Job Title: Application Security Analyst
Location: Regina, Saskatchewan, Canada (On-Site)
Duration: 24+ Months
Client: Public Sector
Note: This role is fully on-site in Regina, Saskatchewan.
Education:
Bachelors degree in Computer Science, Information Technology, Cyber security, Software Engineering, or a related field.
Certifications (Mandatory):
CISSP or Certified Ethical Hacker (CEH).
Qualifications (Mandatory):
5+ years of experience in Application and Information Security across public and/or private sectors, with proven success in identifying, assessing, and mitigating risks in application development and web implementations.
Hands-on experience with web protocols such as HTTP, HTTPS, and SOAP.
Strong knowledge of web technologies including HTML, JavaScript, XML, AJAX, JSON, and REST.
Experience with cyber security standards such as OWASP, Application Security Testing Standards, and security tools.
Experience in vulnerability scanning, analysis, and risk management programs.
Expertise in infrastructure risk identification, reporting, and mitigation.
Experience in static and dynamic application security testing using automated and manual methods.
Experience evaluating Secure SDLC and DevSecOps frameworks to integrate security practices.
Knowledge of cloud security, cloud-based architectures, and deployment models.
Roles & Responsibilities:
Perform application security testing using both automated and manual techniques.
Conduct vulnerability assessments and penetration testing.
Test security of web and mobile applications, web services, and APIs.
Perform code reviews when required.
Analyze false positives/negatives and provide recommendations to developers.
Ensure protection of web applications using Web Application Firewall (WAF).