04 Sep
|
BayOne Solutions
|
Canada
04 Sep
BayOne Solutions
Canada
We’re seeking a highly technical
Cloud Engineer / Application Security Engineer to own and drive vulnerability remediation programs, with a focus on
HackerOne findings, API security, GraphQL authorization, and application security
.
Key Responsibilities:
- Manage end-to-end
HackerOne bug bounty vulnerability intake, triage, validation, tracking, and closure.
- Reproduce and technically validate security findings using
Postman, Burp Suite, browser tools, and security testing tools
.
- Analyze vulnerabilities involving
REST APIs, GraphQL, OAuth, JWT, authentication/authorization, and OWASP/API Security Top 10
.
- Coordinate remediation across
Cybersecurity, Engineering, Product, and external vendors
.
- Track vulnerabilities and SLAs using
Jira and ServiceNow
, escalating critical and overdue findings.
- Build executive dashboards and reporting around risk,
remediation progress, backlog, and SLA compliance
.
- Leverage
GenAI and workflow automation to improve vulnerability triage, service ownership, remediation tracking, and reporting.
Must Have:
- 5+ years of experience in Software Engineering, Application Security, or a related security-focused role.
- Strong hands-on knowledge of
API Security, REST, GraphQL, Authentication/Authorization, OAuth, JWT, OWASP Top 10, and API Security Top 10
.
- Experience reproducing and validating security vulnerabilities
.
- Strong
Postman experience.
- Experience with
Jira and ServiceNow
.
- Solid stakeholder management and cross-functional communication skills.
📌 Cloud Engineer/Application Security (Canada)
🏢 BayOne Solutions
📍 Canada