1

Devsecops Jobs in Ontario (NOW HIRING)

Enterprise Security Specialist

Stouffville, ON · On-site +1

CA$120K - CA$135K/yr

  • Medical

  • PTO

Reporting to the CTO, this role focuses on security governance, risk management, audits, certifications, and enterprise security practices, with exposure to DevSecOps considered an asset. This role ...

Ensure adherence to governance, DevSecOps protocols. Experience/Skiils: * 6+ years of progressive experience in engineering roles, including at least 1-2 years leading emerging tech or AI initiatives.

Lead DevSecOps by embedding secure-by-design capabilities, automated quality and security controls, and shift-left practices in partnership with Information Security, while maintaining developer ...

Team Lead, DevOps

Waterloo, ON · Remote

  • Medical

  • PTO

Implement DevSecOps principles to enhance security automation and compliance within CI/CD pipelines. * Guide the team in leveraging cloud-native architectures and technologies effectively.

Strong DevOps or DevSecOps experience, including CI/CD ownership, security practices, and infrastructure automation as a primary responsibility Why Join Us? * A high-performance culture ...

In this role, you will combine product cybersecurity expertise with technical leadership responsibilities, supporting secure design, threat modeling, vulnerability management, DevSecOps integration ...

Five or more years of relevant professional experience * DevOps or DevSecOps experience, including CI/CD ownership, infrastructure automation, and security considerations Preferable criteria

DevSecOps and secure delivery * Embed security testing into CI/CD - static analysis, dependency and container scanning, secrets detection, Infrastructure as Code scanning, and dynamic testing ...

Establish engineering excellence through Agile, DevSecOps, automation, testing, observability, and strong mentorship. * Lead a portfolio of strategic business, risk, regulatory, and infrastructure ...

Act as a technical coach for infrastructure and delivery teams, helping them adopt modern DevSecOps practices and cloud-native tooling. Qualifications 7+ years of progressive experience in enterprise ...

Showing results 21-40

Devsecops information

See Ontario salary details

$92K

$133K

$163.5K

How much do devsecops jobs pay per year?

As of Aug 16, 2026, the average yearly pay for devsecops in Ontario is $133,008.00, according to ZipRecruiter salary data. Most workers in this role earn between $119,500.00 and $145,000.00 per year, depending on experience, location, and employer.

Is DevSecOps still a thing?

Yes, DevSecOps remains a vital approach in cybersecurity and software development, integrating security practices into the DevOps process. It is widely adopted across industries to improve security automation, continuous integration, and deployment pipelines, often requiring knowledge of tools like Jenkins, Docker, and security frameworks.

What is a DevSecOps?

A DevSecOps job focuses on integrating security into the software development and operations process. Professionals in this role work to automate security measures, ensure compliance, and identify vulnerabilities throughout the development lifecycle. They collaborate with development, operations, and security teams to embed security best practices into CI/CD pipelines. The goal is to create secure software efficiently without slowing down development and deployment.

What are the key skills and qualifications needed to thrive in the DevSecOps position?

To thrive as a DevSecOps professional, you need expertise in secure software development, CI/CD pipelines, cloud infrastructure, automation, and strong knowledge of cybersecurity principles, often supported by a degree in computer science or a related field. Familiarity with tools such as Jenkins, Docker, Kubernetes, Terraform, and security certifications like CISSP or AWS Certified Security are typically required. Strong problem-solving abilities, effective communication, and a collaborative mindset are valuable soft skills. These are essential to ensuring security is integrated throughout the development lifecycle while enabling efficient deployment and cross-team collaboration.

What are some common challenges DevSecOps professionals face on the job?

DevSecOps professionals often navigate the challenge of balancing rapid development cycles with the need for robust security, which requires both technical adaptability and continuous vigilance. They may encounter resistance to adopting new security practices within development teams, making communication and advocacy skills crucial. Additionally, staying updated with evolving security threats and ensuring compliance with industry standards can be demanding. These challenges offer opportunities to make a significant impact on organizational security and to develop expertise in both security and automation, leading to diverse career advancement possibilities.

What are the most commonly searched types of Devsecops jobs in Ontario?

The most popular types of Devsecops jobs in Ontario are:

What are popular job titles related to Devsecops jobs in Ontario?

For Devsecops jobs in Ontario, the most frequently searched job titles are:

What job categories do people searching Devsecops jobs in Ontario look for?

The top searched job categories for Devsecops jobs in Ontario are:

Infographic showing various Devsecops job openings in Ontario as of August 2026, with employment types broken down into 100% Full Time. Highlights an 86% In-person, and 14% Hybrid job distribution, with an average salary of $133,008 per year, or $63.9 per hour.

Enterprise Security Specialist

Portfolio+

Stouffville, ON • On-site, Remote

CA$120K - CA$135K/yr

Full-time

Medical, PTO

Re-posted 7 days ago


Job description

Job Summary:

Job Description:

Role: Enterprise Security Specialist

Department: R&D

Reports to: Chief Technology Officer ( CTO)

Location: Stouffville, ON

Salary: $120,000 - $135,000

Number of Openings: 1

Who we are:

At Portfolio+, we empower financial institutions with secure, scalable, and customer-first solutions. As a proudly Canadian company, we're at the forefront of open finance, delivering cutting-edge cloud technology that simplifies operations, enhances security, and drives innovation. Our team thrives in a collaborative, growth-oriented environment where ideas matter, and impact is real. If you're passionate about fintech, innovation, and making a difference, Portfolio+ is the place to build your career.

Who you are:

The Enterprise Security Specialist is a senior individual contributor responsible for leading the organization's enterprise security program in a regulated fintech environment. Reporting to the CTO, this role focuses on security governance, risk management, audits, certifications, and enterprise security practices, with exposure to DevSecOps considered an asset.

This role serves as a primary security lead and advisor, working cross-functionally to ensure security practices support business growth, regulatory requirements, and customer trust, without formal people management responsibilities.

What you'll do:

Enterprise Security Program Leadership

  • Lead the development, implementation, and continuous improvement of the enterprise information security program.

  • Develop and maintain security policies, standards, procedures, and controls aligned with business objectives.

  • Establish security metrics and reporting to support executive visibility and informed decision-making.

  • Act as a trusted security advisor to the CTO and senior leadership.

Governance, Risk & Compliance

  • Lead enterprise risk assessments, security reviews, and control evaluations.

  • Align security practices with recognized frameworks such as ISO 27001, NIST etc.

  • Support compliance with Canadian regulatory and privacy requirements, including PIPEDA, OSFI guidance, and applicable provincial legislation.

Audits, Certifications & Regulatory Engagement

  • Lead and support security audits and certifications, including SOC 2, PCI DSS, ISO 27001, and customer security reviews.

  • Serve as a primary point of contact for auditors, regulators, and enterprise clients.

  • Coordinate audit readiness activities, including evidence collection, policy updates, control testing, and remediation tracking.

  • Translate audit findings into practical, risk-based improvements.

Third-Party & Vendor Security

  • Lead third-party security risk assessments and vendor security reviews.

  • Support security questionnaires, contract reviews, and customer due diligence requests.

Security Awareness & Collaboration

  • Promote a security-conscious culture through collaboration, education, and practical guidance.

  • Support security awareness initiatives and training across the organization.

  • Work closely with Product, Professional Services, Risk, and Legal teams to support internal and external security needs.

Reporting & Leadership Support

  • Provide regular reporting on security posture, risks, audit readiness, and remediation progress.

  • Escalate significant security risks and incidents appropriately and support incident response activities.

What you bring:

Technical Skills

  • 5 -7+ years of experience in information security, cybersecurity, or technology risk.

  • Experience leading security programs or initiatives in fintech, financial services, SaaS, or other regulated environments.

  • Hands-on experience supporting SOC 2, PCI DSS, ISO 27001, or similar audits and certifications.

  • Strong understanding of enterprise security controls, risk management, and governance.

  • Familiarity with cloud environments (AWS, Azure, or GCP).

  • Ability to communicate security concepts clearly to technical and non-technical audiences.

  • Knowledge of Canadian regulatory and privacy requirements.

  • Clearly convey complex security topics to executives, clients, and technical teams.

  • Analyze security and compliance issues and design effective solutions.

  • Build strong partnerships internally and externally.

  • Deep understanding of SDLC, DevSecOps, CI/CD pipelines, cloud technologies, and regulatory frameworks.

Bonus Points if you have the following:

  • Exposure to DevSecOps or secure SDLC practices.

  • Experience with vulnerability management or application security tooling.

  • Experience supporting client security assessments or enterprise customer due diligence.

  • Security certifications such as CISSP, CISM, or ISO 27001 Lead Implementer/Auditor.

What We Offer:

  • Be part of a dynamic, innovative team where your ideas directly shape our sales strategy and market presence.

  • Flexible working arrangements (hybrid, remote, or in-office) designed to support work-life balance.

  • Comprehensive benefits package starting from day one, including health coverage, paid time off, and volunteer days.

  • Competitive salary, annual bonus program, and participation in our employee stock option plan.

  • Access to continuous learning opportunities, a robust learning management system, and a tuition reimbursement program.

  • Tools and technology provided (laptop, headset, monitors) to set you up for success.

  • A supportive environment that values your growth, success, and contributions to our customers' achievements.

We welcome and encourage applications from all qualified individuals who can contribute to the continued diversification of our organization, including those from equity-deserving groups that have been historically underrepresented in the workforce.

At Portfolio Plus, we use AI-enabled tools to help support parts of our recruitment process, such as creating job descriptions, assessments, and scheduling automations. These tools help us work more efficiently and consistently as we grow. AI supports our hiring teams, but it does not replace human judgment. All hiring decisions are made by people, and AI is never used as the sole decision-maker.

If you have questions about our hiring process, how AI is used, or if you require accommodation at any stage, please reach out to our People & Culture team (humanresources@portfolioplus.com) and we will be happy to answer any questions you have.

In alignment with the Accessibility for Ontarians with Disabilities Act, 2005, Portfolio+ provides accommodation upon request throughout the recruitment, selection, and assessment process for applicants with disabilities. Please reach out tohumanresources@portfolioplus.comfor any questions or requests.

Worker Sub Type:

Regular

Number of Openings Available:

1