1

Appsec Jobs in Quebec (NOW HIRING)

Work closely with development teams on Secure SDLC practices (secure coding, threat modeling, AppSec testing). ○ Sales Partnership: Provide security expertise to Sales during the sales cycle. ○ ...

Coordinate and host training sessions, knowledge-sharing forums, and AppSec/CloudSec communities of practice. What do you need to succeed? * Expert Problem-solving skills and advanced interpersonal ...

Appsec information

Can you make $500,000 a year in cyber security?

AppSec professionals can potentially earn $500,000 annually, especially with senior roles, extensive experience, specialized skills, and certifications like CISSP or OSCP. High salaries are often found in large organizations, consulting, or leadership positions such as security directors or chief information security officers. Achieving this level typically requires years of experience and a strong track record in cybersecurity.

What job makes $10,000 a month without a degree?

In cybersecurity, roles such as penetration testers or security consultants can earn $10,000 or more per month, especially with specialized skills, certifications like CISSP or OSCP, and experience. These positions often require hands-on expertise, knowledge of security tools, and continuous learning but do not always require a formal degree.

What does an AppSec team do?

An AppSec (Application Security) team is responsible for identifying and fixing security vulnerabilities in software applications. They conduct code reviews, perform security testing, and implement security best practices to protect applications from cyber threats, often using tools like static and dynamic analysis software. Their work helps ensure the confidentiality, integrity, and availability of software systems throughout the development lifecycle.

Will AI replace AppSec engineers?

AI can automate certain tasks in application security, such as vulnerability scanning and code analysis, but AppSec engineers are essential for designing security strategies, interpreting complex threats, and implementing security measures. AI tools serve as supplements to human expertise rather than replacements, and skills in security principles, coding, and tool usage remain critical for the role.

What is the difference between Appsec vs Security Analyst?

AspectAppsecSecurity Analyst
Required CredentialsCertifications like CISSP, CEH, OSCP; knowledge of secure codingCertifications such as Security+, CISSP; threat analysis skills
Work EnvironmentDevelopment teams, secure coding practices, application testingMonitoring security systems, incident response, risk assessment
Employer & Industry UsageTech companies, software firms, organizations with application security needsAll industries, including finance, healthcare, government, focusing on security monitoring

Appsec professionals focus on securing applications through secure coding, testing, and vulnerability management, while Security Analysts monitor and respond to security threats across systems. Both roles require security certifications and work in overlapping environments, but their core responsibilities differ in scope and focus.

What are popular job titles related to Appsec jobs in Quebec? For Appsec jobs in Quebec, the most frequently searched job titles are:
What job categories do people searching Appsec jobs in Quebec look for? The top searched job categories for Appsec jobs in Quebec are:
Infographic showing various Appsec job openings in Quebec as of June 2026, with employment types broken down into 100% Full Time. Highlights an 67% In-person, and 33% Hybrid job distribution.

Application Security Engineer (AppSec) - BFSI - 0604 AS #5

NavitasPartners

Terrebonne, QC • On-site

$30/hr

Other

Posted 23 days ago


Job description

Application Security Engineer (AppSec) - BFSI

Location: Montreal, Quebec

About the Role

We are seeking an Application Security Engineer to secure enterprise banking, insurance, payments, and customer-facing digital applications through secure development and DevSecOps practices.


IMPORTANT NOTE - BFSI EXPERIENCE REQUIRED

Candidates must possess experience securing applications within Banking, Financial Services, Insurance, Capital Markets, Payments, Lending, or FinTech environments.

Experience protecting customer financial information and transaction systems is required.

Candidates without BFSI experience will not be considered.


Responsibilities
  • Conduct secure code reviews and application security assessments.
  • Perform SAST, DAST, API security testing, and dependency analysis.
  • Support threat modeling and secure architecture reviews.
  • Implement secure SDLC and DevSecOps practices.
  • Assist development teams with remediation activities.
  • Develop application security standards and controls.
Required Qualifications
  • 5+ years of Application Security experience.
  • Strong knowledge of OWASP Top 10 and Secure SDLC.
  • Experience with Checkmarx, Veracode, Fortify, Snyk, or similar tools.
  • Experience securing APIs and cloud-native applications.
  • BFSI experience required.
Preferred Certifications
  • CSSLP
  • GWAPT
  • CISSP

For more details reach at resumes@navitassols.com