... with Engineering, Product, Cloud Operations, Architecture, AI, and Security teams to embed security early in the software development lifecycle. You'll lead product and application security ...
... with Engineering, Product, Cloud Operations, Architecture, AI, and Security teams to embed security early in the software development lifecycle. You'll lead product and application security ...
Build Strategic Relationships - Engage with application development executives and vendors to align ... Degree in Engineering or Computer Science * AI Agent Frameworks and Langchain experience
Build Strategic Relationships - Engage with application development executives and vendors to align ... Degree in Engineering or Computer Science * AI Agent Frameworks and Langchain experience
Cloud Security Engineer
Toronto, ON ยท Hybrid
The Cloud Security Engineer is responsible for researching, deploying, and maintaining security ... In-depth experience with VPC design, micro-segmentation, Web Application Firewalls (WAF), egress ...
Cloud Security Engineer
Toronto, ON ยท Hybrid
The Cloud Security Engineer is responsible for researching, deploying, and maintaining security ... In-depth experience with VPC design, micro-segmentation, Web Application Firewalls (WAF), egress ...
Software Supply Chain Security Engineer
Toronto, ON ยท On-site
CA$90K - CA$157K/yr
The ideal candidate will have previous hands-on experience in application security, build and ... Partner with Engineering teams leads to create, implement, and apply DevSecOps, and AppSec ...
Software Supply Chain Security Engineer
Toronto, ON ยท On-site
CA$90K - CA$157K/yr
The ideal candidate will have previous hands-on experience in application security, build and ... Partner with Engineering teams leads to create, implement, and apply DevSecOps, and AppSec ...
Software Supply Chain Security Engineer
Toronto, ON ยท On-site
CA$100K - CA$167K/yr
The ideal candidate will have previous hands-on experience in application security, build and ... Partner with Engineering teams leads to create, implement, and apply DevSecOps, and AppSec ...
Software Supply Chain Security Engineer
Toronto, ON ยท On-site
CA$100K - CA$167K/yr
The ideal candidate will have previous hands-on experience in application security, build and ... Partner with Engineering teams leads to create, implement, and apply DevSecOps, and AppSec ...
Coordinates with Cloud Engineering and other internal teams to design and implement security ... application onboarding, access enablement, and vendor integration efforts. * Provide security ...
Coordinates with Cloud Engineering and other internal teams to design and implement security ... application onboarding, access enablement, and vendor integration efforts. * Provide security ...
Partner with engineering, infrastructure, architecture, and business teams to provide security ... Manage third-party application security testing activities, validate findings, and drive ...
Partner with engineering, infrastructure, architecture, and business teams to provide security ... Manage third-party application security testing activities, validate findings, and drive ...
Senior IT Security Advisor (Application Security)
Mississauga, ON ยท On-site
CA$141K - CA$154K/yr
Partner with engineering, infrastructure, architecture, and business teams to provide security ... Manage third-party application security testing activities, validate findings, and drive ...
Quick apply
Senior IT Security Advisor (Application Security)
Mississauga, ON ยท On-site
CA$141K - CA$154K/yr
Partner with engineering, infrastructure, architecture, and business teams to provide security ... Manage third-party application security testing activities, validate findings, and drive ...
AI Product Security Manager
Toronto, ON ยท On-site
About You You're a fit for the role ofAI Product Security Managerif your background includes: * 8+ years of experience in product security, application security, or software security engineering ...
AI Product Security Manager
Toronto, ON ยท On-site
About You You're a fit for the role ofAI Product Security Managerif your background includes: * 8+ years of experience in product security, application security, or software security engineering ...
Security Analyst
Toronto, ON ยท On-site
Working knowledge of application security testing concepts and tools (SAST/SCA) and the ability to communicate findings effectively with developers. * Solid understanding of the Common Vulnerability ...
Security Analyst
Toronto, ON ยท On-site
Working knowledge of application security testing concepts and tools (SAST/SCA) and the ability to communicate findings effectively with developers. * Solid understanding of the Common Vulnerability ...
... mentor junior associates in security concepts. As a senior team member, you'll help build ... As a Senior Security Engineer - Enterprise security, your primary focus will be to Design ...
... mentor junior associates in security concepts. As a senior team member, you'll help build ... As a Senior Security Engineer - Enterprise security, your primary focus will be to Design ...
Shape the future of application security at RBC! Join the Application Security Group and develop ... Knowledge of emerging AI technologies (transformer architectures, prompt engineering techniques ...
Shape the future of application security at RBC! Join the Application Security Group and develop ... Knowledge of emerging AI technologies (transformer architectures, prompt engineering techniques ...
Your role will encompass estimation, engineering design, programming, commissioning, and client ... security application strategy and available options. * Seek and utilize resources to resolve any ...
Your role will encompass estimation, engineering design, programming, commissioning, and client ... security application strategy and available options. * Seek and utilize resources to resolve any ...
Security Systems Application Specialist
CA$65K - CA$95K/yr
Your role will encompass estimation, engineering design, programming, commissioning, and client ... security application strategy and available options. * Seek and utilize resources to resolve any ...
Quick apply
Security Systems Application Specialist
CA$65K - CA$95K/yr
Your role will encompass estimation, engineering design, programming, commissioning, and client ... security application strategy and available options. * Seek and utilize resources to resolve any ...
Your role will encompass estimation, engineering design, programming, commissioning, and client ... security application strategy and available options. * Seek and utilize resources to resolve any ...
Your role will encompass estimation, engineering design, programming, commissioning, and client ... security application strategy and available options. * Seek and utilize resources to resolve any ...
Application Security Analyst, Deloitte Global Technology
Toronto, ON ยท Hybrid
CA$58K - CA$96K/yr
Conduct application security testing in the form of DAST, SAST, SCA, container scanning, and manual ... Familiarity with DevOps tools such as Azure Repos, Github, Azure Pipelines, Github actions, etc.
New
Application Security Analyst, Deloitte Global Technology
Toronto, ON ยท Hybrid
CA$58K - CA$96K/yr
Conduct application security testing in the form of DAST, SAST, SCA, container scanning, and manual ... Familiarity with DevOps tools such as Azure Repos, Github, Azure Pipelines, Github actions, etc.
New
The AWS Security Controls team within Cloud Security Engineering is working on several exciting ... Salaried Posted Date: 2026-07-26 Application Deadline: 2026-09-21 Note : Applications will be ...
The AWS Security Controls team within Cloud Security Engineering is working on several exciting ... Salaried Posted Date: 2026-07-26 Application Deadline: 2026-09-21 Note : Applications will be ...
As a Staff Offensive Security Engineer, you will take a hands-on role in designing and executing ... If you require a specific accommodation during the application or interview process due to a ...
As a Staff Offensive Security Engineer, you will take a hands-on role in designing and executing ... If you require a specific accommodation during the application or interview process due to a ...
Principal Cloud Security Engineer
Toronto, ON ยท On-site
Application Deadline: 10/29/2026 Address: 33 Dundas Street West Job Family Group: Technology ... Azure Security Engineer Associate) * Emerging/preferred: Certifications or demonstrated knowledge ...
Principal Cloud Security Engineer
Toronto, ON ยท On-site
Application Deadline: 10/29/2026 Address: 33 Dundas Street West Job Family Group: Technology ... Azure Security Engineer Associate) * Emerging/preferred: Certifications or demonstrated knowledge ...
Cyber Security Engineer
Toronto, ON ยท Hybrid
The Job: Cyber Security Engineer What You'll Do Reporting to the Senior Manager, Cyber Operations ... Application Security & Certificate Management * Support application security assessments ...
Cyber Security Engineer
Toronto, ON ยท Hybrid
The Job: Cyber Security Engineer What You'll Do Reporting to the Senior Manager, Cyber Operations ... Application Security & Certificate Management * Support application security assessments ...
Associate Application Security Engineer information
What are the most commonly searched types of Application Security Engineer jobs in Toronto, ON?
The most popular types of Application Security Engineer jobs in Toronto, ON are:

Director, Product Security Architect
Toronto, ON โข On-site
Full-time
Medical, Dental, Vision, PTO
Posted 24 days ago
Job description
We're looking for a highly technical and hands-on Director, Product Security Architectย to help shape secure-by-design principles across our SaaS products, cloud platforms, and AI-enabled products. This role is deeply embedded in Product and Engineering, with a focus on identifying and eliminating architectural risk before it reaches production.
In this role, you'll partner closely with Engineering, Product, Cloud Operations, Architecture, AI, and Security teams to embed security early in the software development lifecycle. You'll lead product and application security architecture, threat modeling, secure design reviews, and AI security initiatives while helping teams build scalable, resilient, and secure solutions.
This is a highly technical product security role requiring deep hands-on experience with software architecture, threat modeling, and secure design, as well as the ability to translate security risks into practical engineering solutions.
This is a highly visible leadership role reporting directly to the VP & Chief Information Security Officer.
What You'll DoLead Product Security Architecture & Secure-by-Design- Define and execute the Product Security Architecture and Secure-by-Design strategy and roadmap.
- Establish secure reference architectures, design standards, and secure patterns for cloud-native and AI-enabled solutions.
- Partner with Engineering and Product teams to embed security into development workflows and system design decisions.
- Drive adoption of secure-by-design best practices by embedding security requirements in epics, user stories, and the AI SDLC.
- Produce actionable threat modeling artifacts including data flow diagrams, trust boundary analysis, abuse cases, attack paths, security requirements, technical specifications, design risks, remediation actions, and residual risk documentation.
- Analyze recurring vulnerabilities, penetration test results, incident learnings, and security assessment findings to identify systemic design flaws and improve secure architecture standards.
- Lead threat modeling activities across critical applications, platforms, and AI-enabled systems.
- Identify architectural risks, attack paths, abuse cases, and trust boundary concerns.
- Translate threats into actionable security requirements, architectural recommendations, and remediation guidance, partnering directly with engineering teams to implement and validate design changes.
- Build reusable threat models, security patterns, and design libraries that scale across engineering teams.
- Guide teams on secure design principles, risk-based decision making, and security tradeoffs.
- Review distributed systems, microservices, cloud-native architectures, APIs, mobile applications, and identity solutions.
- Support remediation efforts and validate architectural fixes for security findings and design flaws.
- Conduct architecture reviews across AWS, Azure, and IBM Cloud environments.
- Assess containerized, Kubernetes, serverless, and AI-enabled architectures.
- Define cloud security and AI guardrails, governance models, and secure deployment patterns.
- Partner with AI teams to evaluate security risks within LLM-enabled products and agentic workflows.
- Represent Security while collaborating with Product, Engineering, Software Architecture, Cloud, andย Legal stakeholders.
- Develop security standards, training, and architecture guidance.
- Communicate architectural risk and security recommendations to technical and executive audiences.
- 10+ years of Information Security experience, with significant hands-on experience in Product Security, Application Security, Security Architecture, or Software Security Engineering.
- 3+ years of hands-on Application Security Architecture and Threat Modeling experience.
- 3-5 years of Software Development or Software Engineering experience.
- Strong understanding of secure application design, cloud security, and modern software architectures.
- Experience with DevSecOps, secure SDLC practices, and AI-enabled development environments.
- Expertise in threat modeling methodologies such as STRIDE, CAPEC, and MITRE ATT&CK.
- Experience securing web, API, mobile, cloud-native, and AI-enabled applications.
- Knowledge of AWS, Azure, or IBM Cloud security architectures.
- Strong communication skills with the ability to influence stakeholders at all levels.
- Certifications such as ISC2 ISSAP (Information Systems Security Architecture Professional), CISSP, CSSLP, OSCP, or relevant cloud security certifications are considered an asset.
- Assess current architecture, development processes, and secure design maturity.
- Build relationships across Product, Engineering, Architecture, Cloud, and Security stakeholder teams.
- Identify high-priority risks and opportunities to improve secure-by-design adoption.
- Establish a roadmap for threat modeling and to embed secure design requirements in the AI SDLC workflow.
- Standardize and embed threat modeling and architecture review processes within the AI SDLC.
- Embed security requirements into engineering and AI development workflows.
- Expand automated security architecture and design validation capabilities.
- Scale secure-by-design practices across all products and platforms.
- Mature security architecture risk management and AI security governance.
- Enable measurable reductions in security risk through proactive secure design and engineering practices.
For this role, the estimated annual base salary range is between $138,200.00 - $181,400.00 CAD. In addition to base salary, our compensation package may include bonuses, commissions for eligible sales roles, and a comprehensive benefits package. The actual base salary will vary based on factors including individual qualifications and market data, as objectively assessed during the interview process.
This posting is for a new vacancy.
This hiring process utilizes artificial intelligence tools to assist in candidate screening and assessment. Our AI tools are designed to complement - not replace - human decision-making.
Overview of Benefits- Health & Wellness - Comprehensive medical, dental, and vision coverage tailored to your local needs
- Time Off - PTO and public holidays to rest, recharge, and do what matters most
- Volunteer Days - Dedicated time to give back and support the communities that matter to you
- Ignite Days - Dedicated learning days to support continuous growth, skill development, and professional learning
- Financial - Compensation that reflects your market and your value
- Retirement - Retirement plans designed to help you build long-term financial security
- Tuition Assistance - Invest in your growth with support for continuing education and professional development
- Flexibility - Work where you thrive, with remote and hybrid options available across most regions