AppSec Engineer: Secure by Design & CI/CD

COFOMO

Lévis

On-site

CAD 90,000 - 130,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

COFOMO seeks a security-focused software engineer to define and evolve security development standards and promote secure by design.

You will drive internal security, identify vulnerabilities, and collaborate with DevOps to embed security into CI/CD. Expertise in AppSec, OWASP, SAST/DAST/SCA, Kubernetes, SonarQube, Wiz, and WSL is required, plus AI security interest and cross-team influence.

Qualifications

  • Solid background in software development with Java, .NET, JavaScript, Python or equivalent technologies.
  • Expertise in application security (AppSec).
  • Master OWASP vulnerabilities and secure development best practices.
  • Experience with CI/CD pipelines and AppSec tools such as SAST, DAST, and SCA.
  • Know Kubernetes, SonarQube, Wiz and WSL tools.
  • Interest in security issues related to AI.
  • Ability to influence and collaborate in a matrix environment.
  • Excellent communication and extension skills.
  • Adopt a solution-oriented approach and continuous improvement.

Responsibilities

  • Define and evolve security development standards.
  • Ensure the security of internal frameworks.
  • Identify vulnerabilities and recommend appropriate fixes.
  • Promote secure by design and shift left security.
  • Act as a reference in application security for teams.
  • Participate in the creation of common patterns, guides and tools.
  • Collaborate with DevOps teams to integrate security into CI/CD pipelines.
  • Implement tools to detect, monitor, and remediate vulnerabilities.

Skills

Software development
Secure coding
CI/CD experience
AppSec
Leadership influence

Tools

SAST
DAST
SCA
Kubernetes
SonarQube
Wiz
WSL

Job description

COFOMO seeks a security-focused software engineer to define and evolve security development standards and promote secure by design.

You will drive internal security, identify vulnerabilities, and collaborate with DevOps to embed security into CI/CD. Expertise in AppSec, OWASP, SAST/DAST/SCA, Kubernetes, SonarQube, Wiz, and WSL is required, plus AI security interest and cross-team influence.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Developer
Developer

CoFoMo Inc. • Lévis

On-site
CAD 120,000 - 150,000
Developer
Developer

COFOMO • Lévis

On-site
CAD 90,000 - 130,000
Senior Security Engineer: Secure AI & Cloud, Remote
Senior Security Engineer: Secure AI & Cloud, Remote

Visa Hunt • Toronto

Hybrid
CAD 110,000 - 170,000
Lunch stipend
Health & dental benefits
RRSP matching
+5
Application Security Engineer
Application Security Engineer

Segment (Twilio) • Toronto

On-site
CAD 100,000 - 130,000
Junior Application Security Engineer — Secure Apps
Junior Application Security Engineer — Secure Apps

Affirm • London

On-site
CAD 133,000 - 183,000
Health care coverage
Time off
Stock Purchase Plan
Développeur expert en sécurité informatique
Développeur expert en sécurité informatique

Dempton Consulting Group • Lévis

On-site
CAD 90,000 - 130,000
Senior .NET Application Security Engineer (Hybrid)
Senior .NET Application Security Engineer (Hybrid)

Cognizant • Halifax

Hybrid
CAD 80,000 - 94,000
Discretionary annual incentive
Wellbeing programs
Hybrid work arrangement
Cloud Security Engineer
Cloud Security Engineer

ALLTECH CONSULTING SVC INC • Quebec

On-site
CAD 80,000 - 120,000
Senior AppSec Engineer - Remote Cloud & AI Security
Senior AppSec Engineer - Remote Cloud & AI Security

Mosaec • Ottawa

Hybrid
CAD 250,000 - 312,000
Learning & development
Home office setup
Professional memberships
+2
Senior Application Security Engineer — Hybrid, Equity
Senior Application Security Engineer — Hybrid, Equity

Faire • Toronto

Hybrid
CAD 160,000 - 220,000
Equity and benefits