Senior Security Researcher at Geotab ensuring secure development standards across hardware and embedded development. Collaborating with software developers and security teams on various projects.
Responsibilities
Utilizing programming tools to test devices, configuration, and code, providing risk assessments for vulnerabilities, and reporting on the overall quality of current security standards
Work closely with Geotab software developers, the broader Security team, and global strategic initiative stakeholders
Leverages security expertise in Hardware and Embedded Development
Conduct device, cloud infrastructure or web application and code testing for all systems and applications, open source dependencies, and provide analysis and risk assessments for vulnerabilities discovered
Conducts focused information security research and makes recommendations on changes within department and company
Utilize code analysis and fuzzing tools to assess the quality and security of source code
Provide recommendations on tools to address any gaps in coverage as well as defining and implementing security technical and process improvements
Contribute to secure device configuration, infrastructure design and coding standards (involves developing secure coding training for current and future developers)
Conduct manual code reviews for all systems and code changes for a given device, system or application release, providing both a detailed risk analysis of the security posture of the code and technical programming solutions (secure coding standards) to the developers to mitigate insecure code from being implemented
Provide reporting on overall quality of device, infrastructure configuration or source code from a security perspective by project/team (includes trend analysis, defects found, defects remediated, and time to remediate)
Triages and handles/escalates security issues within area of expertise
Support Geotab global strategic initiatives
Participate in candidate interviews during hiring process
Requirements
8+ years of experience with security evaluation/analysis within a technical organization, including security code reviews and risk assessments
8+ years of experience performing hardware, infrastructure, or embedded development (e.g., Network protocol analysis, debugging, virtualization)
Post-Secondary Diploma/Degree in Computer Science, Information Management, Engineering, or a related field
Technical proficiency with Linux, Windows, and languages such as C, Rust, and Python
Professional certification in Information Security (e.g., CISSP, CCSP, CSSLP, CEH, OSCP, OSWE) is highly valued
Excellent verbal and written communication skills, with comfort delivering technical training and presentations
Entrepreneurial mindset with the ability to stay organized and manage multiple priorities in a flat organization.
Physical Security Manager leading security operations across North America, Japan, and South Korea for Unity Technologies. Overseeing site security, travel security, and event security management.
Lead defensive threat research on generative and agentic AI systems at RBC. Identify emerging threats and develop proof - of - concept exploits to enhance AI security.
System Security Administrator managing and securing eStruxture's IT infrastructure. Collaborating on security projects and ensuring operational excellence in data centers.
Bug Bounty Security Researcher identifying and reporting vulnerabilities in software applications and systems for Inspectiv. Contributing to improving security and participating in bug bounty programs.
Information Security Engineer safeguarding digital infrastructure at Forward Financing. Building automation workflows and enhancing security measures through proactive solutions and incident response.
Senior Security Engineer supporting end - to - end security architecture and compliance for healthcare AI startup. Designing Azure security solutions and partnering with engineering teams for integrated security throughout SDLC.
Security Engineer at Asymmetric Research specializing in security for L1/L2 blockchains and DeFi protocols. Design controls, conduct audits, and analyze vulnerabilities in Rust - based platforms.
Coordonnatrice en santé et sécurité au travail chez EXP, contribuant à la prévention et à la formation. Collaborant avec les équipes pour maintenir un environnement de travail sûr.
Senior Manager, IAM Control Assurance supporting identity and access management compliance within a global financial organization. Collaborating with cross - functional teams for regulatory and audit compliance.