Security & AI DevSecOps Expert (Hybrid)

Ateko, backed by Bell Canada

Toronto

Hybrid

CAD 120,000 - 150,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Ateko is seeking an experienced Application Security & AI DevSecOps Expert for a 12-month hybrid role in Toronto. You will combine security architecture and DevSecOps to automate security across the software development lifecycle, leveraging frontier AI technologies to detect, analyze, and remediate vulnerabilities.

You will lead vulnerability assessments with SAST/DAST/SCA, build IaC-based secure infrastructures with Terraform, and integrate security controls into CI/CD pipelines using Python

Qualifications

  • Significant experience in Application Security within a DevSecOps environment.
  • Proficient with SAST, DAST and SCA vulnerability analysis tools.
  • Strong development/scripting skills in Python or Java.
  • Experience with Terraform and IaC approaches.
  • Ability to integrate security controls into CI/CD pipelines.
  • Strong knowledge of DevSecOps practices and security automation.

Responsibilities

  • Identify and analyze vulnerabilities in source code, applications, and software dependencies.
  • Perform security assessments using SAST, DAST, and SCA tools.
  • Collaborate with development, architecture, and infrastructure teams to promote DevSecOps best practices.
  • Utilize AI tools and agents to accelerate vulnerability detection, analysis, and remediation.
  • Develop automation scripts and tools using Python (preferred) or Java.
  • Design and maintain secure infrastructures using Terraform and IaC principles.
  • Build automated mechanisms to detect, remediate, and prevent vulnerabilities.
  • Integrate security fixes directly into development teams' CI/CD pipelines.
  • Automate security controls and scans within software delivery pipelines.
  • Implement, configure, and integrate application security tools.

Skills

DevSecOps security
Security automation
Python/Java scripting
Vulnerability analysis

Tools

SAST
DAST
SCA
Terraform
CI/CD

Job description

12 month contract hybrid (Toronto location)
Application Security & AI DevSecOps Expert
About the Role

We are looking for a highly hands-on Application Security Expert who combines the skills of a Security Architect and a DevSecOps Specialist. This individual will play a key role in automating security throughout the entire software development lifecycle while leveraging the capabilities offered by the most advanced artificial intelligence technologies.

Specifically, we are referring to next-generation AI technologies ("frontier AI") capable of automating complex tasks, including vulnerability discovery, analysis, and remediation. The objective is to strengthen application security against increasingly fast, sophisticated, and automated threats.

Responsibilities
  • Identify and analyze vulnerabilities in source code, applications, and software dependencies.
  • Perform security assessments using SAST, DAST, and SCA tools.
  • Collaborate with development, architecture, and infrastructure teams to promote DevSecOps best practices.
  • Utilize AI tools and agents to accelerate vulnerability detection, analysis, and remediation.
  • Contribute to the evolution of cybersecurity practices related to AI adoption and the protection of modern applications.
  • Develop automation scripts and tools using Python (preferred) or Java.
  • Design and maintain secure infrastructures using Terraform and Infrastructure as Code (IaC) principles.
  • Build automated mechanisms to detect, remediate, and prevent vulnerabilities.
  • Integrate security fixes directly into development teams' CI/CD pipelines.
  • Automate security controls and scans within software delivery pipelines.
  • Implement, configure, and integrate application security tools.
Required Qualifications
  • Significant experience in Application Security within a DevSecOps environment.
  • Strong experience with vulnerability analysis tools:
  • SAST (Static Application Security Testing)
  • DAST (Dynamic Application Security Testing)
  • SCA (Software Composition Analysis)
  • Excellent development and scripting skills, ideally in Python or Java.
  • Experience with Terraform and Infrastructure as Code (IaC) approaches.
  • Experience integrating security controls into CI/CD pipelines.
  • Strong knowledge of DevSecOps practices and security automation.
Preferred Qualifications
  • Understanding of security risks related to Artificial Intelligence.
  • Experience using AI for vulnerability detection or analysis.
  • Knowledge of AI-assisted attacks and emerging cybersecurity trends.
  • Experience with AWS and/or Azure cloud platforms.
  • Knowledge of automated remediation approaches and secure software development practices.
Desired Profile

We are looking for someone capable of automating security from end to end. A professional who not only identifies vulnerabilities but is also able to develop fixes, integrate them into development pipelines, and use AI as a force multiplier to detect issues earlier and remediate them faster.

This person must be equally comfortable working in code and infrastructure, while bringing a modern perspective on cybersecurity and the evolving threat landscape associated with artificial intelligence.

ACCESSIBILITY

We're committed to fostering an inclusive, equitable, and accessible workplace where every team member feels valued, respected, and supported, and has the opportunity to reach their full potential. We welcome and encourage applications from people with disabilities.

Accommodations are available on request for candidates taking part in all aspects of the selection process. For a confidential inquiry, simply email your recruiter directly or accessibility@fxinnovation.com to make arrangements.

If you have questions regarding accessible employment at Ateko please email our Human Resources team at accessibility@fxinnovation.com

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Offensive Security Engineer
Offensive Security Engineer

Synechron • Toronto

Hybrid
CAD 130,000 - 140,000
15 days paid annual leave
Comprehensive insurance (medical, etc)
Flexible hybrid policy
+3
Principal Product Security Architect
Principal Product Security Architect

OpenText • Southwestern Ontario

On-site
CAD 140,000 - 190,000
Senior Cybersecurity Specialist
Senior Cybersecurity Specialist

STACK IT Recruitment • Burlington

On-site
CAD 154,000 - 181,000
Paid vacation and personal days
Annual bonus
Senior IT Security Vulnerability & Risk Analyst
Senior IT Security Vulnerability & Risk Analyst

OXARO Inc. • Quebec

Hybrid
CAD 85,000 - 110,000
SecOps Engineer
SecOps Engineer

CSC Generation • Toronto

Hybrid
CAD 110,000 - 160,000
RRSP match
Medical coverage
Dental coverage
+2
Security Architect
Security Architect

Ateko, backed by Bell Canada • Montreal (administrative region)

On-site
CAD 120,000 - 160,000
Full-Stack AI Practice Lead
Full-Stack AI Practice Lead

FX Innovation • Calgary, Toronto

Hybrid
CAD 140,000 - 190,000
Hybrid work
Competitive benefits
Career growth
Senior Azure DevOps / AI Platform DevOps Specialist
Senior Azure DevOps / AI Platform DevOps Specialist

Randstad Canada • Saint-Laurent-de-l'Île-d'Orléans

Hybrid
CAD 90,000 - 130,000
Data governance
Vault secrets management
MinIO storage
+11
AI Security Architect
AI Security Architect

TEEMA • Toronto

Hybrid
CAD 135,000 - 175,000
Applied AI Backend Sr. Software Developer - Ottawa, ON
Applied AI Backend Sr. Software Developer - Ottawa, ON

TrendAI • Ottawa

Hybrid
CAD 105,000 - 130,000
Health and dental coverage
Telehealth Services
Life Insurance
+4