Summary: Duration: 12 Months Contract Location: Montreal Work Mode: Onsite (3x/week) Responsibilities: Review, harden, and improve code across internal .NET Framework applications and services.
Build and run automation in Power
Shell to analyze, improve, and harden code across internal repositories.
Partner with development squads to embed secure coding practices throughout the software development lifecycle.
Strengthen existing application features and remediate findings raised through code review and security tooling.
Enhance the team''s use of automated security testing within Continuous Integration/Continuous Delivery pipelines.
Perform code reviews and contribute to secure-by-design standards, patterns, and guidance.
Support and improve the team''s adoption of agile principles: participate in sprint retrospectives and demos as needed.
Requirements: Minimum 8 years of software development experience.
Robust hands-on expertise with the .NET Framework (C#, ASP.NET).
Demonstrable application security experience.
Secure coding, code review, and remediation skills.
Familiarity with recognized application security standards (e.g., OWASP).
Hands-on experience with Continuous Integration/Continuous Delivery.
Hands-on experience with Agile development (Scrum, Kanban).
Understanding of SDLC and secure CI/CD processes.
Hands-on experience with Jira or other issue-tracking systems.
Preferred Skills: .NET Core experience.
Experience writing Power
Shell scripts.
Static and dynamic application security testing (SAST/DAST) tools.
Threat modeling experience.
Secure software development certification (e.g., CSSLP). SQL and Database Design.