Job Search and Career Advice Platform

Enable job alerts via email!

analyst, informatics security

Scotiabank

Toronto

On-site

CAD 125,000 - 150,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading financial institution in Toronto is seeking an AppSec and CNAPP Operation Analyst to enhance application security practices and collaborate with development teams. The successful candidate will be responsible for identifying vulnerabilities, managing cloud native application security, and contributing to the bank's security transformation. Ideal candidates have 3+ years of IT experience and a solid understanding of application security tools. This role offers competitive hourly pay in a full-time, permanent position.

Benefits

Diversity, Equity, Inclusion & Allyship initiatives
Opportunities for learning and growth

Qualifications

  • 3+ years' relevant working experience in IT (cloud security, application security, etc.).
  • 1+ years' experience practicing application security (SAST, DAST, SCA, MAST).
  • Demonstrated experience in vulnerability assessment, security integration, and automation of security processes.

Responsibilities

  • Develop and enhance strategies to identify and communicate AppSec and CNAPP vulnerabilities.
  • Collaborate with teams to manage security vulnerabilities for cloud native applications.
  • Maintain and operate AppSec and CNAPP controls to protect the bank and its customers.

Skills

Cloud security
Application security
Vulnerability assessment
Excellent communication skills
Collaboration

Education

Undergraduate degree or equivalent experience

Tools

SCCM
CrowdStrike
Prisma Cloud
Aqua Enterprise
MS Defender
BitBucket/GitHub
Jfrog Artifactory
Jenkins
Azure DevOps
GitLab CI/CD
CircleCI
Job description

Title posted on CareerBeacon - AppSec and CNAPP Operation Analyst

Posted on November 14, 2025 by Employer details Scotiabank

Job details

Requisition ID: 230783

Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture. The Team: Scotiabank's Application Security Operation team has global accountability and is highly supportive of the Bank's business, enabling execution of the Bank's strategies, operations and services, while ensuring that appropriate application security practices are adhered to. Now Application Security Operation is expanding the scope to cover Cloud Native Application Protection Platforms (CNAPP). This function provides core competency in proactively detecting application code flaws and/or bugs while working with the appropriate teams in instituting appropriate controls to mitigate risks, specifically as it pertains to cloud and application vulnerabilities and threats. This candidate will be expected to work closely with the application development groups to integrate AppSec and CNAPP processes and procedures into the software development lifecycle.

Responsibilities

The incumbent is responsible for supporting the Senior Lead, Senior Manager, Director, CIO and CISO in achieving enterprise security strategic goals through various processes, including:

  • Develop and/or enhance the strategies and processes to identify, analyze, and communicate AppSec and CNAPP vulnerabilities as per the CISO Directives, technical standards and published communication process flows.
  • Develop and/or enhance strategies and processes to manage the security vulnerabilities and threats for cloud native applications.
  • Develop and/or enhance reporting to development teams and all levels of management to provide proper tracking and measurement of remediation relative to established objectives.
  • Collaborate with stakeholders across the Bank; you will work closely with development and engineering, DevOps, cloud, application security and other application owner teams across the organization to deliver Cloud and Application Security capabilities for the Bank.
  • Contribute to the success of our cloud transformation by supporting the Review and Triage of the findings flagged by AppSec and CNAPP.
  • Maintain and Operate AppSec and CNAPP controls required to protect Scotiabank and its customers.
  • Responsible for adherence to an established process flow that ensures development support teams, infrastructure support teams, and business risk owners implement control measures that effectively mitigate or eliminate the identified risk.
  • Understand how the Bank's risk appetite and risk culture should be considered in day-to-day activities and decisions.
Qualifications
  • 3+ years' relevant working experience in IT (cloud security, application security, etc.).
  • 1+ years' experience practicing application security (SAST, DAST, SCA, MAST) throughout the Secure Software Development Lifecycle (SSDLC), with demonstrated experience in vulnerability assessment, security integration, automation of security processes, risk assessment and mitigation.
  • 1+ years' experience with Cloud Security domains like CNAPP, CWPP, CSPM and/or tools like SCCE, CrowdStrike, Prisma Cloud, Aqua Enterprise, MS Defender etc.
  • 1+ years' experience with popular CI/CD tools and processes like BitBucket/GitHub, Jfrog Artifactory, Jenkins, Azure DevOps, GitLab CI/CD, CircleCI.
  • Excellent communication skills and good support skills for triaging and analysis of issues for all development teams.
  • Proficient at collaborating with various stakeholders to achieve the objectives assigned.
  • Undergrad or equivalent experience.
Benefits

Diversity, Equity, Inclusion & Allyship – We strive to create an inclusive culture where every employee is empowered to reach their fullest potential, respected for who they are, and are embraced through bias-free practices and inclusive values across Scotiabank. We embrace diversity and provide opportunities for all employees to learn and grow.

Employment Details
  • Location: Toronto, ON
  • Work location: On site
  • Salary: $28.85 to $71.43 per hour
  • Terms of employment: Permanent employment, Full time
  • Starts as soon as possible
  • Vacancies: 1
  • Source: CareerBeacon #2182051

Advertised until: 2025-12-13

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.