23 hours ago

Application Security Consultant

RBC

On Site
Full Time
CA$110,000
Toronto, ON

Job Overview

Job TitleApplication Security Consultant
Job TypeFull Time
Offered SalaryCA$110,000
LocationToronto, ON

Who's the hiring manager?

Sign up to PitchMeAI to discover the hiring manager's details for this job. We will also write them an intro email for you.

Uncover Hiring Manager

Job Description

Application Security Consultant at RBC

The Application Security team is undertaking multiple complex enterprise-wide initiatives to improve the security and quality of RBC applications. In this role, you will provide technical execution and expertise in the area of application security tools for the global RBC business and application development teams across all enterprise information technology groups. Primarily, you act as a primary point of contact for application teams, prioritizing and triaging SAST Security scan results, and communicating the needs of application teams to strategic security leadership. As the vital link between security and developer functions, your expertise will contribute to the development of application security best practices, tools, and processes within RBC. This role will require you to understand various application security testing techniques such as SAST, SCA and DAST.

What Will You Do?

  • Support end users of application security testing tools, managing tickets through a ticketing platform
  • Proactively solve problems to ensure application development teams are able to best use the latest application security testing tools
  • Educate key organizational stakeholders (e.g. developers, security consultants, executives) on application security matters across the organization
  • Assist in the integration of application security processes and tools into existing enterprise development processes and pipelines
  • Participate in and lead a range of application security assessment activities
  • Assist in the development, evaluation, and implementation of application security testing processes and tools
  • Work in a diverse environment leveraging other team members’ experience and knowledge
  • Research and keep up to date on application security emerging threats, techniques, tools, and trends

What Do You Need to Succeed?

Must have:
  • Exposure to application security best practices such as secure coding, security testing techniques and Secure Software Development Lifecycle
  • Experience supporting SAST tools, especially in a role responsible for triaging findings and refining scanning rules.
  • 2+ Experience developing and testing apps in any of the following programming languages: Python, Java, Bash, Perl, JavaScript, C++, C#
  • Strong ability to manage client and stakeholder relations
  • Understanding of CI/CD, DevOps and DevSecOps approaches and experience working with DevOps tools
  • Knowledge of OWASP, SANS or other security-related frameworks
  • Knowledge of SAST Security Scanning tools
Nice-to-have:
  • Familiarity with AI/ML systems security -such as securing machine learning models or evaluating LLM-based applications – would be highly valuable
  • Experience supporting SCA/DAST tools, especially in a role responsible for triaging findings and refining scanning rules.
  • Experience with Threat Modelling and Risk Assessment activities
  • Understanding and experience in agile methodology

What’s in it for you?

  • A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation, commissions, and stock where applicable
  • Leaders who support your development through coaching and managing opportunities
  • Ability to make a difference and lasting impact
  • Work in a dynamic, collaborative, progressive, and high-performing team
  • A world-class training program in financial services
  • Flexible work/life balance options
  • Opportunities to do challenging work

Key skills/competency

  • Application Security
  • SAST
  • DevSecOps
  • Secure Coding
  • OWASP
  • CI/CD
  • Information Security
  • Risk Assessment
  • Threat Modelling
  • Programming (Python, Java, C#, etc.)

Tags:

Application Security Consultant
Application Security
SAST
SCA
DAST
DevSecOps
Secure Coding
OWASP
CI/CD
Information Security
Python
Java
C#
JavaScript
Perl
Bash
C++
Threat Modelling
Risk Assessment
SDLC

Share Job:

How to Get Hired at RBC

  • Research RBC's culture: Study their mission, values, recent news, and employee testimonials on LinkedIn and Glassdoor.
  • Tailor your resume for DevSecOps: Customize your resume to highlight experience with SAST, CI/CD, and secure coding practices at RBC.
  • Showcase application security expertise: Prepare to discuss your experience with OWASP, SANS, and secure SDLC in interviews.
  • Network within RBC's security teams: Connect with current RBC employees on LinkedIn to gain insights and potential referrals.
  • Demonstrate problem-solving and communication: Emphasize your ability to triage issues and educate diverse stakeholders on security matters.

Frequently Asked Questions

Find answers to common questions about this job opportunity

Explore similar opportunities that match your background