Security Advisor Specialist protecting Intact’s insurance business through enterprise CDN, WAF, and API security. Automating controls with Terraform and CI/CD while investigating threats and tuning defenses.
Responsibilities
Identify security events and risks requiring monitoring, measurement, and reporting
Design, implement, and continuously optimize CDN and WAF security controls across enterprise environments
Develop, maintain, and tune security rules aligned with industry best practices, including the OWASP Top 10
Configure and enhance bot protection, DoS, and DDoS mitigation while balancing security, performance, and availability
Protect web applications and APIs against common attacks and emerging threats
Manage CDN and WAF configurations as Infrastructure as Code using Terraform, including reusable modules and secure configuration standards
Integrate CDN and WAF changes into CI/CD pipelines with version control, peer review, automated validation, and controlled deployments
Develop automated tests and scripts for security policies, configuration changes, operational tasks, and reporting
Monitor WAF logs and security telemetry, investigate attack patterns, tune policies, and minimize false positives
Detect configuration drift, support incident response, and maintain documentation for WAF architecture, policies, and operational procedures
Requirements
University degree in information security, computer science, or a related field, or an equivalent combination of education and experience
Minimum five years of relevant information technology experience, including hands-on enterprise web and application security experience
Extensive experience administering and supporting enterprise-grade CDN and WAF platforms in complex environments
Deep understanding of TCP/IP, HTTP/S, DNS, TLS, routing, load balancing, reverse proxies, caching, and distributed traffic flows
Strong understanding of web traffic, application architectures, APIs, and common attack techniques
Ability to develop, document, and enforce security policies, standards, and procedures
Experience managing security policies through requirements gathering, implementation, testing, approvals, exception management, reviews, and retirement
Strong Terraform expertise, including reusable modules, version-controlled environments, and Infrastructure as Code practices
Proficiency in Python, Bash, or similar scripting and automation languages
Ability to interpret security events and technical data, troubleshoot complex production issues, identify root causes, and communicate recommendations to technical and business stakeholders
Strong collaboration skills, sound judgment, and commitment to ethical security practices
Security certification would be an asset
For candidates located in Quebec, bilingualism is required to interact regularly with English-speaking colleagues across Canada
Must be eligible to work in Canada; no Canadian work experience required
Benefits
Flexible work arrangements and a hybrid work model
Possibility to purchase up to 5 extra days off per year
Multiple benefits supporting physical and mental wellbeing, including telemedicine and Wellness account
Share plan and other savings of up to 12% of salary or more
Annual bonus target of 15% of base salary, with potential payout up to double the target, subject to personal and company performance
Employee Share Purchase Plan (ESPP) with Intact matching 50% of net shares
Defined benefit pension plan with opportunity to receive guaranteed income for life
Workplace adjustments and accommodations for people with disabilities
Azure SA&A Specialist supporting Government of Canada security assessments, controls, evidence, and testing. PLATO delivers Indigenous - owned software testing and technology services across Canada.
Senior Security Engineer owning identity, IT automation, and cloud security for Maze, a user research platform. Driving vulnerability management, compliance, and secure infrastructure at scale.
Product Security Engineer securing WorkOS developer tools and APIs for enterprise authentication and identity. Leading secure design, offensive testing, tooling, and vulnerability remediation.
Product Security Lead securing Miovision’s intelligent transportation products, cloud services, and connected devices. Leading secure - by - design engineering and product risk management for safer smart transportation networks.
Staff Product Security Engineer securing Phantom’s self - custodial multi - chain crypto wallet. Assessing vulnerabilities, leading security projects, and integrating protection across development and platform teams.
Cybersecurity co - op protecting TD’s banking technology, data, and fraud systems. Testing security solutions, operating tooling, and mitigating cyber and technology risks.