Application Security Manager

Posted 2 days ago

Apply Now

Resume Score

Check how well your resume matches this job before you apply.

Sign in to check score

About the role

  • Application Security Manager at Workleap embedding security in products and development workflows. You will write code, build tooling, and ensure secure software delivery.

Responsibilities

  • Ensure security is embedded into CI/CD pipelines by delivering scalable, automated tooling and integrated security checks (SAST, DAST, SCA, secret scanning);
  • Enable secure-by-default development by designing and implementing automated, policy-driven security review workflows;
  • Establish robust security guardrails within AI-assisted development and agent workflows to reduce risk while maintaining developer velocity;
  • Reduce risk exposure by proactively identifying, assessing, and driving remediation of application security vulnerabilities;
  • Strengthen application security posture by leading threat modeling and security assessments for new features and architectural changes;
  • Improve detection and response capabilities through the development of automation, tooling, and streamlined vulnerability management processes;
  • Elevate cloud and application security by partnering with Infrastructure SecOps to harden Azure environments and deployment practices;
  • Enhance external security feedback loops by contributing to and scaling the bug bounty program and vulnerability intake processes.

Requirements

  • 8+ years of experience in application security, DevSecOps, or security-focused software development;
  • Strong software engineering background combined with deep security expertise;
  • Deep understanding of web application security principles, OWASP Top 10, and CWE Top 25;
  • Hands-on experience performing secure code reviews in C#;
  • Experience building and maintaining security automation in CI/CD pipelines (GitHub Actions preferred);
  • Solid understanding of Azure cloud services, infrastructure security, and deployment patterns;
  • Experience integrating SAST, DAST, SCA, and secret scanning tools into development workflows;
  • Proficiency in scripting (Python, Bash) for automation and tooling;
  • Extensive hands-on experience with AI-assisted and agentic development workflows, with deep expertise in their security implications;
  • Familiarity with authentication protocols such as OIDC, SAML, and OAuth;
  • Ability to clearly communicate security risks and trade-offs to both technical and non-technical stakeholders.

Benefits

  • Health insurance
  • Flexible working hours
  • Professional development opportunities

Job type

Full Time

Experience level

SeniorLead

Salary

CA$150,000 - CA$180,000 per year

Degree requirement

Bachelor's Degree

Tech skills

AzureCloudPython

Location requirements

RemoteCanada

Report this job

Found something wrong with the page? Please let us know by submitting a report below.