More jobs:
Senior AppSec Ops Specialist
Job Description & How to Apply Below
The Role
The incumbent is responsible for supporting the Senior Manager, Director, CIO and CSO in achieving enterprise security strategic goals through various processes, including:
- Develop and/or enhance the strategies and processes to identify, analyze, and communicate App Sec vulnerabilities as per the CSO Directives, technical standards and published communication process flows.
- Develop and/or enhance communication models to manage remediation, with the development and infrastructure support teams in support of risk management practices on behalf of the business owner.
- Develop and/or enhance reporting to development teams and all levels of management to provide proper tracking and measurement of remediation relative to established objectives.
- Collaborate with stakeholders across the Bank – you will work closely with development and engineering, Dev Ops, application security and other application owner teams across the organization.
- Perform Dynamic Application Security Testing (DAST)
- Perform Software Composition Analysis (SCA) as well as Software Bill of Materials (SBOM) analysis.
- Contribute to the success of our cloud transformation by supporting the Review and Triage of the findings flagged by App Sec.
- Recommend, design, assess, implement, deploy and maintain App Sec controls required to protect Scotiabank and its customers.
- Responsible for adherence to an established process flow that ensures development support teams, infrastructure support teams, and business risk owners implement control measures that effectively mitigate or eliminate the identified risk.
- Understand how the Bank’s risk appetite and risk culture should be considered in day-to-day activities and decisions.
- 6+ years’ relevant working experience in IT (application security, software development, etc.).
- 5+ years’ experience with documenting process, procedure, and user guide.
- 3+ years’ experience practicing application security (SAST, SCA, DAST) throughout the Secure Software Development Lifecycle (SSDLC), with demonstrated experience in vulnerability assessment, security integration, automation of security processes, risk assessment and mitigation.
- 3+ years’ experience with popular CI/CD tools and processes like Bit Bucket/Git Hub, Jfrog Artifactory, Jenkins, Azure Dev Ops, Git Lab CI/CD, Circle
CI. - Excellent communication skills and good support skills for triaging and analysis of issues for all development teams.
- Proficient at collaborating with various stakeholders to achieve the objectives assigned.
- Track records of mentorship and coaching skills for the team.
- Undergrad or equivalent experience.
- Diversity, Equity, Inclusion & Allyship-We strive to create an inclusive culture where every employee is empowered to reach their fullest potential, respected for who they are, and are embraced through bias-free practices and inclusive values across Scotiabank. We embrace diversity and provide opportunities for all employee to learn, grow & participate through our various Employee Resource Groups (ERGs) that span across diverse gender identities, ethnicity, race, age, ability & veterans.
- Accessibility and Workplace Accommodations
- We value the unique skills and experiences each individual brings to the Bank and are committed to creating and maintaining an inclusive and accessible environment for everyone. Scotiabank continues to locate, remove and prevent barriers so that we can build a diverse and inclusive environment while meeting accessibility requirements. - Upskilling through online courses, cross-functional development opportunities, and tuition assistance.
- Competitive Rewards program including bonus, flexible vacation, personal, sick days and benefits will start on day one.
- Community Engagement - no matter where you choose to work from; we offer opportunities for community engagement & belonging with our various programs such as hackathons, contests, Humans of Digital and much more!
Location(s):
Canada :
Ontario :
Toronto
Scotiabank is a leading bank in the Americas.…
Position Requirements
10+ Years
work experience
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×