Overview The Senior Application Security Engineer plays a critical role in driving secure software development and application security maturity within TripleLift's Engineering and Security ...
Overview The Senior Application Security Engineer plays a critical role in driving secure software development and application security maturity within TripleLift's Engineering and Security ...
Application Security Engineer
Toronto, ON ยท Hybrid
CA$120K - CA$202K/yr
The State Street Cyber Security Architecture & Engineering team is seeking an accomplished professional with proven expertise in Application Security (AppSec) and DevSecOps. The ideal candidate will ...
Application Security Engineer
Toronto, ON ยท Hybrid
CA$120K - CA$202K/yr
The State Street Cyber Security Architecture & Engineering team is seeking an accomplished professional with proven expertise in Application Security (AppSec) and DevSecOps. The ideal candidate will ...
As a Principal Application Security Engineer , you will be tasked with shaping, growing, and leading Barracuda's Application Security program. Additionally, as the most senior member of the AppSec ...
Quick apply
As a Principal Application Security Engineer , you will be tasked with shaping, growing, and leading Barracuda's Application Security program. Additionally, as the most senior member of the AppSec ...
As a Principal Application Security Engineer , you will be tasked with shaping, growing, and leading Barracuda's Application Security program. Additionally, as the most senior member of the AppSec ...
As a Principal Application Security Engineer , you will be tasked with shaping, growing, and leading Barracuda's Application Security program. Additionally, as the most senior member of the AppSec ...
As a Principal Application Security Engineer , you will be tasked with shaping, growing, and leading Barracuda's Application Security program. Additionally, as the most senior member of the AppSec ...
As a Principal Application Security Engineer , you will be tasked with shaping, growing, and leading Barracuda's Application Security program. Additionally, as the most senior member of the AppSec ...
Partner with Engineering, Security Operations, Cloud Security, and Application Development teams to implement and operationalize ADR technologies and processes. * Lead the deployment, onboarding, and ...
Partner with Engineering, Security Operations, Cloud Security, and Application Development teams to implement and operationalize ADR technologies and processes. * Lead the deployment, onboarding, and ...
Senior Application Security Engineer
Ottawa, ON ยท Hybrid
CA$166K - CA$194K/yr
Envision yourself at Barracuda As a Senior Application Security Engineer , you'll help shape the future of our AppSec program. You'll work effectively and efficiently in a small, high-impact team ...
Senior Application Security Engineer
Ottawa, ON ยท Hybrid
CA$166K - CA$194K/yr
Envision yourself at Barracuda As a Senior Application Security Engineer , you'll help shape the future of our AppSec program. You'll work effectively and efficiently in a small, high-impact team ...
Senior Application Security Engineer
Kanata, ON ยท Hybrid
CA$166K - CA$194K/yr
Envision yourself at Barracuda As a Senior Application Security Engineer , you'll help shape the future of our AppSec program. You'll work effectively and efficiently in a small, high-impact team ...
Senior Application Security Engineer
Kanata, ON ยท Hybrid
CA$166K - CA$194K/yr
Envision yourself at Barracuda As a Senior Application Security Engineer , you'll help shape the future of our AppSec program. You'll work effectively and efficiently in a small, high-impact team ...
Envision yourself at Barracuda As a Senior Application Security Engineer , you'll help shape the future of our AppSec program. You'll work effectively and efficiently in a small, high-impact team ...
Quick apply
Envision yourself at Barracuda As a Senior Application Security Engineer , you'll help shape the future of our AppSec program. You'll work effectively and efficiently in a small, high-impact team ...
Senior Security Engineer, Application Security
Kitchener, ON ยท On-site
CA$160K - CA$220K/yr
About this role Our Engineering organization owns the software that makes our marketplace work. Our Application Security function is focused on keeping vulnerabilities out of the code and software as ...
Senior Security Engineer, Application Security
Kitchener, ON ยท On-site
CA$160K - CA$220K/yr
About this role Our Engineering organization owns the software that makes our marketplace work. Our Application Security function is focused on keeping vulnerabilities out of the code and software as ...
Application Security Developer
Toronto, ON ยท Hybrid
CA$119K - CA$161K/yr
We are currently seeking an Application Security Engineer to join our rapidly growing Security team. The Application Security team is responsible for emulating real-world adversaries to proactively ...
Application Security Developer
Toronto, ON ยท Hybrid
CA$119K - CA$161K/yr
We are currently seeking an Application Security Engineer to join our rapidly growing Security team. The Application Security team is responsible for emulating real-world adversaries to proactively ...
You will work closely with engineering, product, cloud, and security teams to embed security into the software development lifecycle, model threats associated with the application, identify and ...
New
You will work closely with engineering, product, cloud, and security teams to embed security into the software development lifecycle, model threats associated with the application, identify and ...
New
Staff, Security Engineer
Toronto, ON ยท Remote
Drive application security, product security, and vulnerability management initiatives from concept ... Mentor engineers and security practitioners, raising the bar for secure software development and ...
Staff, Security Engineer
Toronto, ON ยท Remote
Drive application security, product security, and vulnerability management initiatives from concept ... Mentor engineers and security practitioners, raising the bar for secure software development and ...
Staff, Security Engineer
Ottawa, ON ยท Remote
Drive application security, product security, and vulnerability management initiatives from concept ... Mentor engineers and security practitioners, raising the bar for secure software development and ...
Staff, Security Engineer
Ottawa, ON ยท Remote
Drive application security, product security, and vulnerability management initiatives from concept ... Mentor engineers and security practitioners, raising the bar for secure software development and ...
We are seeking a talented Intermediate Developer to join our Application Security team and serve as a bridge between security and development. You will provide technical execution and expertise in ...
We are seeking a talented Intermediate Developer to join our Application Security team and serve as a bridge between security and development. You will provide technical execution and expertise in ...
The Application Security Engineer candidate will have a strong background in cybersecurity and understanding of web application and zero trust proxy security practices. The primary responsibility of ...
The Application Security Engineer candidate will have a strong background in cybersecurity and understanding of web application and zero trust proxy security practices. The primary responsibility of ...
Security Engineer
Toronto, ON ยท On-site
What You Bring * 2+ years of professional experience in application or product security, or in software engineering with substantial security responsibility * Ability to find what scanners miss ...
Security Engineer
Toronto, ON ยท On-site
What You Bring * 2+ years of professional experience in application or product security, or in software engineering with substantial security responsibility * Ability to find what scanners miss ...
WAF Security Engineer SALARY: 48,987 - 55,000 per annum LOCATION: Manchester, Leeds, Edinburgh ... Application Security, API Security, Bot Protection, and Layer 7 DDoS mitigation. * Strong ...
WAF Security Engineer SALARY: 48,987 - 55,000 per annum LOCATION: Manchester, Leeds, Edinburgh ... Application Security, API Security, Bot Protection, and Layer 7 DDoS mitigation. * Strong ...
WAF Security Engineer SALARY: 48,987 - 55,000 per annum LOCATION: Manchester, Leeds, Edinburgh ... Application Security, API Security, Bot Protection, and Layer 7 DDoS mitigation. * Strong ...
WAF Security Engineer SALARY: 48,987 - 55,000 per annum LOCATION: Manchester, Leeds, Edinburgh ... Application Security, API Security, Bot Protection, and Layer 7 DDoS mitigation. * Strong ...
WAF Security Engineer SALARY: 48,987 - 55,000 per annum LOCATION: Manchester, Leeds, Edinburgh ... Application Security, API Security, Bot Protection, and Layer 7 DDoS mitigation. * Strong ...
WAF Security Engineer SALARY: 48,987 - 55,000 per annum LOCATION: Manchester, Leeds, Edinburgh ... Application Security, API Security, Bot Protection, and Layer 7 DDoS mitigation. * Strong ...
Associate Application Security Engineer information
What are the most commonly searched types of Application Security Engineer jobs in Ontario?
The most popular types of Application Security Engineer jobs in Ontario are:
What cities in Ontario are hiring for Associate Application Security Engineer jobs?
Cities in Ontario with the most Associate Application Security Engineer job openings:
Senior Application Security Engineer
Toronto, ON โข On-site
Full-time
Posted 27 days ago
Key responsibilities
Build and maintain a global security compliance program based on NIST CSF.
Develop automated security testing utilizing enterprise SAST, DAST, and code-review tools, and automate security testing in CI/CD pipelines.
Conduct internal penetration testing and vulnerability assessments of applications and infrastructure, and validate findings from third-party pentest engagements.
Job description
The Senior Application Security Engineer plays a critical role in driving secure software development and application security maturity within TripleLift's Engineering and Security organization, directly influencing how we protect our advertising platforms and the trust our publishers and advertisers place in us. In this position, you will partner closely with Engineering, Platform, Cloud Infrastructure, and Security teams to shape secure coding practices, application security tooling, vulnerability remediation, and CI/CD security, ensuring security is embedded into how we design, build, deploy, and operate our products.This is an exciting opportunity for someone who wants to build and scale an application security program at a company operating at the center of a rapidly evolving, high-stakes ad-tech landscape, while contributing meaningfully to the long-term security posture and resilience of the organization.
Responsibilities- Play a critical role in building and maintaining a global security compliance program based on NIST CSF.
- Scale application security by developing automated security testing utilizing enterprise SAST, DAST, and code-review tools.
- Champion SDLC to promote secure application development and infrastructure deployment and facilitate secure coding remediation activities.
- Automate security testing in CI/CD pipelines to detect vulnerabilities early, including building and maintaining the pipeline integrations themselves.
- Administer and drive adoption of GitHub Advanced Security (GHAS) : code scanning, secret scanning, and dependency review across engineering repositories.
- Participate in threat modeling and design/architecture spec reviews to identify and mitigate security risks early in the SDLC.
- Coordinate with stakeholders to develop and implement a vulnerability management program and to perform threat-hunting activities.
- Own and conduct internal penetration testing and vulnerability assessments of applications and infrastructure, and validate findings from third-party pentest engagements.
- Monitor and respond to application-layer security threats like API abuses, business logic flaws, and common web vulnerabilities.
- Collaborate with product and engineering teams to ensure security is a key consideration in software design and architecture.
- Enhance application security posture by working with cross-functional teams to implement proper authentication, authorization, and data protection mechanisms.
- Enhance and facilitate security incident handling activities.
- Evangelize security best practices and provide education and awareness to company employees. Develop and implement secure coding guidelines and conduct secure development training for engineers.
- Evaluate and continuously improve the maturity of the security program through the deployment and management of various security tools and processes.
- 5 years minimum of experience in application security, secure software development, security engineering, or a similar role.ย
- Strong understanding of secure coding practices and ability to guide developers on remediation strategies.
- Experience with GitHub Advanced Security (GHAS), including Code Scanning (SAST), Secret Scanning, and Dependency Review.
- Proficiency in SAST, DAST, and SCA tools (e.g., CodeQL, Burp Suite, OWASP ZAP, Snyk, Checkmarx, Veracode).
- Hands-on experience integrating security testing tools into CI/CD pipelines for automated security scanning, including designing and building pipeline workflows.
- Hands-on penetration testing / offensive security experience across web applications, APIs, or cloud infrastructure.
- Knowledge of common application security vulnerabilities and mitigations (OWASP Top 10, CWE, business logic flaws, API security).
- Ability to perform threat modeling and participate in design/architecture spec reviews to assess security risks in applications and services.
- Experience conducting security code reviews across various programming languages (e.g., Python, Java, TypeScript, Go).
- Understanding of security fundamentals with relation to various cybersecurity and compliance frameworks, particularly NIST CSF, but any of PCI, SOC2, HITRUST, ISO 27001/2, or similar.
- Strong understanding of AWS security services and controls (IAM, VPC, KMS, GuardDuty, CloudTrail) and experience securing cloud-native environments and workloads, with the ability to deploy security tools within them.
- Takes ownership of projects, works independently with minimal oversight, and delivers results in a fast-paced environment while balancing multiple priorities.
- Continuously learns, adapts, and values correctness, efficiency, and constructive feedback.
Preferred:
- Experience in the ad-tech / programmatic advertising industry, or another high-scale, real-time environment.
- Preferred: Familiarity with using AI/LLM-based tools (e.g., Claude or similar) for threat intelligence, alert triage, or security automation.
- Holds a cybersecurity certification, e.g., OSCP, GWAPT, CISSP, CISA, etc.
About TripleLift
Sourced by ZipRecruiter
Industry
Marketing
Company size
51 - 200 Employees
Headquarters location
New York, NY, US
Year founded
2012