Anticipated Contract End Date/Length: September 30, 2026
Work Set Up: Hybrid
Our client in the Information Technology and Services industry is looking for an Application Security Professional to strengthen secure software development practices across the application lifecycle. The role focuses on embedding security into design, development, and deployment processes by performing secure code reviews, threat modelling, and security testing. This position plays a key role in integrating security into DevSecOps pipelines, establishing secure coding standards, and ensuring applications are designed and maintained with strong security controls across modern cloud and enterprise environments.
What you will do:
- Perform secure code reviews to identify vulnerabilities and ensure adherence to secure development practices.
- Conduct SAST and DAST analysis to detect application security risks during development and testing stages.
- Execute threat modelling activities to identify potential attack vectors and strengthen application security design.
- Support integration of DevSecOps practices within CI/CD pipelines and development workflows.
- Define and promote secure coding standards across development teams.
- Provide security guidance and training to developers to improve secure development capabilities.
- Review application and system architectures to validate the implementation of appropriate security controls.
- Collaborate with development, DevOps, and security teams to address identified vulnerabilities and improve application resilience.