Jobs
>
Toronto

    Senior Application Security Testing Engineer - Toronto, Canada - Bank of Montreal

    Bank of Montreal
    Bank of Montreal Toronto, Canada

    Found in: YadaJobs CA C2 - 4 weeks ago

    Default job background
    Full time
    Description

    Senior Application Security Testing Engineer (DAST/SAST) page is loaded Senior Application Security Testing Engineer (DAST/SAST) Apply locations Toronto, ON, CAN time type Full time posted on Posted Yesterday job requisition id R

    Application Deadline:

    03/30/2024

    Address:

    100 King Street West

    Job Family Group:

    Technology

    MUST HAVE: Experience with SAST/DAST tools and relevant experience performing Application Security Testing; working as security consultant with application teams.

    About the role:

    The Application Security Testing Engineer reports to the Senior Manager and assists with the security testing activities for BMO based applications. The role will be responsible for the execution and coordination of Static and Dynamic Application Security Testing (SAST/DAST), provides information security consulting services (SAST/DAST Scanning) for BMO overall and businesses/groups. Liaises with stakeholders to understand problems and opportunities and enables BMO to meet its goals by understanding business vision, objectives and KPIs. Participates in the execution of information security strategy.

    What will you do:

    • Subject Matter Expertise - Provides technical leadership to business areas as a Security Testing subject matter expert. Assists with efforts on the execution of security testing operations to include pre-engagement (scoping), engagement (testing) and post-engagement activities (reporting).
    • Secure Testing - Assists in delivery of security testing projects according to a structured process, to include writing test reports. This may include oversight and/or execution of the configuration and deployment of security testing software and application of results to security analysis.
    • Information Security Risk Management - Works with leadership to mature security testing team capabilities including reporting and remediation guidance in alignment with local and global regulatory requirements. Identifies security gaps and deficiencies by conducting risk assessments; able to recommend corrective action of identified vulnerabilities and weaknesses. Assists with the execution of planning, testing, tracking, and advises on necessary risk acceptance for identified security risks.
    • Secure Application Development - Assists with the execution of highly technical/analytical security assessments of custom web applications, mid-tier application services, backend mainframe applications and databases, including manual, custom and industry known attack methods using a risk-based intelligence-led methodology. Identifies potential misuse scenarios. Advises on secure development practices.

    What you need to succeed:

    • Typically between 5 - 7 years of relevant experience and a post-secondary degree in Computer Science or Information Systems or a related field of study or an equivalent combination of education and experience.
    • Experience in testing web applications, APIs, mobile applications to identify vulnerabilities and weaknesses.
    • Hands-on experience with dynamic application security (DAST) tools such as Burp Suite, OWASP ZAP, etc. Hands-on experience with static source code analysis (SAST) tools.
    • Knowledge of coding languages (e.g. C#, JAVA, JavaScript, TypeScript, Python etc.) and can code with little oversight
    • Knowledge of different rapid development processes, e.g. Waterfall, Agile, etc.
    • Knowledge of coding vulnerabilities, frameworks, patching processes, Information Security risk and industry best practices, defense concepts, risk-based assessment approach
    • Knowledge of OWASP Top 10, and the OWASP Testing Guide or other secure coding frameworks, NIST Cyber Security Framework (CSF)
    • Understands the principles of secure coding techniques and secure code reviews, code scanning software and vulnerability code scanning processes, network protocols and connectivity.
    • Industry certification is an asset - CISSP, CISSLP, CCSK, GIAC etc.
    • Experience working in an Agile development environment, and ability to work effectively with cross-functional teams.

    Compensation and Benefits:

    $81, $151,200.00

    Pay Type:

    Salaried

    The above represents BMO Financial Group's pay range and type.

    Salaries will vary based on factors such as location, skills, experience, education, and qualifications for the role, and may include a commission structure. Salaries for part-time roles will be pro-rated based on number of hours regularly worked. For commission roles, the salary listed above represents BMO Financial Group's expected target for the first year in this position.

    BMO Financial Group's total compensation package will vary based on the pay type of the position and may include performance-based incentives, discretionary bonuses, as well as other perks and rewards. BMO also offers health insurance, tuition reimbursement, accident and life insurance, and retirement savings plans. To view more details of our benefits, please visit:

    We're here to help

    At BMO we are driven by a shared Purpose: Boldly Grow the Good in business and life. It calls on us to create lasting, positive change for our customers, our communities and our people. By working together, innovating and pushing boundaries, we transform lives and businesses, and power economic growth around the world.

    As a member of the BMO team you are valued, respected and heard, and you have more ways to grow and make an impact. We strive to help you make an impact from day one - for yourself and our customers. We'll support you with the tools and resources you need to reach new milestones, as you help our customers reach theirs. From in-depth training and coaching, to manager support and network-building opportunities, we'll help you gain valuable experience, and broaden your skillset.

    To find out more visit us at .

    BMO is committed to an inclusive, equitable and accessible workplace. By learning from each other's differences, we gain strength through our people and our perspectives. Accommodations are available on request for candidates taking part in all aspects of the selection process. To request accommodation, please contact your recruiter.

    Note to Recruiters: BMO does not accept unsolicited resumes from any source other than directly from a candidate. Any unsolicited resumes sent to BMO, directly or indirectly, will be considered BMO property. BMO will not pay a fee for any placement resulting from the receipt of an unsolicited resume. A recruiting agency must first have a valid, written and fully executed agency agreement contract for service to submit resumes.

    About Us

    BMO is a leading bank driven by a single purpose: to Boldly Grow the Good in business and life. Everywhere we do business, we're focused on building, investing and transforming how we work to drive performance and continue growing the good.

    Who we are

    We're proud to be fueling growth and expanding possibilities for individuals, families and businesses. More than 12 million customers count on us for personal and commercial banking, wealth management and investment services. As the 8th largest bank in North America by assets, we provide personal and commercial banking, wealth management and investment services to more than 12 million customers. In Canada, the United States and across the globe, we'll continue to build, invest and transform to drive performance that serves the good that grows.


  • RGBSI

    Test Engineer

    Found in: Adzuna CA C2 - 16 hours ago


    RGBSI Toronto, Canada

    Job Description: · The Data Engineer will develop test scripts for executing various development and validation tests for EV battery packs. · The successful candidate has an opportunity to contribute to a world-class battery lab from the launch stage all the way to the full opera ...

  • Devire

    Test Engineer

    Found in: Jooble CA O C2 - 19 hours ago


    Devire Toronto, ON, Canada

    Your Future Company · Devire Outsourcing IT is a form of partnership dedicated to self-employed IT specialists, executing projects for our Clients - leading IT Companies bringing innovations and the newest resolutions to market. · Job Title: Test Engineer · Salary: PLN/h netto ...

  • Devire

    Test Engineer

    Found in: Jooble CA O C2 - 19 hours ago


    Devire Toronto, ON, Canada

    Devire Outsourcing IT is a form of partnership dedicated to self-employed IT specialists, executing projects for our Clients - leading IT Companies bringing innovations and the newest resolutions to market. · Location: 100% remote · Language: communication in English on daily b ...

  • Maarut Inc

    Test Engineer

    Found in: Zoho Direct Apply - 2 days ago


    Maarut Inc Oakville, Canada

    Proficiency in Java and its ecosystem. Strong grasp of Object-Oriented Programming (OOP) concepts such as classes, objects, inheritance, and polymorphism1. Familiarity with various design and architectural patterns · Ability to write reusable Java libraries and understand Java co ...

  • First Derivative

    FX Test Engineer

    Found in: Appcast US C2 - 18 hours ago


    First Derivative Toronto, Canada

    First Derivative is a global leader in consulting, business services and technology. We are the home for diverse thinkers and innovators. We know that our people are vital to our success and we are proud of the diverse and vibrant team we have built across the globe. With over 30 ...

  • Gravity IT Resources

    Testing Automation Engineer

    Found in: Jooble CA O C2 - 19 hours ago


    Gravity IT Resources Toronto, ON, Canada

    Job Title: Senior Test Automation Engineer · **NO VISA SPONSORSHIP - ALL CANDIDATES MUST BE CANADIAN CITIZENS** · Summary: We are seeking a highly skilled and experienced Senior Test Automation Engineer for a critical new development project involving the rewrite of a legacy sys ...

  • Momentum Financial Services Group

    Test Automation Engineering As

    Found in: Jooble CA O C2 - 19 hours ago


    Momentum Financial Services Group Toronto, ON, Canada

    Momentum Financial Services is a leading provider of financial services in North America. Backed by a retail network of over 400 locations, we provide access to cash and related products to help our customers achieve their goals. · Through this ever-evolving suite of services, w ...

  • Money Mart Financial Services

    Test Automation Engineering As

    Found in: Jooble CA O C2 - 19 hours ago


    Money Mart Financial Services Toronto, ON, Canada

    Candidates must reside in the GTA area to be considered for this role as they will be required to be in office 3 days a week at the Toronto Corporate Office.#corporate · We are looking for a highly skilled test automation engineer to design automation tests. Test automation engi ...

  • Oxa

    Staff Engineer in Test

    Found in: Jooble CA O C2 - 19 hours ago


    Oxa Toronto, ON, Canada

    Oxa is enabling the transition to self-driving vehicles through an initial focus on the most commercially advanced sector; We are home to some of the world's leading experts on autonomous vehicles, creating solutions such as Oxa Driver, equipping vehicles with full self-driving f ...

  • Phoenix Digital Health Inc.

    Manager, Test Engineering

    Found in: Jooble CA O C2 - 19 hours ago


    Phoenix Digital Health Inc. Toronto, ON, Canada

    As the Engineering Manager at Phoenix, you'll balance coding and management responsibilities. This role sits at the intersection of product and engineering and is pivotal in aligning our product roadmap with commercial and technical objectives. We're looking for someone who has a ...

  • QPS Evaluation Services Inc.

    Test Engineer/Product Engineer

    Found in: Jooble CA O C2 - 19 hours ago


    QPS Evaluation Services Inc. Toronto, ON, Canada

    QPS Evaluation Services Inc. is a leading Testing, Certification and Inspection body accredited in Canada, the USA (as an NRTL), and internationally under the IECEE and the IECEx Schemes. QPS is headquartered in Toronto, Ontario, where our main testing laboratory is located. We a ...

  • Kepler Communications Inc.

    Manager, Test Engineering

    Found in: Jooble CA O C2 - 19 hours ago


    Kepler Communications Inc. Toronto, ON, Canada

    With an expanding base of early customers and our first 21 satellites in orbit, Kepler is continuing to grow and expand its most important asset – the Team · As the Lab Manager, you will be responsible for overseeing the efficient operation, organization, and safety of our lab fa ...

  • Primate Labs Inc.

    Software Engineer in Test

    Found in: Jooble CA O C2 - 19 hours ago


    Primate Labs Inc. Toronto, ON, Canada Full time

    Primate Labs, a small (but mighty) software company in Toronto, is looking for an enthusiastic developers to join our team. The developer will help us build the next version of Geekbench, our popular cross-platform benchmark for desktop and mobile platforms. Our customers are div ...

  • Momentum Financial Services Group

    Testing Automation Engineer

    Found in: Talent CA C2 - 2 days ago


    Momentum Financial Services Group Toronto, Canada Full time

    Job Description · *Candidates must reside in the GTA area to be considered for this role as they will be required to be in office 3 days a week at the Toronto Corporate Office. · GENERAL FUNCTION · We are looking for a highly skilled test automation engineer to design automation ...

  • First Derivative

    Test engineer Automation

    Found in: Jooble CA O L C2 - 19 hours ago


    First Derivative Toronto, ON, Canada

    First Derivative is a global leader in consulting, business services and technology. To meet the growing demand for our First Derivative services, we are looking to hire a Test Engineer with strong FX experience to work on a project for one of our key clients RequirementsStrong b ...

  • Primate Labs Inc.

    Software Engineer in Test

    Found in: Jooble CA O L C2 - 19 hours ago


    Primate Labs Inc. Toronto, ON, Canada Full time

    Primate Labs, a small (but mighty) software company in Toronto, is looking for an enthusiastic developers to join our team. The developer will help us build the next version of Geekbench, our popular cross-platform benchmark for desktop and mobile platforms. Our customers are div ...

  • Portside

    Software Engineer in Test

    Found in: Jooble CA O C2 - 19 hours ago


    Portside Toronto, ON, Canada

    Ruby Software Engineer, Business Aviation SaaS (Remote, Toronto, Canada) Portside, Inc. ( · Portside is a leading provider of modern software solutions for the business aviation industry. Our cloud-based operating system for business and government aviation is designed to support ...

  • Money Mart Financial Services

    Testing Automation Engineer

    Found in: Talent CA C2 - 14 hours ago


    Money Mart Financial Services Toronto, Canada Full time

    Company Description · Momentum Financial Services is a leading provider of financial services in North America. For 40 years, we've been committed to providing financial solutions that meet the evolving needs of consumers and business owners. Backed by a retail network of over 4 ...

  • Waabi

    Staff Engineer in Test

    Found in: Jooble CA O C2 - 19 hours ago


    Waabi Toronto, ON, Canada

    Waabi, founded by AI pioneer and visionary Raquel Urtasun, is an AI company building the next generation of self-driving technology. With a world class team and an innovative approach that unleashes the power of AI to "drive" safely in the real world, Waabi is bringing the promis ...

  • Creation Technologies

    Test Development Engineer

    Found in: Talent CA C2 - 14 hours ago


    Creation Technologies Toronto, Canada Full time

    It's fun to work in a company where people truly BELIEVE in what they're doing · We're committed to bringing passion and customer focus to the business. · The Test Development Engineer (TDE) is a member of Creation's Test Development Services (TDS) team, responsible for providing ...