRSP / DPSP plan with employer contribution; ​A ​complete group ​insurance ​plan, from day 1; An ​annual wellness allowance; Access to the Dialogue telehealth application; Flexible work hours and more.

Petal is an active participant in the equal opportunity employment program, and members of the following target groups are encouraged to apply: women, people with disabilities, aboriginal peoples and visible minorities. If you are a person with a disability, assistance with the screening and selection process is available on request.



  • Montreal, Canada PetalMD Full time

    Petal is a leading Canadian healthcare orchestration and billing company that revolutionizes healthcare systems to make them agile, efficient, and resilient by enabling the forecasting and shaping of world-class healthcare through Healthcare BI, advanced analytics, and informed insights. Our commitment to fostering an exceptional workplace culture has...


  • Montreal, Canada PetalMD Full time

    Petal is a leading Canadian healthcare orchestration and billing company that revolutionizes healthcare systems to make them agile, efficient, and resilient by enabling the forecasting and shaping of world-class healthcare through Healthcare BI, advanced analytics, and informed insights. Our commitment to fostering an exceptional workplace culture has...


  • Montreal, Quebec, Canada Petal Full time

    Petal is a leading Canadian healthcare orchestration and billing company that revolutionizes healthcare systems to make them agile, efficient, and resilient by enabling the forecasting and shaping of world-class healthcare through Healthcare BI, advanced analytics, and informed insights. Our commitment to fostering an exceptional workplace culture has earned...


  • Montreal, Canada PetalMD Full time

    Petal is a leading Canadian healthcare orchestration and billing company that revolutionizes healthcare systems to make them agile, efficient, and resilient by enabling the forecasting and shaping of world-class healthcare through Healthcare BI, advanced analytics, and informed insights. Our commitment to fostering an exceptional workplace culture has...


  • Montreal, Canada PetalMD Full time

    Petal is a leading Canadian healthcare orchestration and billing company that revolutionizes healthcare systems to make them agile, efficient, and resilient by enabling the forecasting and shaping of world-class healthcare through Healthcare BI, advanced analytics, and informed insights. Our commitment to fostering an exceptional workplace culture has...


  • Montreal, Canada PetalMD Full time

    Petal is a leading Canadian healthcare orchestration and billing company that revolutionizes healthcare systems to make them agile, efficient, and resilient by enabling the forecasting and shaping of world-class healthcare through Healthcare BI, advanced analytics, and informed insights. Our commitment to fostering an exceptional workplace culture has...


  • Montreal, Canada PetalMD Full time

    Petal is a leading Canadian healthcare orchestration and billing company that revolutionizes healthcare systems to make them agile, efficient, and resilient by enabling the forecasting and shaping of world-class healthcare through Healthcare BI, advanced analytics, and informed insights. Our commitment to fostering an exceptional workplace culture has...


  • Montreal, Canada Dialogue Health Technologies Inc. Full time

    The Senior IT Operations & Security Specialist role at Dialogue Reporting to the IT Team Lead, the mission of the Senior IT Operations & Security specialistis to build and maintain operational excellence in IT, Tech Support & Security. What you’ll be doing: Performing support (L2, L3) related to application, IT and security requests and incidents -...


  • Montreal, Canada Dialogue Health Technologies Inc. Full time

    The Senior IT Operations & Security Specialist role at Dialogue Reporting to the IT Team Lead, the mission of the Senior IT Operations & Security specialistis to build and maintain operational excellence in IT, Tech Support & Security. What you’ll be doing: Performing support (L2, L3) related to application, IT and security requests and incidents -...


  • Montreal, Canada Dialogue Health Technologies Inc. Full time

    The Senior IT Operations & Security Specialist role at Dialogue Reporting to the IT Team Lead, the mission of the Senior IT Operations & Security specialistis to build and maintain operational excellence in IT, Tech Support & Security. What you’ll be doing: Performing support (L2, L3) related to application, IT and security requests and incidents -...


  • Montreal, Canada FCS Security Services, Inc. Full time

    In a changing world, unprecedented challenges require unmatched talent. Join one of Montreal’s Top Employers in 2024. We are a dynamic and growing organization having its main establishment located in downtown Montreal and part of a leading international banking institution fully committed to building a more sustainable future. Note that the position may...


  • Montreal, Canada FCS Security Services, Inc. Full time

    In a changing world, unprecedented challenges require unmatched talent. Join one of Montreal's Top Employers in 2024. We are a dynamic and growing organization having its main establishment located in downtown Montreal and part of a leading international banking institution fully committed to building a more sustainable future. Note that the position may be...


  • Montreal, Canada FCS Security Services, Inc. Full time

    In a changing world, unprecedented challenges require unmatched talent. Join one of Montreal's Top Employers in 2024. We are a dynamic and growing organization having its main establishment located in downtown Montreal and part of a leading international banking institution fully committed to building a more sustainable future. Note that the position may be...


  • Montreal, Canada Alteo Inc. Full time

    Senior Application Support Specialist [#4632] Job Title Senior Application Support Specialist [#4632] Field IT Job Description Alteo is looking for a Senior Application Support Specialist for a permanent position based in Montreal.Within the framework of customer SLAs, your main role will be to provide support and handle incidents reported by...


  • Montreal, Canada Alteo Inc. Full time

    Senior Application Support Specialist [#4632] Job Title Senior Application Support Specialist [#4632] Field IT Job Description Alteo is looking for a Senior Application Support Specialist for a permanent position based in Montreal.Within the framework of customer SLAs, your main role will be to provide support and handle incidents reported by...


  • Montreal, Quebec, Canada Bell Full time

    Req Id: 417867At Bell, we do more than build world-class networks, develop innovative services and create original multiplatform media content – we advance how Canadians connect with each other and the world.If you're ready to bring game-changing ideas to life and join a community that values, professional growth and employee wellness, we want you on the...


  • Montreal, Quebec, Canada Bell Full time

    Req Id: 417867At Bell, we do more than build world-class networks, develop innovative services and create original multiplatform media content – we advance how Canadians connect with each other and the world.If you're ready to bring game-changing ideas to life and join a community that values, professional growth and employee wellness, we want you on the...


  • Montreal, Canada Axelon Services Corporation Full time

    Job Title: Cloud Security Architecture Specialist Location: Montreal ( Office attendance from day 1- Hybrid Mode 3x per week) Years Of experience : 7+ Job description: Specific role responsibilities include: -Provide security expertise to engineering and development teams, acting as a project team member providing consulting advise ensuring security...


  • Montreal, Canada Open Systems Technologies Full time

    Job Title: Cloud Security Architecture SpecialistLocation: Montreal ( Office attendance from day 1- Hybrid Mode 3x per week)Years Of experience : 7+Job description: Brokerage is currently undergoing a transformation as we look to move more workloads to the public cloud and modernize our information technology stack. This is a unique opportunity to grow with...


  • Montreal, Canada Open Systems Technologies Full time

    Job Title: Cloud Security Architecture SpecialistLocation: Montreal ( Office attendance from day 1- Hybrid Mode 3x per week)Years Of experience : 7+Job description: Brokerage is currently undergoing a transformation as we look to move more workloads to the public cloud and modernize our information technology stack. This is a unique opportunity to grow with...