DevSecOps – Senior Security Scanning Analyst - Toronto, Canada - Royal Bank of Canada>

    Royal Bank of Canada background
    Description

    Job Summary

    Job Description

    What is the opportunity?

    We are looking for a DevSecOps – Senior Security Scanning Analyst. who is energetic, enthusiastic, well organized and has a passion for cybersecurity and development to join our team. We are a team that requires an eager go-getter who wants to take charge, provide valuable client support and become a dependable team player within the organization. We focus specifically on security scanning of Infrastructure such as Servers, VMs, Workstation, Network devices etc. We're looking for an experienced Developer who has a deep interest in Python Development, Cloud & Cyber Security to join us on our journey to scaling out our Scanning operations. You'll have the opportunity to work with some of the most advanced security scanning technologies while developing solutions to automate & enhance scan operations.

    What will you do?

    • Designing, modifying, developing, writing, and implementing software programming applications for target systems using agile methods.
    • Acquiring client requirements; and resolving workflow problems through automation optimization.
    • Writing source codes for new applications, and/or generating and enhancing code samples for existing applications.
    • Utilizing automated testing tools to perform the testing and maintenance.
    • You will engineer & maintain a highly scalable, flexible, and fault-tolerant Infrastructure Security Tool instance hosted on-prem and cloud. Transition services to Infrastructure code.
    • Co-lead the ongoing enhancements to our security Scanning services. Further security integration and collaboration with our core CI/CD Pipeline.
    • Perform health checks on the scanning tools to monitor stability and verify scan jobs are completed promptly to ensure a smooth security scanning operation.
    • Introduce further cross-collaboration integrations to our scanning tools such as Log Management (Splunk, Datadog, Kibana, Grafana, Prometheus), Tableau Reporting, ServiceNow CMDB, and Slack notifications.
    • Learn how to interpret Vulnerability scan results and investigate False Positive Claims

    What do you need to succeed?

    Must-have

    • Strong Python programming skills; making API Calls, hands-on experience with GitHub and familiarity with managing Infrastructure as Code
    • Strong understanding of UNIX, Linux, Windows infrastructure and cloud computing technologies
    • Excellent communication skills with demonstrated ability to communicate in technical and non-technical environments.
    • Experience in troubleshooting large applications with multiple data sources and system interfaces.
    • Problem-solving ability to analyze and prioritize work to meet business objectives in a secure and risk-based approach.
    • Analytical mindset and awareness of fundamental security practices
    • Experience with vulnerability management processes and scanning products (such as Tenable, Qualys, Aqua, Prisma)

    Nice-to-have

    • Familiarity with Service Now, JIRA, Confluence and working in an agile environment.
    • Experience with public and private cloud platforms such as AWS, Azure, GCP, OpenShift or PCF
    • Security or Cloud-related Certifications
    • Familiarity with the financial services industry is a plus, but not required (we'll teach you the business domain knowledge)

    What's in it for you?

    We thrive on the challenge to be our best, progressive thinking to keep growing, and working together to deliver trusted advice to help our clients thrive and communities prosper. We care about each other, reaching our potential, making a difference to our communities, and achieving success that is mutual.

    • A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation, commissions, and stock where applicable
    • Leaders who support your development through coaching and managing opportunities
    • Ability to make a difference and lasting impact
    • Work in a dynamic, collaborative, progressive, and high-performing team
    • Flexible work/life balance options
    • Opportunities to do challenging work
    • Opportunities to take on progressively greater accountabilities
    • Opportunities to building close relationships with clients

    #techpj

    #LI-POST

    #Li-hybrid

    Job Skills

    Information Technology (IT) Infrastructure, Programming Languages, Software Change Request Management, Software Development Life Cycle (SDLC), Software Engineering, Software Integration Engineering, Software Product Design, Software Product Technical Knowledge, Software Release Management, System Testing Tools

    Additional Job Details

    Address:

    330 FRONT ST W:TORONTO

    City:

    TORONTO

    Country:

    Canada

    Work hours/week:

    37.5

    Employment Type:

    Full time

    Platform:

    Technology and Operations

    Job Type:

    Regular

    Pay Type:

    Salaried

    Posted Date:

    Application Deadline:

    Inclusion and Equal Opportunity Employment

    At RBC, we embrace diversity and inclusion for innovation and growth. We are committed to building inclusive teams and an equitable workplace for our employees to bring their true selves to work. We are taking actions to tackle issues of inequity and systemic bias to support our diverse talent, clients and communities.
    ​​​​​​​
    We also strive to provide an accessible candidate experience for our prospective employees with different abilities. Please let us know if you need any accommodations during the recruitment process.

    Join our Talent Community

    Stay in-the-know about great career opportunities at RBC. Sign up and get customized info on our latest jobs, career tips and Recruitment events that matter to you.

    Expand your limits and create a new future together at RBC. Find out how we use our passion and drive to enhance the well-being of our clients and communities at