Senior Security Engineer – DevSecOps, Vulnerability Management, Cryptography (Toronto)

Senior Security Engineer – DevSecOps, Vulnerability Management, Cryptography (Toronto)

17 Apr
|
E-Solutions
|
Toronto

17 Apr

E-Solutions

Toronto

Senior Security Engineer – Dev SecOps, Vulnerability Management, Cryptography

Role: Senior Security Engineer – Dev SecOps, Vulnerability Management, Cryptography

Location Toronto, Canada ON - M5S 1K9 (Hybrid)

Role Summary

We are seeking a Senior Security Engineer to support enterprise security initiatives with a focus on vulnerability management, cryptography, secrets and certificate management, and Dev SecOps enablement. The resource will work closely with application, cloud, and platform teams to embed security controls across the SDLC and production environments.

This role is suitable for candidates with strong hands‑on delivery experience in large enterprise or regulated environments.

Key Responsibilities

Vulnerability Management

- Operate and support enterprise vulnerability scanning across applications, infrastructure, cloud, and containers.
- Analyze and triage vulnerability findings; work with engineering teams to drive timely remediation.
- Track vulnerabilities through remediation and closure.
- Support security assessments and penetration testing engagements.

Cryptography & Encryption

- Implement and support encryption standards for data at rest and in transit.
- Manage cryptographic controls, key usage, and lifecycle practices.
- Ensure cryptographic implementations align with organizational security standards.

Secrets & Certificate Management





- Implement and manage secrets management for applications, services, and CI/CD pipelines.
- Manage certificate lifecycle including issuance, renewal, rotation, and expiration.
- Eliminate hardcoded secrets and improve secure configuration practices.

Dev SecOps

- Integrate security controls into CI/CD pipelines (Dev SecOps).
- Support implementation of security tooling such as:
- SAST / DAST
- Dependency and container scanning
- Infrastructure‑as‑Code (IaC) scanning
- Partner with development teams to embed security early in the SDLC.

Mandatory Skill Set

- 5–8 years of hands‑on experience in Security Engineering.
- Solid experience with vulnerability scanning and vulnerability management.
- Solid understanding of cryptography, encryption, and key management concepts.
- Hands‑on experience with certificate management.
- Proven experience implementing Dev SecOps practices in CI/CD pipelines.
- Strong understanding of application and cloud security fundamentals.

Preferred / Nice‑to‑Have Skills

- Cloud platform experience: Azure, AWS, or GCP.
- Experience with containers, Kubernetes, and IaC.
- Scripting experience (Python, Power Shell, Bash).
- Experience in banking, financial services, or other regulated industries.
- Relevant security certifications (nice to have):
- CISSP, CCSP, CSSLP
- Cloud security or Dev SecOps certifications

📌 Senior Security Engineer – DevSecOps, Vulnerability Management, Cryptography (Toronto)
🏢 E-Solutions
📍 Toronto

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:
Enter Your E-mail address to receive the latest job offers for: senior security engineer – devsecops, vulnerability management, cryptography (toronto) / toronto
Subscribe to this job alert:
Enter Your E-mail address to receive the latest job offers for: senior security engineer – devsecops, vulnerability management, cryptography (toronto) / toronto