Job Search and Career Advice Platform
  • Jobs
  • Headhunters
  • Free resume review
  • About Us
EN
6,812

Ai jobs in Canada

Security Engineer (DevSecOps)

Jonas Software

Canada
On-site
CAD 135,000 - 150,000
27 days ago
I want to receive the latest job alerts for “Ai” jobs

Customer Success Executive- Banking

ServiceNow

Quebec
Hybrid
CAD 100,000 - 130,000
27 days ago

Senior Reliability Engineer

Medium

Vancouver
On-site
CAD 85,000 - 110,000
28 days ago

Director, Enterprise Architecture

Saint Elizabeth

Markham
Hybrid
CAD 120,000 - 160,000
28 days ago

Customer Success Manager (Toronto)

Cohere

Toronto
Hybrid
CAD 80,000 - 120,000
28 days ago
discover more jobs illustrationDiscover more opportunities than anywhere else. Find more jobs now

Senior Software Engineer, Frontend (Hybrid)

Homebase

Toronto
On-site
CAD 90,000 - 120,000
16 days ago

Hybrid AI Strategy Lead

Fitch Group

Toronto
Hybrid
CAD 120,000 - 160,000
16 days ago

Senior Backend Engineer - Canada

Skyfire

Toronto
On-site
CAD 80,000 - 110,000
17 days ago
HeadhuntersConnect with headhunters to apply for similar jobs

Advisory Senior Manager, Organization Change and Transformation

Capgemini

Toronto
On-site
CAD 100,000 - 140,000
17 days ago

Channel Solutions Engineer

Trend Micro

Montreal
On-site
CAD 80,000 - 100,000
17 days ago

Account Executive - Strategic Enterprise (West)

Upbound - Job Posting

Vancouver
Remote
CAD 80,000 - 110,000
17 days ago

Software Engineer

Deltek

Calgary
On-site
CAD 65,000 - 116,000
18 days ago

Data Analysis, Risk Reporting & Governance Specialist (Audit & Regulatory)

TD

Canada
On-site
CAD 91,000 - 137,000
18 days ago

Senior Legal Counsel

Intello Technologies Inc.

Prince George
Hybrid
CAD 130,000 - 194,000
18 days ago

Product Owner - Decarbonisation x AI

Fortescue Metals Group

Southwestern Ontario
On-site
CAD 100,000 - 120,000
18 days ago

Designer Principal Mode - Fashion Senior Designer

CENTRIC BRANDS

Montreal
On-site
CAD 80,000 - 100,000
18 days ago

Business Transformation Specialist - AI

Software International

Mississauga
On-site
CAD 100,000 - 120,000
19 days ago

Sr. Systems Design Engineer - Data Center GPU

Advanced Micro Devices

Markham
On-site
CAD 100,000 - 130,000
19 days ago

Senior Data Scientist

Alpaca

Canada
Remote
CAD 100,000 - 130,000
19 days ago

Hardware Development Director (Job Req #2026-046)

Ross Video

Ottawa
Hybrid
CAD 100,000 - 140,000
19 days ago

Controller

Apera AI Inc

Vancouver
On-site
CAD 80,000 - 110,000
20 days ago

AI Analyst

J.D. Irving, Limited

New Brunswick
On-site
CAD 80,000 - 100,000
21 days ago

Senior Software Engineer

Pantera Capital

Toronto
On-site
CAD 100,000 - 120,000
21 days ago

Senior Presales Solution Architect

Informatica Corp.

Toronto
Hybrid
CAD 120,000 - 150,000
21 days ago

Director, Product Counsel

Tipalti

Toronto
On-site
CAD 209,000 - 280,000
22 days ago

Top job titles:

Millwright jobsBank Teller jobsTyping jobsDirector jobsJunior Data Analyst jobsSocial Science jobsService Adviser jobsAccounting Clerk jobsJunior Accountant jobsNetwork Technician jobs

Top companies:

Jobs at CraJobs at ScotiabankJobs at EbrandonJobs at MarriottJobs at Ernst & YoungJobs at UbisoftJobs at AdpJobs at NestleJobs at Estee LauderJobs at Honeywell

Top cities:

Jobs in MontrealJobs in VancouverJobs in WinnipegJobs in HamiltonJobs in BramptonJobs in WindsorJobs in OakvilleJobs in SaskatoonJobs in GatineauJobs in Langley

Similar jobs:

Retail Sales jobsAirport jobsPaint jobsRetail jobsSupply Chain Management jobsSupply Chain jobsEmail Marketing jobsMaintenance jobsRegulatory Affairs jobsFitness Trainer jobs
Security Engineer (DevSecOps)
Jonas Software
Canada
On-site
CAD 135,000 - 150,000
Full time
27 days ago

Job summary

A leading enterprise management software provider in Canada is seeking a Security Engineer to co-own the DevSecOps program, ensuring robust security measures. This role involves leading security automation, managing compliance with PCI DSS, and implementing cloud security strategies on AWS. The ideal candidate will have 8–10 years of experience in application/cloud security, with a strong emphasis on DevSecOps practices. Applicants should be familiar with Veracode and Terraform for AWS systems. Competitive salary and benefits offered.

Qualifications

  • 8–10 years in application/cloud security or DevSecOps for high-availability platforms.
  • Hands-on DevSecOps program administration experience with Veracode.
  • Fluent in Terraform for the AWS Stack.

Responsibilities

  • Own Security Automation and run the CI/CD security toolchain.
  • Embed Security in the SDLC and create secure-coding standards.
  • Implement cloud security measures on AWS and EKS.
  • Manage compliance automation for PCI DSS 4.0.
  • Scope and coordinate internal and third-party penetration tests.
  • Research and implement AI security tools.

Skills

Application/cloud security expertise
DevSecOps program administration
Fluent in Terraform
Strong CI/CD experience
AWS security fundamentals
Microservices familiarity
Clear communication skills

Tools

Veracode
Terraform
GitHub Actions
Job description
Job Description

Security Engineer

Compensation: The expected salary range for this role is between $135,000 and $150,000, depending on experience and qualifications.

Reason for Opening: Net New position

AI is not used to screen, assess, or select applicants for this role.

Company

Constellation Payment Processing is a modern Payment Facilitator (PayFac) empowering SaaS businesses to grow revenue through seamless, embedded payments. As part of Constellation Software Inc. (TSE:CSU) — a global Canadian-based software leader at a $96B market cap and the 7th largest software company in the world — we combine the agility of a specialized payments company with the strength and stability of an established global powerhouse.

We are building a cloud-native PayFac platform on AWS: microservices (DDD) across TypeScript/JavaScript, Java, and Ruby, with a ReactJS front end. As our Security Engineer, you will co‑own the DevSecOps program—driving continuous security automation, compliance automation, and penetration testing. You will design and orchestrate SAST/SCA/DAST across our services, champion remediation practices, and partner closely with our compliance team to translate control objectives into repeatable, automated evidence.

Our customers are ISV vendors who embed payments by integrating with our APIs, SDKs, and webhooks. That means security and compliance aren’t afterthoughts—they are product features. You will ensure our developer‑facing surface area is secure by default: establishing standards for authentication and authorization (OIDC/OAuth2/JWT, mTLS/JWS for webhooks), key and secret management, request signing, idempotency, rate‑limiting/abuse controls, and secure data handling that minimizes PCI scope for ISVs (tokenization, hosted fields/iframes, PAN vault boundaries, network tokens).

You will create secure integration patterns (reference apps, checklists, threat models/DFDs) so partners can implement quickly without compromising controls. Because we operate a multi‑tenant PayFac, you will harden isolation boundaries (network, identity, and data), lead supply‑chain security (SBOMs, signing/provenance, gated deployments), and build continuous evidence for PCI DSS 4.0 (and SOC 2/ISO as needed).

You will collaborate with partner security and compliance teams on due‑diligence requests (SIG Lite, AOC/ROCs, shared‑responsibility matrices), and you will own pre‑launch security reviews for new ISV integrations. You will also help run incident response drills and define partner‑facing comms and SLAs for security events.

Finally, you will research and implement AI‑assisted security (triage, anomaly detection, auto‑remediation PRs) with appropriate guardrails, and own KPIs that demonstrate multiplier effects—e.g., reduced MTTR, lower false‑positive rates, higher auto‑triage coverage, and faster time‑to‑evidence—so our platform’s security posture continuously improves as our ISV ecosystem scales.

What You will Do
  • Own Security Automation
    • Design, implement, and run the CI/CD security toolchain: SAST, SCA, DAST, container and IaC scanning, secrets detection, SBOM generation, and policy‑as‑code.
    • Integrate scanners into GitHub/GitHub Actions pipelines with PR gates, and auto‑ticketing to JIRA; tune noise, baselines, and break‑glass rules.
    • Establish vulnerability management SLAs, risk acceptance workflow, and metrics dashboards (e.g., MTTR, vuln burn‑down).
  • Embed Security in the SDLC
    • Create lightweight secure‑coding standards and review checklists for TypeScript/Node, Java, Ruby, React.
    • Run threat modeling (STRIDE/PASTA) and produce DFDs (L0–L2) for new and high‑risk flows.
    • Lead a “security champions” program with engineering squads.
  • Platform & Cloud Security (AWS/EKS)
    • Harden EKS workloads (admission controls, pod security, image signing, runtime protection), ECR scanning, and supply‑chain security.
    • Implement and iterate on IAM least‑privilege, KMS/CloudHSM key management, network segmentation, WAF/Shield, CloudFront, GuardDuty/Security Hub, and centralized logging.
    • Validate service‑to‑service auth (mTLS, OIDC, JWT), secrets management (AWS Secrets Manager/SSM), and data protection at rest/in transit (FIPS‑validated crypto).
    • Manage security certificate adoption of our own and 3rd‑party across the company technology stack.
  • Compliance Automation
    • Map controls and automate evidence for PCI DSS 4.0 (and SOC 2/ISO 27001 as needed): continuous monitoring, detector‑to‑control mappings, and audit‑ready artifacts.
    • Partner with compliance on policies, risk register, third‑party/vendor assessments, and control testing cadence.
  • Penetration Testing & Response
    • Scope and coordinate internal and third‑party penetration tests (API, web, mobile, cloud); plan fix‑verification and retests.
    • Contribute to incident response playbooks, tabletop exercises, and forensics runbooks.
    • Participate in incident response events and be a key contributor on improving security posture.
  • Research & implement AI security tools
    • Evaluate and deploy AI/ML capabilities (LLM‑assisted code reviews, AI triage for SAST/SCA/DAST, anomaly detection over logs/telemetry, drift detection) to reduce toil and increase signal quality—without leaking sensitive code or data.
  • Own outcomes & KPIs
    • Define baselines, instrument dashboards, and continuously tune models/policies to demonstrably improve detection efficacy, remediation speed, and compliance evidence quality.
  • Guardrails & governance
    • Establish safe‑use patterns (PII redaction, repository allowlists, prompt/content controls, human‑in‑the‑loop), document model/feature risks, and keep audit trails that map to PCI DSS 4.0 controls.
  • Automation & SOAR integration
    • Orchestrate AI‑assisted enrichment and response (e.g., auto‑labeling, deduplication, prioritization, suggested fixes/PRs) across CI/CD, SIEM, ticketing, and chat.
What You will Bring
  • 8–10 years in application/cloud security or DevSecOps for high‑availability platforms (fintech/payments ideal).
  • Hands‑on DevSecOps program administration experience with Veracode.
  • Fluent in Terraform for the AWS Stack.
  • Strong CI/CD experience (GitHub Actions preferred) and automation in Python/TypeScript/Bash.
  • Solid AWS security fundamentals: IAM, KMS, CloudTrail, Config, Security Hub, GuardDuty, VPC/LBs, WAF/Shield; Kubernetes/EKS hardening experience.
  • Familiarity with microservices, event‑driven systems, and DDD; ability to read code in TypeScript/Java/Ruby and basic ReactJS patterns.
  • Working knowledge of PCI DSS 4.0 control objectives (tokenization/PAN handling, key management, segmentation, logging/retention), plus SOC 2/ISO 27001 concepts.
  • Clear communication with engineers and non‑technical stakeholders; bias to automate and simplify.
  • Bonus Point: Payments domain exposure: EMV/3DS, PAN vaulting, network tokenization, P2PE, dispute/chargeback flows.
How We will Measure Success
  • 90 days: Security scans embedded in CI for core services with actionable findings; baseline metrics and SLAs defined; initial PCI 4.0 control mappings complete.
  • 6 months: False‑positive rate • 12 months: Compliance evidence automation covers priority controls; successful third‑party penetration test with timely remediation; measurable reduction in high‑risk vulns and misconfigurations.
Team & Reporting

This role sits in the CTO organization (Engineering/Platform) and partners daily with compliance, DevOps/SRE, Backend/Frontend teams, and Product.

Our Stack (you don’t need all of these)

AWS (EKS, ECR, KMS, CloudHSM, WAF/Shield, CloudFront, GuardDuty, Security Hub, CloudWatch), GitHub/GitHub Actions, Terraform, Node/TypeScript, Java, Ruby, React, Kafka, MongoDB, Postgres, Redis, Veracode, OWASP ZAP/Burp, AI Tools in Microsoft Teams, JIRA, Development IDEs (Amazon Q, Cursor, Claude Code)

About Jonas Software

Jonas Software is the leading provider of enterprise management software solutions to the Country and Golf Clubs, Foodservice, Construction, Fitness & Sports, Attractions, Salon & Spa, Education, Radiology/Laboratory Information Systems, and Product Licensing industries. Within these vertical markets, Jonas is made up of over 65 distinct brands, which are respected and leaders within their own domain.

Jonas’ vision is to be the branded global leader across the aforementioned vertical markets and to be recognized by customers and respective industry stakeholders as the trusted provider of ‘Software for Life’ and as an ambassador for technology, product innovation, quality, and customer service.

Jonas Software is the valued technology partner of over 60,000 customers worldwide in more than 30 countries. Jonas employs over 2,000 skilled individuals consisting of a cross‑section of industry experts and technology professionals. Jonas is headquartered in Canada and also operates offices throughout North America, the United Kingdom, Europe, Australia New Zealand and Africa. Jonas is a 100% owned subsidiary of Constellation Software Inc., headquartered in Toronto and traded on the S&P/TSX 60.

  • 1
  • ...
  • 153
  • 154
  • 155
  • ...
  • 273

* The salary benchmark is based on the target salaries of market leaders in their relevant sectors. It is intended to serve as a guide to help Premium Members assess open positions and to help in salary negotiations. The salary benchmark is not provided directly by the company, which could be significantly higher or lower.

Job Search and Career Advice Platform

Empoweringjob seekers

Tools
  • Jobs
  • Resume review
  • Headhunters
  • Browse jobs
Company
  • About us
  • Careers at JobLeads
  • Site notice
  • Press
  • Reviews
Support
  • Help
  • Partner integration
  • ATS Partners
Social
  • JobLeads Blog
  • YouTube
  • LinkedIn
  • Instagram
  • Facebook
  • Privacy Policy
  • Terms of Use

© JobLeads 2007 - 2025 | All rights reserved