Unfortunately, this job posting is expired.
Don't worry, we can still help! Below, please find related information to help you with your job search.
Some similar recruitments
It Security Analyst - Mitre
Recruited by Raise 8 months ago Address Scarborough, Ontario, Canada
It Security Analyst Jobs
Recruited by Aviso Wealth 8 months ago Address Vancouver, British Columbia, Canada
It Network And Security Engineer
Recruited by Industrial Electric Mfg. (IEM) 8 months ago Address Surrey, British Columbia, Canada
Security Analyst Jobs
Recruited by Aviso Wealth 8 months ago Address Vancouver, British Columbia, Canada
Senior Security Specialist Jobs
Recruited by CoreFactor 8 months ago Address Greater Toronto Area, Canada
General Manager, Energy & Resources, Goose Bay
Recruited by Sodexo 9 months ago Address Happy Valley–Goose Bay, Newfoundland and Labrador, Canada
Security Analyst Jobs
Recruited by Akkodis 9 months ago Address Scarborough, Ontario, Canada
It Specialist (Network Admin)
Recruited by ML6 Search + Talent Advisory 9 months ago Address British Columbia, Canada
Director, It Security & Compliance
Recruited by Great Gulf 9 months ago Address Greater Toronto Area, Canada
Manager Of It Jobs
Recruited by Pacifica Housing 9 months ago Address Victoria, British Columbia, Canada
Junior Cyber Security Specialist (Remote It Internship – Cybersecurity)
Recruited by TalentKompass Deutschland 10 months ago Address Vancouver, British Columbia, Canada
Staff Security Analyst Jobs
Recruited by Visier Inc. 10 months ago Address Vancouver, British Columbia, Canada
Nursing Laboratory Instructor (Happy Valley-Goose Bay) (Band Level 10)
Recruited by CareerBeacon 10 months ago Address Happy Valley–Goose Bay, Newfoundland and Labrador, Canada
It Security Manager Jobs
Recruited by Think Research 10 months ago Address Greater Toronto Area, Canada
It Manager Jobs
Recruited by Robert Half 10 months ago Address Vancouver, British Columbia, Canada
It Security Analyst - 4
Recruited by Akkodis 10 months ago Address Scarborough, Ontario, Canada

It Security Analyst - 5

Company

Delpath

Address Greater Toronto Area, Canada
Employment type CONTRACTOR
Salary
Category IT Services and IT Consulting,Banking,Financial Services
Expires 2023-08-08
Posted at 10 months ago
Job Description

Hiring Manager: Senior Manager Application Security

Location Address: Fully remote – 44 King Street W, 12th Floor

Contract Duration: 8 months

Scheduled Hours: Monday to Friday, 9am-5pm

Extension Opportunity: Yes, depending on performance and need


Typical Day in Role:

The incumbent is responsible for supporting the Senior Manager, Director, VP, SVP and CISO in achieving IS&C Strategic goals through various processes, including:

• Develop and/or enhance strategies and processes to manage web application security vulnerabilities and threats for both transactional and marketing/informational web sites.

• Develop and/or enhance communication model to manage web application vulnerability remediation with the development and infrastructure support teams in support of risk management practices on behalf of the business owner.

• Develop and/or enhance reporting to development teams and all levels of management in order to provide proper tracking and measurement of remediation relative to established objectives.

• Recommend, design, assess, implement, deploy and maintain application security controls required to protect Scotiabank and its customers.

• Responsible for developing and/or enhancing the strategies and processes to identify, analyze, and communicate application vulnerabilities as per the CISO Directive and published communication process flows.

• Responsible for adherence to an established process flow that ensures development support teams, infrastructure support teams, and business risk owners implement control measures that effectively mitigate or eliminate the identified risk.

• Responsible for timely and accurate reporting of all findings to the development teams, appropriate levels of management and the business risk owner


Candidate Requirements/Must-Have skills:

1. 10+ years of technical experience as an IT Security Analyst with experience building security applications.

2. 5+ years of experience with multi-tier Web Applications, web services, and related vulnerabilities and potentials threats. Staying abreast of information provided by recognized organizations such as OWASP (Open Web Application Security Project) and CVE (Common Vulnerabilities and Exposures).

3. 5+ years of experience with Java application development and more than one of the following languages: Java/JavaScript (preferred), Swift, Kotlin, React, Angular, Ruby, Python C#.

4. 5+ years of experience performing source code reviews manually or using analysis tools is essential. Analysis tools such as Fortify SCA and BlackDuck are preferred.

5. 5+ years of experience with technologies and processes such as Agile Software Delivery, Continuous Integration and Continuous Delivery, DevOps, GitOps, Cloud Native Technologies including Docker Containers, Kubernetes, and Deployment Automation & Orchestration.


Nice-To-Have Skills:

• Experience in an Agile development workshop and leveraging tools such as Confluence, JIRA, Bit Bucket, Gradle, Maven and Jenkins.

• Experience on reporting tools such as Cognos, JasperReport and Microsoft Power BI.


Soft Skills:

• Good communication skills and good support skills for triaging and analysis of issues for all development teams

• Must have the ability to generate reports and tailor his/her communication strategy for various levels of technical staff, executive management, and business clients.

• Strong decision making, forward thinking and creative problem-solving skills to anticipate and respond quickly to technological/market influences.

• Ability to work as part of a team, as well as work independently or with minimal direction.


Best vs. Average Candidate:

• Candidate who is an expert in the security world and can hit the ground running with a minimal learning curve.

• Candidate who has team lead experience and can communicate incidents and progress to the executive leadership.

• Experience with SAST (Static Application Security Tools).

• Experience with SCA (Software Composition Analysis) also known as Supply Chain Security or Open Source Security.


Education:

• University degree or college diploma and a minimum of four (4) years equivalent security industry-related experience required.

• CISSP and/or CISA designation beneficial but not required.

• CEH, OSCP, OSWE designation beneficial but not required.


Candidate Review & Selection

• 1st round video interview – Panel with Senior Manager and Technical Team (45 minutes)

• 2nd round video interview – Panel with Director (45 minutes)