×
Register Here to Apply for Jobs or Post Jobs. X

DevSecOps Engineer

Job in Toronto, Ontario, M5A, Canada
Listing for: G Adventures
Full Time position
Listed on 2026-02-28
Job specializations:
  • IT/Tech
    Cybersecurity, Network Security
Job Description & How to Apply Below

About Us

Let’s go on an adventure together!

Hey there, we’re G Adventures. We’re one of the world’s leading small group travel companies, and we’ve always believed that travel isn’t just about where you go — it’s about how it changes you.

For the last 35 years, we’ve set out to do things differently. No cookie-cutter tours. No giant buses or cruise ships. And not to mention, as few selfie sticks as possible. Just real humans, travelling your heart out across the world with open minds and a non-stop desire to make our planet better, simply by exploring it.

At G Adventures, our DNA (or GNA, if you will) is built on belonging — where bringing your authentic self to work every day isn’t just accepted, it’s downright celebrated. For our office crew — you wanna rock a t-shirt with your dog’s face on it? We say go for it. For our Chief Experience Officers — you wanna hit the road and call some of the most epic places on Earth your home office?

We love that — and we’ve got you. Wanna spend your days with people you genuinely like? Us too — and we’re pretty sure you’ll fit right in, wherever that is.

Now about that career of yours — this is the kind of place where you can spread your wings and truly grow into your role. The best part? You get to do it all alongside a passionate, freakishly talented, one-of-a-kind bunch excited to produce top-notch work and spread a ridiculous amount of goodness at the same time.

Feel like this could be the right fit? We think so too, and we’re already to meet you.

Key Duties & Responsibilities

Secure Development & Automation

  • Architect and implement robust security controls and processes across the entire software development lifecycle (SDLC), collaborating with development, operations and security teams to ensure security is embedded at every stage.

  • Design, implement and maintain security practices within CI/CD pipelines by integrating and automating tools such as SAST, DAST and SCA to provide continuous, automated feedback and early detection of vulnerabilities.

  • Deploy, configure, and maintain security infrastructure, including Web Application Firewalls (WAFs), Intrusion Detection/Prevention Systems (IDS/IPS) and SIEM platforms to proactively monitor and defend against threats.

  • Develop and manage automated scripts and tools to streamline security operations and improve efficiency.

  • Conduct regular and ad-hoc vulnerability assessments, penetration testing and security code reviews to identify and remediate weaknesses in applications and infrastructure.

  • Infrastructure Security & Vulnerability Management

  • Strengthen the security posture of infrastructure by implementing Infrastructure as Code (IaC) security measures using Terraform.

  • Manage and enforce policies for cloud security, container security, and runtime security across platforms like Kubernetes, Amazon ECS, and Docker.

  • Secure systems against cyber threats through detailed analysis of security events, incident response, vulnerability management, risk assessment, and policy development.

  • Perform continuous monitoring, vulnerability scanning, and formal network/system assessments, documenting findings and corrective actions.

  • Regularly assess and harden system configurations to align with industry best practices and frameworks.

  • Collaborate with teams to remediate vulnerabilities and manage timely patch deployments.

  • Ensure compliance with standards such as SOC 2, ISO 27001, and PCI DSS by aligning Dev Sec Ops  practices with organizational requirements.

  • Participate in security audits and generate evidence to support regulatory and customer compliance needs.

  • Collaboration & Incident Response

  • Serve as a security evangelist, collaborating closely with software development, IT operations and product teams to embed a "security-first" mindset and promote secure coding practices from the project's inception.

  • Work cross-functionally with other teams to implement secure systems and respond to cyber threats.

  • Develop and monitor automated detection mechanisms to monitor for security threats and incidents.

  • Work with the Information Security team to develop and tune SIEM playbooks and scripts for incident response.

  • Participate in the security on-call…

  • Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
    To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
     
     
     
    Search for further Jobs Here:
    (Try combinations for better Results! Or enter less keywords for broader Results)
    Location
    Increase/decrease your Search Radius (miles)

    Job Posting Language
    Employment Category
    Education (minimum level)
    Filters
    Education Level
    Experience Level (years)
    Posted in last:
    Salary