Skip to main content
Full-Time
On-Site

Application Security Consultant (Global Security)

View on Map

Description

The Application Security team at RBC is working on complex enterprise-wide initiatives to improve the security and quality of RBC applications. This role involves providing technical expertise in application security tools for global RBC business and application development teams. The consultant will act as a primary contact for application teams, prioritize and triage SAST Security scan results, and communicate application team needs to security leadership. The role is crucial for developing application security best practices, tools, and processes within RBC, requiring an understanding of SAST, SCA, and DAST testing techniques.

What We're Looking For

Support end users of application security testing tools, managing tickets through a ticketing platform.,Proactively solve problems to ensure application development teams can effectively use the latest application security testing tools.,Educate key organizational stakeholders (developers, security consultants, executives) on application security matters.,Assist in the integration of application security processes and tools into existing enterprise development processes and pipelines.,Participate in and lead various application security assessment activities.,Assist in the development, evaluation, and implementation of application security testing processes and tools.,Work in a diverse environment leveraging team members' experience and knowledge.,Research and stay updated on application security emerging threats, techniques, tools, and trends.,Exposure to application security best practices such as secure coding, security testing techniques, and Secure Software Development Lifecycle.,Experience supporting SAST tools, particularly in triaging findings and refining scanning rules.,2+ years of experience developing and testing applications in Python, Java, Bash, Perl, JavaScript, C++, or C#.,Understanding of CI/CD, DevOps, and DevSecOps approaches and experience working with DevOps tools.,Knowledge of OWASP, SANS, or other security-related frameworks.,Knowledge of SAST Security Scanning tools.

Ideal Candidate

Familiarity with AI/ML systems security (securing machine learning models or evaluating LLM-based applications).,Experience supporting SCA/DAST tools, especially in triaging findings and refining scanning rules.,Experience with Threat Modelling and Risk Assessment activities.,Understanding and experience in agile methodology.

Hard Skills

Application Security
Encryption Software
Information Security
Information Security Management
Information Technology Security
Infrastructure Penetration Testing
IT Security Architecture
IT Systems Integration
SAST
SCA
DAST
Python
Java
Bash
Perl
JavaScript
C++
C#
CI/CD
DevOps
DevSecOps
OWASP
SANS

Soft Skills

Critical Thinking
Group Problem Solving
Client and Stakeholder Management
Collaboration

Work Hours

37.5 hours/week

Benefits

Comprehensive Total Rewards Program (bonuses, flexible benefits, competitive compensation, commissions, stock).
Leaders who support development through coaching and managing opportunities.
Ability to make a difference and lasting impact.
Work in a dynamic, collaborative, progressive, and high-performing team.
World-class training program in financial services.
Flexible work/life balance options.
Opportunities to do challenging work.

About the Company

R

Royal Bank of Canada

Royal Bank of Canada is a global financial institution with a purpose-driven, principles-led approach to delivering leading performance. As Canada's largest bank, it provides personal and commercial banking, wealth management, and capital markets services to over 17 million clients worldwide.

Purpose-driven
Inclusive
Innovative
Collaborative
Professional
View all jobs at Royal Bank of Canada

    We respect your privacy

    BerryMap uses cookies to provide essential features, analyze usage, and improve your experience. You can customize your preferences below.