Cloud Security Developer
New
CanadaFull-TimeSenior
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Languages
- Bilingual proficiency in English and French
- Experience
- 5+ years
- Required Skills
- GCPJavascriptKubernetesTypeScriptAzureGoCI/CDTerraformHelm
Requirements
- 5+ years of experience in cloud infrastructure, security engineering, or DevSecOps-focused roles.
- Strong software development background with experience in Go, JavaScript, or TypeScript.
- Deep understanding of cloud security principles, network security, and common web vulnerabilities (OWASP Top 10).
- Hands-on experience with security testing tools such as SAST/DAST solutions (e.g., Snyk, Tenable).
- Experience implementing DevSecOps practices within CI/CD pipelines such as GitHub Actions, Argo CD, or Azure DevOps.
- Strong knowledge of Kubernetes security and containerized environments.
- Experience with cloud security services in GCP and/or Azure.
- Proficiency in infrastructure-as-code tools such as Terraform, Pulumi, or Helm.
- Familiarity with security frameworks such as CIS, NIST, and MITRE ATT&CK.
- Strong understanding of IAM principles and cloud-native identity management.
- Bilingual proficiency in English and French is required.
Responsibilities
- Design, implement, and maintain cloud security controls to protect cloud infrastructure, applications, and data across production environments.
- Identify, investigate, and remediate security vulnerabilities across cloud systems, and validate remediation effectiveness.
- Conduct architecture and design reviews with a security-first mindset, providing actionable recommendations to engineering teams.
- Build and maintain security tooling including WAFs, IDS/IPS, workload protection systems, and cloud-native security services across GCP and Azure.
- Integrate security practices into CI/CD pipelines, enabling automated security testing and DevSecOps workflows.
- Develop and maintain Infrastructure as Code using tools such as Terraform, Pulumi, and Helm to enforce secure-by-design infrastructure.
- Support incident detection, response, and investigation efforts by improving observability, monitoring, and alerting systems.
- Conduct threat modeling, security assessments, and support audit and compliance activities.
- Design and enforce identity and access management (IAM) policies aligned with least privilege principles.
- Build DevSecOps integrations and automation tools to continuously improve security posture across systems.
View Full Description & ApplyYou'll be redirected to the employer's site