34 Platform Security jobs in Canada
Security Engineer
Posted today
Job Viewed
Job Description
Job Description
Responsibilities:
- Conduct thorough investigations and offer guidance on the most current security-related risks, threats, and vulnerabilities. This will involve managing security incidents, overseeing external security reviews, and performing penetration tests to ensure the robustness of our infrastructure's security posture.
- Collaborate on the development of Information Security policies, standards, and baselines. Your input will contribute to assessing compliance efforts.
- Monitor, evaluate, and execute network penetration tests, vulnerability assessment scans, and risk evaluation reviews.
- Define and present key security metrics to influence trends in remediation strategies.
- Communicate findings and provide recommendations to stakeholders during remediation processes as necessary.
- Work closely with IT Operations, architecture, and project teams to design and implement security controls based on policies, standards, and industry best practices.
- Coordinate vulnerability assessments, review assessment results, guide patching, and lead or offer advice on remediation activities related to various IT infrastructure technologies such as BU OS, Middleware, Unix/Linux Servers, Storage, Databases, Appliances, Web Applications, Network Devices, malware tools, IDS/IPS, encryption, etc.
- Contribute to consistent governance reporting by providing results and metrics. You will also collaborate on and organize remediation plans and efforts.
- Engage in research to develop testing tools, techniques, and process enhancements.
- Effectively explain, demonstrate, and document the operational implications of specific security vulnerabilities or loopholes.
- Analyze vulnerability findings and suggest corrective actions and security strengthening measures.
- Manage and configure NGFW, WAF, and NSG.
- Implement Data Loss Prevention (DLP) solutions to enhance data security.
- Provide mentorship, guidance, and knowledge-sharing within the team.
- As needed, offer recommendations, explanations, and guidance on your area of expertise to other teams in the organization.
- Comprehend the Scope of Work for each engagement.
- Proactively recognize security risks and define security requirements and controls to mitigate these risks.
- Carry out your duties in a secure, organized, and professional manner.
Requirements:
- You hold a Bachelor's Degree in Science, Engineering, or an equivalent field.
- You possess certifications such as CISSP, GSEC, or other relevant credentials.
- You have over 5 years of progressive experience in IT security.
- Your track record demonstrates expertise in formulating, maintaining, and enforcing security best practices.
- You are proficient in industry-recognized tools, encompassing Middleware, Servers (Linux/Windows), Storage, Databases, Appliances, Web Applications, Network Security Devices, as well as technologies like Cisco ACI, Nutanix, Azure Cloud Platform, CyberArk, Intune, Microsoft Endpoint Management, SDWAN, Palo Alto, Fortinet, Cisco ASA, and Juniper firewalls.
- Your extensive knowledge covers the current cybersecurity landscape, with a focus on networks and server/system management. You possess a strong background in Cloud Security (Azure, OCI, Nutanix) and a deep understanding of Zero Trust and SASE security models.
- You possess a strong grasp of Authentication, End Point Security, Internet Policy Enforcement, Web Content Filtering, Public Key Infrastructure (PKI), Data Loss Prevention (DLP), Identity and Access Management (IAM) solutions, VMs, as well as common networking services and protocols (TCP/IP, SSH, FTP, DNS, DHCP, SMTP, SSL, etc.).
- Your familiarity extends to Information Security best practices, policies, standards, and baselines, including industry guidelines from ISO 27001/27002, NIST, CIS, and OWASP.
- You have notable experience in database security.
- System hardening for Networking Devices, Windows, and Linux is within your realm of expertise.
- You're a resourceful problem solver who thrives in collaborative settings.
- You exhibit the ability to systematically analyze intricate technical issues, identify solutions, and effectively communicate them to non-technical audiences.
- Your communication skills, both written and verbal, are strong, enabling you to generate concise reports, summaries, and formal presentations.
- You can adeptly explain, demonstrate (when applicable), and document the operational consequences of specific security vulnerabilities or loopholes.
- You're self-motivated and capable of working independently.
- You're a dedicated team player.
Security Engineer
Posted today
Job Viewed
Job Description
Job Description
Salary: $130,000 - $60,000 CAD
The Role
Were looking for a senior Security Developer (aka Security Engineer) to join our Platform team and help safeguard the integrity of our applications, infrastructure, and data. This role is central to designing and implementing technical solutions that proactively prevent, detect, and respond to security threats. The ideal candidate brings a strong technical foundation, a collaborative mindset, and a passion for making security an enabler of great software. Youll work closely with developers to identify risks, promote best practices, and implement secure solutions. Were looking for someone who believes in building strong, repeatable processesleveraging cloud-native security tools, partnering with external experts, and helping teams build secure systems by design.
Primary responsibilities:
- Lead the evaluation and mitigation of emerging security threats and news
- Proactively identify security weaknesses in our systems and seek improvements
- Promote security best practices
Additional responsibilities:
- Recommend effective strategies and provide guidance to developers on secure solutions
- Collaborate with developers to review designs and implementations for potential security issues
- When appropriate, implement solutions aligned with recommended strategies
- Write infrastructure-as-code (Terraform), with a focus on security-related solutions
- Configure and manage cloud security tools, including Datadogs security suite
- Oversee vulnerability scanning and assessment, including Dependabot and Amazon ECR
- Organize and evaluate penetration tests, including managing external assessments
- Lead or actively participate in security exercises and audits
- Support responses to compliance and security questionnaires
- Meet with vendors and partners on security-related matters
- Provide input on internal security guidance related to staff practices and device configuration
What we expect from you:
- 5+ years of professional experience in a security engineering, DevSecOps, or infrastructure security role
- Bachelors degree in Software Engineering, Computer Science or related field, or equivalent practical experience
- Proficiency in at least one programming language
- Experience in utilizing a variety of tools for vulnerability and penetration testing
- Experience writing clear, actionable security reports tailored for engineering, leadership and compliance teams
- Hands-on experience with secure software development lifecycle practices, including threat modeling, static/dynamic code analysis, and security-focused code reviews
- Demonstrated ability to build relationships across engineering teams, encouraging secure development practices through education, support, and partnership
Additional experience that would be beneficial:
- Experience provisioning and configuring AWS infrastructure using Terraform
- Experience integrating security checks into CI/CD pipelines using GitHub Actions
- Experience leading tabletop exercises to simulate incident response scenarios
- Experience working in regulated industries, such as finance or healthcare
- Familiarity with compliance frameworks such as SOC 2
About Lendesk
Were a financial technology company on a mission to make the mortgage experience easy, accessible, and transparent. Our flagship product is an advanced digital mortgage origination platform that connects borrowers, brokers, and lenders. Were a fast-growing team of 50+ employees, composed of innovative and engaged individuals working collaboratively to deliver a unique digital home buying experience.
What We Offer
In addition to the exciting work, great people and a fun and supportive culture, we offer an extensive benefits and perks package:
- Competitive salaries
- Comprehensive benefit plan including dental, medical and vision
- Remote first, work from where you are in Canada
- Budget to improve your home office set-up
- Flexible work hours
- The latest in hardware and software tools
- Budget for continuous development and training
- Stock purchase program in our parent company (NYSE:RKT)
You must be a current Canadian resident to be considered for this role. A candidate selected for this position must pass a criminal background check.
Lendesk is committed to offering competitive salaries to all our team members. This role has a salary range of 130,000 - 160,000 CAD which accounts for the skills youll bring to the team, the impact youll have on the business, and the growth youll experience in the role. Throughout your time at Lendesk well continue to have conversations about your career development and youll have the opportunity to build an amazing career with us.
remote work
Security Engineer
Posted today
Job Viewed
Job Description
Job Description
Salary: $73,000-$5,000
Our Business
FISPAN Services Inc. (FISPAN) is an Enterprise SaaS FinTech company that allows banks to deploy embedded financial products and services to create a seamless banking connection for their corporate clients. Our product aims to provide instant scale and reach for banks who want to remove friction and add value by enabling their commercial banking clients to access banking services through their preferred ERP / accounting platform.
Founded in 2016 and headquartered in downtown Vancouver, FISPAN is on a mission to create the best product in the FinTech industry and fundamentally change the way that companies bank. Being the market leader in ERP Banking, we work with the worlds Tier 1 banks with assets exceeding 3T, including J.P. Morgan Chase, Wells Fargo, TD and Bank of Montreal.
We are looking for dynamic and passionate individuals to join our high performance team and contribute to our rapid growth and exciting journey.
Position Overview
We are seeking a skilled security engineer to join our growing team at FISPAN, responsible for maintaining and improving our security technical controls. The ideal candidate will have strong technical knowledge and deep understanding of network security, security monitoring and vulnerability management tools and a passion for learning new technologies and staying ahead of emerging cyber threats.
Key Responsibilities
- Perform support and development of security related tools, like: Network Firewall, SIEM, Spam Protection, MDM solution, Endpoint protection and so on.
- Work closely with the Penetration testing team: Developing API documentation and Scope documentation.
- Monitor, detect, and report suspicious activities using SIEM and conduct cybersecurity investigations and respond promptly to incidents, including participation in on-call rotations.
- Develop and improve security documentation for existing products and processes.
Requirements/Skills
- Degree in cyber security, information technology or other related fields
- At least 3 years of experience in security related roles
- Hands-on experience with AWS Cloud and Kubernetes
- Experience in Unix / Linux operating systems on a level of power user or system administrator.
- Ability to analyse and configure such systems from the command line.
- Experience with MacOS systems support will be a plus.
- Strong understanding of network security principles.
- Be familiar with python and bash scripting.
- Understanding of OWASP top 10, be able easily review and understand type of attack based on web access logs.
- Experience with network security tools
- Experience with SIEM tools including ability to perform SIEM queries, analysis and tuning (log aggregation and correlation).
- Experience in Splunk SPL development will be a plus.
- Excellent verbal, written and communication skills
Why Work With Us?
- Experienced Team: Our CEO is Lisa Shields, a renowned tech entrepreneur whose previous venture, Hyperwallet, was purchased by Paypal and ranks as one of the largest Canadian technology company acquisitions. Lisa is backed by a seasoned leadership team with vast experience scaling technology companies from start-up through growth phases to acquisition. In joining our team you will benefit from that experience and associated mentorship opportunities, and further build your network and knowledge base.
- High Growth Environment: FISPAN is an emerging high growth company, and that implies autonomy and leadership over projects. Our employees hold a higher level of responsibility and are presented with various hands-on opportunities from the get-go. We want our team to reach their full potential and career aspirations, and FISPAN helps foster that.
- Rich Culture: The Companys culture is its greatest asset, and our team members form bonds that last a lifetime. We plan company-wide events, both virtual and in-person, and other activities to foster togetherness and help drive engagement. We also understand that personal growth happens on multiple levels, and so encourage a work-life balance with ample time to spend with family, explore new ideas and develop hobbies.
- Perks: Our prime downtown Vancouver office is close to a Skytrain, prestige shopping, and coastal views. FISPAN employees have access to our building fitness center and amenities, fully stocked cupboards, weekly team lunches, and daily coffee runs. We also set our employees up for success by providing the most modern MacBook and Apple equipment.
Compensation Package
FISPAN believes in an atmosphere and culture when innovation can flourish, collaboration and teamwork are valued and transparency is at the core of it all. We want our employees to see how the ideas they help generate today have an impact on how we do business tomorrow.With that, the hiring salary range for this position is 73,000- 95,000annually; the base pay offered is based on comparable market data from companies of similar employee size, revenue and location. As part of our total rewards offering, permanent employees in this position may be eligible for our competitive semi-annual bonus program, subject to program eligibility requirements.
At FISPAN, we reward employees for achieving their objectives, going beyond the requirements of their job, demonstrating leadership, fostering innovation and advancing the organization as a whole. We value talented people of all backgrounds and characteristics that share our vision of being the number one platform for the business banking ecosystem.
Other components of our towards rewards offerings include support of career development, wellbeing, and personal growth.
- Extended health and dental benefits
- Paid time off
- Savings and retirement plan matching
- Parenthood top-up
- Mentorship programs, and leadership series (to name a few)
Note: The incentive programs, benefits, and perks have certain eligibility requirements and may vary, only be partially or not at all available based on criteria such as location, employment status, etc. Well be happy to clarify eligibility for interviewing candidates.
Diversity, Equity & Inclusion
As FISPAN continues to grow, we are committed to celebrating diversity, endorsing equity, and encouraging inclusion. This starts in the recruitment process. All job postings are first evaluated in a gender-decoding platform to ensure fair candidate pools. Human Resources and hiring managers also engage in blind hiring and resume review practices to ensure we are being objective and mitigating any potential biases.
Systems security engineer
Posted 3 days ago
Job Viewed
Job Description
English
Education- or equivalent experience
Work must be completed at the physical location. There is no option to work remotely.
Responsibilities Tasks Experience and specialization Area of specializationApplication Security Engineer
Posted today
Job Viewed
Job Description
Job Description
MindBridge is the global leader in AI-powered financial risk intelligence. Our platform, MindBridge AI™ is enabling finance and audit professionals to build the AI-powered finance department of the future. With over 120 billion financial transactions analyzed with MindBridge’s AI, we set the standard for innovation, scalability, and customer satisfaction.
At MindBridge, we're driven by innovation and excellence, united as a team to revolutionize financial integrity. Here, your ideas matter, and your efforts make a meaningful impact. If you're passionate about using AI to drive positive change, MindBridge is the perfect fit. What distinguishes us is our unwavering commitment to our values: Innovation, Collaboration, and Integrity. These principles foster a vibrant workplace culture, where appreciation and a strong sense of community flourish.
About the Role:
We are looking for an Application Security Engineer with a passion for security automation, secure cloud architecture, cutting edge technologies, and DevSecOps excellence. You will be responsible for embedding security throughout our production environments and software development lifecycle (SDLC), automating controls, and safeguarding our AI-driven infrastructure working alongside development, operations, and IT/Security teams.
Key Responsibilities:
Risk identification, mitigation, and education:
- Collaborate with MindBridge software developers and SREs to resolve security issues early. Provide guidance to developers on secure coding practices.
- Participate in design reviews and code reviews to identify issues through threat modeling.
- Work with our vulnerability management team to triage and resolve vulnerabilities and findings from pen tests.
Integrate security into the delivery pipeline:
- Maintain and enhance our SAST, DAST, SCA, and container image scanning components within CI/CD workflows.
- Implement policy-as-code for infrastructure and Kubernetes clusters.
- Continuous security awareness
- Keep up with the latest CVE alerts, threat intelligence, and cloud-native security tools.
- Contribute to security playbooks, incident response procedures, and team-wide awareness sessions.
- Assist with novel questions in customer security questionnaires
- Participate in our annual SOC 2 & ISO audit programmes
LLM & Cloud Security:
- Define secure usage patterns for LLMs (e.g., input validation, red-teaming).
- Secure our Azure cloud infrastructure, ensuring compliance with Zero Trust Architecture principles.
- Take part in reviewing LLM vendors and vendor deployments.
- Manage key initiatives, track outcomes, and support strategic decision-making with crisp data and context.
Requirements
Desired Skills & Experience:
- 5+ years in DevSecOps, Cloud Security, or related roles.
- Written communication is key as this is a remote work team.
- Expert in securing Azure cloud environments (RBAC, NSGs, Key Vault, Defender for Cloud).
- Strong automation and scripting with tools such as Python, Bash, Terraform, and Helm.
- Experience with Kubernetes (AKS preferred) and container security (e.g., image hardening, runtime protection).
- Experience with version control (Git) and exposure to software development best practices for backend (Java/Python) and frontend (Angular)
- Familiarity with:
- CI/CD systems
- SAST/DAST tools
- Secrets management
- SIEM and security logging pipelines.
Preferred qualifications:
- Azure Security Engineer Associate or other relevant certifications (CISSP, CKS, etc.)
- Experience working in ISO 27001 or SOC 2 compliant environments.
- Familiarity with LLM threat models and generative AI safety techniques.
- Contributions to open-source projects or security research a plus.
Requirements contingent on employment:
- Fulfill requirements necessary to obtain full background check.
- This is a remote role, with preference for candidates in the Ottawa area for interview purposes. We’re also open to other Canadian locations through referrals within our network. The ideal candidate will be available to attend in-person onboarding at our Ottawa office.
Benefits
Why You’ll Love Being Part of Our Team:
Cloud Security Engineer
Posted today
Job Viewed
Job Description
Job Description
Job Description
Cloud Security Engineer
Location: 100% Remote, Canada
Experience: 7 Years
Role Summary: NearSource is seeking a skilled Cloud Security Engineer with 7 years of experience to strengthen our security posture across cloud and application environments. The selected candidate will serve as a security champion, collaborating with engineering teams to embed secure practices throughout the product lifecycle and ensure compliance with enterprise security standards.
Key Responsibilities
- Monitor, evaluate, and maintain systems and procedures to safeguard infrastructure, databases, and web-based applications
- Identify, integrate, and improve information security controls while aligning with business processes and compliance standards
- Conduct vulnerability assessments and oversee remediation to enhance security posture
- Assist with security architecture reviews and lead threat modeling exercises for new features and products
- Research security trends, techniques, and emerging threats to proactively strengthen defenses
- Respond to alerts from security tools, triage incidents, and perform detailed analysis of potential security issues
- Troubleshoot and resolve security system and related infrastructure issues
- Collaborate with engineering teams to remediate vulnerabilities and implement best practices
- Promote security by design through knowledge sharing and team education
- Ensure compliance with regulations, privacy requirements, and industry standards
Must-Have Skills
- 7 years of experience in security engineering or a related field
- Minimum 2 years of experience in secure coding and application development
- Strong proficiency in one or more programming languages such as Python, Ruby, or React
- Deep understanding of common application security vulnerabilities and remediation techniques
- Hands-on expertise in application security and secure software development lifecycle (SDLC) practices
- Proven experience integrating security into CI/CD pipelines
- Strong communication skills for effectively conveying vulnerabilities and remediation steps to stakeholders
- Experience across all phases of the application lifecycle
Nice-to-Have Skills
- Familiarity with infrastructure security tools and automation frameworks
- Experience conducting distributed threat modeling and architecture reviews
- Background in monitoring and improving cloud security operations
- Knowledge of regulatory compliance frameworks and privacy laws
About NearSource: NearSource Technologies is a trusted partner for future-ready software consulting, enabling Fortune 500 enterprises to accelerate digital transformation. Our global engineering teams build and deploy impactful technology for some of the world's most admired brands, working directly on long-term client initiatives.
Apply now, or share your resume with salary expectations at Thank you for considering a career with us! Once you submit your application, our Talent Acquisition team will review your resume thoroughly. If there's a strong match, we'll reach out to discuss your experience, role details, benefits, compensation, and next steps. While we strive for transparency, we may not be able to respond to every applicant due to high volume, but we genuinely appreciate your time and interest.
Equal Opportunity Statement: NearSource is an equal opportunity employer committed to fostering an inclusive and respectful environment. We celebrate diversity and do not discriminate based on race, gender, religion, sexual orientation, age, disability, or background. Innovation thrives when everyone feels empowered to contribute.
Application Security Engineer
Posted today
Job Viewed
Job Description
Job Description
Salary: $90,000-$110,000
We're Hiring!
We're looking for brilliant thinkers to join our #Rocketeers. If you've ever wondered what it's like to work in a place where people enjoy their work and where talent is more important than the title, then keep reading.
What is ScalePad?
ScalePad is a market-leading software-as-a-service (SaaS) company with headquarters in Vancouver, Toronto, Montreal and Phoenix, AZ. However, we are proud to say our employee reach is now global so we can best serve our partners all over the world.
Our success is no accident: ScalePad provides MSPs of every size with the knowledge, technology, and community they need to deliver increased client value while navigating the continuously changing terrain of the IT landscape. With a suite of integrated products that automate and standardize MSPs operations, analyze and uncover new opportunities, and expand value to clients, ScalePad is equipping the MSP adventure.
ScalePad has received awards such as MSP Todays Product of the Year, G2s 2024 Fastest Growing Product, and 2024 Best IT Management Product. In 2023, it was named a Best Workplace in Canada by Great Place to Work. ScalePad is a privately held company serving over 12,000 MSPs across the globe.
You can contribute to our innovation and appreciate how your work is helping take this company to a higher level of operational maturity. More on that here.
Your mission should you choose to accept it.
We are seeking a skilled Application Security Engineer to join our team and help secure our applications and infrastructure. This role focuses on application security for JavaScript front-end frameworks, Java, and C# .NET applications, with additional emphasis on containerized environments. The ideal candidate will have hands-on experience in secure software development, security testing, and vulnerability management.
Responsibilities.
- Perform application security assessments, including static code analysis, vulnerability scanning, and triaging vulnerabilities.
- Collaborate with developers to integrate security best practices into JavaScript frameworks, Java, and C# .NET codebases.
- Maintain secure coding guidelines and assist in code reviews.
- Work within a matrix organization and serve as a dedicated security resource for a specific product development team.
- Act as the primary security point of contact for the development team, providing guidance and addressing security-related queries.
- Ensure the development team adheres to security best practices and secure coding standards.
- Work with container technologies (e.g., Docker) and orchestrators like Kubernetes to ensure secure deployments.
- Automate security processes using scripting languages like Python.
- Conduct security testing, identify risks, and provide mitigation strategies.
- Stay up-to-date with the latest security trends, vulnerabilities, and technologies.
- Participate in on-call rotation of ScalePad
Qualifications.
- Strong experience with JavaScript front-end frameworks, Java, and C# .NET.
- Knowledge of containerization basics (e.g., Docker) and Kubernetes.
- Familiarity with Python scripting for automation or tool integration.
- Hands-on experience with static code analysis tools and vulnerability scanners.
- Ability to analyze, triage, and prioritize vulnerabilities based on risk.
- Solid understanding of secure coding practices and common application security risks (e.g., OWASP Top 10).
- Basic knowledge of DevOps practices and CI/CD pipelines.
Preferred Qualifications:
- Experience implementing security tools within CI/CD pipelines.
- Familiarity with security frameworks like NIST, ISO 27001, or equivalent.
What Youll Love Working As A Rocketeer:
- Everyones an Owner: Through our Employee Stock Option Plan (ESOP), each team member has a stake in our success. As we scale, your contributions directly shape our future and you share in the rewards.
- Growth, Longevity and Stability: Benefit from insights and training from our leadership and founder, whose extensive experience in funding and scaling successful software companies creates a stable environment for your long-term career growth. Their proven track record fosters a culture of lasting success.
- Annual Training & Development: Every employee receives an annual budget for professional development, empowering you to advance your skills and career on your terms.
- Hybrid Flexibility: Enjoy a world-class office at our headquarters in downtown Vancouver, Toronto, and Montreal
- Cutting-Edge Gear: Whether in the office or at home, youll be set up for success with top-of-the-line hardware.
- Wellness at Work: Our Vancouver office features a fitness facility, outdoor ping-pong tables
- Comprehensive Benefits: Weve got you covered with an extensive benefits package with 100% medical and dental coverage fully employer-paid, RRSP matching after one year of employment, and even a monthly stipend to help offset the costs of the hybrid experience.
- Flexible Time Off: With our unlimited flex-time policy in addition to all accrued vacation allows you to take the time you need to recharge and thrive.
Dream jobs dont knock on your door every day.
ScalePad is not your typical software company. When we hire you, we arent just offering you a job, but rather we are committing to investing in both you and your long-term career. You'll help shape how this modern SaaS company operates and make a genuine impact on the future of our people, product, and partners.
We invite all qualified candidates to apply. Please note, you must be eligible to work in Canada to be considered for this role. We thank you for your interest. However, only successful applicants will be contacted.
At ScalePad, we believe in the power of Diversity, Equity, Inclusion, and Belonging (DEIB) to drive innovation, collaboration, and success. We are committed to fostering a workplace where every individual's unique experiences and perspectives are valued, and where employees from all backgrounds can thrive. Our dedication to DEIB is woven into the fabric of our culture, guiding our actions and decisions as we build a stronger and more inclusive future together.
Join us and be part of a team that celebrates differences, embraces fairness, and ensures that everyone has an equal opportunity to contribute and grow. Together, we're creating an environment where diverse voices are not only heard but also amplified, where everyone feels valued, and where we can all achieve our full potential.
Please no recruiters or phone calls.
remote work
Be The First To Know
About the latest Platform security Jobs in Canada !
Senior Security Engineer
Posted today
Job Viewed
Job Description
Job Description
Company Description
ADGA Group is a proudly Canadian-owned and operated defence and security technology company. Our core services include value-added program management, agile software engineering development, and integrated security solutions. As an industry partner to the Canadian Government and Canadian Armed Forces (CAF) for decades, ADGA is actively supporting ongoing and emerging requirements for operational readiness, reconstitution, and modernization.
For decades, we have recruited veterans to integrate their unique skillsets and highly specialized training into our workforce and work culture. At ADGA, we are united by our social purpose to create meaningful employment opportunities for veterans of the CAF and RCMP, their families, and fellow citizens who share a passion to contribute to the security and well-being of Canadians.
ADGA’s social purpose empowers us to reinvest in our employees as well as to donate generously to veteran and military family causes in our community.
Join our team at ADGA, where we prioritize your success by fostering internal movement and growth in a safe, inclusive, and agile work environment. We offer a wide variety of career and developmental opportunities, including the option to work on different projects and technologies, on-the-job training, cross-training, access to business and technical online courses, and formal education subsidies.
Job DescriptionREF: 001
Provide expert engineering and specialist embedded support in the field of Cyber security for the ongoing development and sustainment of the TCM (Tactical Communication Modernization) project.
- Contribute to the TCM Statement of Requirement document with requirements and specifications associated with Cyber Security and system security.
- Provide expert advice in the development of cyber security mitigation strategies and applications to increase cyber resilience of CA platforms and operational assets.
- Support the separation of security domains within Canadian Army platforms equipped with LCSS through the engineering and sustainment of Cross Security Domain Solutions (e.g. Data Sync Guard devices, Tactical Guarding Architectures and other Cyber security solutions)
- Participate as a team member in systems engineering technical teams and provide advice and technical expertise to cybersecurity program authorities.
- Be familiar with and provide technical advice on complying with the following design control plans in relation to TCM equipment, subsystems and system modifications that have potential to affect LCSS (Land Command Support System), Platform Qualifications and Accreditations:
- ITSG 33 Security
- National Security Agency (NSA) Raise the Bar Cross Domain Security
- Communications Security Establishment (CSE) Information Technology Security Design Control; and
- ABCANZ and NATO STANAGs in relation to TCM equipment, subsystems and system modifications that have potential to affect CA (Canadian Army) Platform qualifications/accreditations.
- Participate in the (Cyber related) Working Group (WG) as a representative SME for TCM projects.
- As required, provide Cyber Security SME to support Sections and other organizations to ensure an understanding of Cyber Security controls and guidance from DND, CSEC and NSA.
- Generate technical documentation to assist in conducting qualification and cyber related testing of TCM equipment, subsystems and platforms.
- Review and make recommendations on all Cyber security related technical documentation including but not limited to Test Plans, Test Procedures and Test Reports.
- Assist and/or witness the conduct of cyber security related testing to ensure test standards, procedures and guidance are followed.
- Review and recommend corrective action for cyber security related test failures and reported problems.
- On request, liaise with OGD authorities on cyber security related issues.
- Conduct Cyber security technical studies to produce and validate technical options, assess technical risks and evaluate designs and deliver expert advice in the context of platform technologies used by the Canadian Army including, but not limited to, vehicle vetronics, weapon systems and maintenance equipment; and
- Provide advice on the security aspects of the implementation of the generic vehicle architecture open standard for equipment and platforms.
- Proof of Engineering bachelor’s degree in software, computer, systems, electrical or a suitable engineering or technical field required to support Land C4ISR. (a must, copy will need to be provided)
- Must have a current CISSP qualification. (mandatory)
- Ability to demonstrate at least 6 years of experience within the last 8 years in security engineering in a minimum of 5 of the following assessment criteria:
- Demonstrated work experience in designing, developing and integrating new security controls/ solutions within a network system architecture.
- Demonstrated work experience in designing and implementing communication and network security system, such as an enterprise VPN solution.
- Demonstrated work experience in design and implementation of an identity and access management solution (identification and authorization).
- Demonstrated work experience in design and implementation of an end point protection solution.
- Demonstrated work experience in designing and implementing an example of Defence in depth solution.
- Demonstrated work experience in analyzing, evaluating and resolving system security related issues.
- Demonstrated work experience in designing and validating assessment and test strategies.
- Minimum of 5 years’ experience as a Security Engineer on Military Command and Control systems.
- Minimum of 8 years’ experience within the last 10 years in the preparation of technical concept documents, system specifications, and technical proposals in the field of Information Technology / Information management or engineering (i.e. System, software, computer, communication, security, or simulation) experience.
- Minimum of 6 years’ experience in each of at least 4 of the following criteria: (#3 & 4 are required)
- Communicating information technology frameworks/strategies to management and technical staff.
- Communicating system engineering direction for projects or systems.
- Providing advice, guidance and recommendations on technical issues to support the decision-making of senior management.
- Leading multidisciplinary teams in the development of IT tactical systems, frameworks or strategies.
- Performing strategic, operational or tactical planning for projects or systems to meet corporate strategy.
Additional Information
- Will be required to work on-site full time, in Gatineau. (other possible locations as needed in NCR)
- Preference given to candidates that currently hold an active Secret level clearance with PSPC/PWGSC. (Fed Government Security Clearance) This is a contract requirement.
Work-Life Balance
We strongly support a healthy and productive work-life balance. This starts with a flexible approach to work, and policies designed to support employees through their day-to-day routines and major life events. For example, we offer a Maternity/Parental Top-Up (up to 52 weeks) and a Reservist Leave Top-Up (up to 180 days).
ADGA continuously strives to integrate advanced Diversity, Equity & Inclusion (DEI) approaches and practices into our work culture. Our employee-based DEI Committee explores activities and invites discussions that foster an environment where all employees feel valued, respected, and heard.
Compensation
Above and beyond our commitment to offer a competitive base salary, ADGA has a company-wide profit-sharing plan for all full-time and part-time employees.
Comprehensive Benefits and Total Rewards
We offer a comprehensive benefit program, providing employees with the choice between base or enhanced plans. Depending on the plan, ADGA pays for Health & Dental, a Health Spending Account, Short-Term Disability, an Employee Assistance Program, and a Telemedicine service. Also offered: discounts on gym memberships, 5,000+ perks through Perkoplis, a Deferred Profit Sharing Plan, and access to a wide range of other employee-centric services and savings programs.