Application Security Architect
Job in
Victoria, British Columbia, Canada
Listing for:
Integro Softwares Inc
Full Time
position
Listed on 2026-01-13
Job specializations:
-
IT/Tech
Cybersecurity, IT Consultant, Systems Engineer, Network Security
Job Description & How to Apply Below
Location: VictoriaPOSITION ROLE
Contract
POSITION DESCRIPTION
We are seeking an experienced Application Security Architect, who interfaces with technical and non-technical teams to identity product security risks and develop solutions to eliminate or minimize them. The candidate should have a deep understanding of application security vulnerabilities and mitigation strategies. He or she will drive the creation and maintenance of applications / products security standards, guidelines and procedures along with conducting application penetration testing, performing architecture/design and code reviews, and vulnerability assessments.
Analyze software architecture, design and implementations from a security perspective, and identify and resolve security issues. You will be responsible to guide the security engineers delivering appropriate security analysis, defences and countermeasures at each phase of the software development lifecycle, to result in robust and reliable software.
The position is based in Victoria (Client Location).
QUALIFICATIONS
A minimum of 8 years’ experience leading application security functions in a fast-paced, multi-project and multi-customer IT environment.Bachelor’s degree in Computer Science, IT, Information / cyber security or in a related field.Minimum 8-10 years of experience in the field of security in the following areas: security engineering, incident response, system, application and network security, vulnerability management, threat modelling, penetration testing, intrusion detection, firewalls and encryption technologies.8-10 years of experience with at least 2-3 years of experience in a similar role, and 3+ years of experience in one or more of the following roles - application architect, system architect, software developer, system administratorMinimum 5+ years of experience in the information security field with exposure to audit, risk management, data privacy, and regulatory and compliance practices.Preferred certifications: CISSP, CISM, SANS GIAC.Knowledge and experience of cloud infrastructure security;
Azure, AWS, Google Cloud.Knowledge and experience working with various security frameworks (e.g., ISO/IEC 2700x, NIST CSF, COBIT, OWASP) and audit frameworks (SOC
2).Detailed technical knowledge of techniques, standards and state-of-the art capabilities for authentication and authorization, applied cryptography, security vulnerabilities and remediation.Software development experience in one of the following core languages:
Ruby on Rails, SQL, HTML, Java, Javascript and .NETExperience with modern Web Application Frameworks e.g. J2EE/Rails/.Net, Spring Boot, Web Services (SOAP/WSDL or REST/WADL), WCF, Service Oriented Architectures) and of network/web related protocols.Solid understanding of application and database security concepts and architectural principles around authentication, authorization, session management, configuration management, data handling and cryptographyThorough understanding of web and mobile application security vulnerabilities, including but not limited to the OWASP Top 10 list of vulnerabilitiesExperience in providing solutions to and leading numerous security vulnerability remediation activitiesExperience with penetration testing for applications both manually and automated (commercial or open source)Specific experience in dynamic application security testing using techniques and tools like Burp Suite, Nikto, Appscan, Paros, Fiddler, Web Inspect, Skipfish, etc.Experience working in a government applications environment, with exposure to mobile application platforms is an added advantageExperience and ability to maintain security in a fast-paced development environment that is driven by the agile methodology.Experience in or exposure to risk management methodologies is a nice to have.Very good understanding of networking and operating system concepts and technologies, aldong with a prior experience as a developer of code would be an asset.PRIMARY RESPONSIBILITIES
Architect, design and implement the security design of software systems working across all 6 software development offices at Hootsuite.Play a leadership role with the security architecture of all…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here: