01 Sep
|
AceStack
|
Toronto
Role: Snyk Application Security SME
Employment: Full Time
Location: Toronto, ON
Work Arrangement: Hybrid 4 Days/Week Job Description
We are seeking a Full Time Snyk Application Security SME with solid Application Security, Cybersecurity, DevSecOps, and Snyk platform expertise to support enterprise application security initiatives and tooling modernization Key Responsibilities
- Lead enterprise Application Security and DevSecOps initiatives using Snyk
- Administer and engineer SAST, SCA, and DAST security platforms
- Support Snyk implementation, configuration, administration, and engineering
- Lead application security tooling migrations, preferably from Veracode to Snyk
- Integrate Snyk security capabilities into enterprise development pipelines
- Establish application security standards, processes, and best practices
- Support security requirements across regulated environments
- Collaborate with development, DevOps, cybersecurity, and architecture teams
- Identify and remediate application security vulnerabilities
- Support security assessments, reporting, governance, and compliance activities
Required Skills
- 10+ years of Application Security, Cybersecurity, or DevSecOps experience
- 5+ years of hands-on SAST, SCA, and DAST platform experience
- 3+ years of Snyk implementation, administration, or engineering experience
- Experience migrating application security tooling, preferably Veracode to Snyk
- Experience in banking, financial services, insurance, healthcare, or government environments
- Solid knowledge of NIST SSDF, NIST Cybersecurity Framework, OWASP Top 10, and OWASP API Security Top 10
- Knowledge of CWE/SANS Top 25, ISO 27001, PCI DSS, and SOC 2
- Snyk certification or advanced Snyk platform training preferred
- CISSP, CSSLP, GWAPT, GWEB, CEH, AZ-500, AWS Security Specialty, or equivalent certification preferred
📌 Snyk Application Security SME (Toronto)
🏢 AceStack
📍 Toronto