Application Security Analyst

Kal Tire

$88K — $102K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 4+ years of hands-on cybersecurity experience focusing on application security.
  • 3+ years managing penetration testing programs and vulnerability assessments.
  • Experience with security testing tools and CI/CD pipeline integration.
  • Familiarity with Microsoft security technologies, including Azure DevOps and Defender for Cloud.
  • 1+ year securing AI-enabled applications with LLM integrations.
  • Strong understanding of cybersecurity frameworks and best practices.
  • Bachelor's degree in Computer Science, Cybersecurity, or related field.

Responsibilities

  • Lead application security testing, including penetration testing.
  • Partner with developers for vulnerability remediation and secure coding.
  • Conduct risk and security assessments of applications and systems.
  • Integrate security into the Software Development Lifecycle (SSDLC).
  • Perform both manual and automated security testing.
  • Implement and optimize application security technologies like WAF.
  • Investigate security incidents and enforce preventative measures.

Benefits

  • Extended health, dental, and vision benefits for eligible employees.
  • Employee Assistance Program for support.
  • Group RRSP/DPSP matching program.
  • Employee discounts on tires and mechanical services.
  • Positive work culture emphasizing growth and work-life balance.
  • Professional development opportunities including training and tuition reimbursement.
Full Job Description
Description

Application Security Analyst

Vernon, BC or Remote

Kal Tire is seeking an Application Security Analyst to join our Cybersecurity team. In this role, you'll help protect our applications, systems, and data by identifying security risks, supporting secure software development practices, and implementing controls that strengthen our overall security posture.

Working closely with developers, Information Services teams, and business stakeholders, you'll lead security assessments, support vulnerability management, and help ensure that security is embedded throughout the software development lifecycle. You'll also play an important role in securing cloud-based and AI-enabled applications while helping the organization stay ahead of emerging threats.

Responsibilities
  • Lead application security testing activities, including penetration testing and vulnerability assessments.
  • Partner with developers and Information Services teams to remediate vulnerabilities and promote secure coding practices.
  • Conduct risk, privacy, and security assessments for new and existing applications and systems.
  • Integrate security practices into the Secure Software Development Lifecycle (SSDLC), including threat modeling, architecture reviews, and secure design validation.
  • Perform manual code reviews and use automated security testing tools, including SAST, DAST, and IAST.
  • Deploy, configure, and optimize application security technologies such as Web Application Firewalls (WAF) and Software Composition Analysis (SCA) solutions.
  • Investigate application security incidents, conduct root cause analysis, and implement preventative measures.
  • Assess and secure cloud, web, and AI-enabled applications, including LLM integrations.
  • Ensure applications align with recognized security standards and frameworks, including OWASP Top 10 and OWASP Top 10 for LLM Applications.
  • Participate in incident response activities, tabletop exercises, and security readiness initiatives.
  • Support security awareness programs and secure development education across the organization.
  • Research emerging threats, vulnerabilities, and security technologies and recommend appropriate solutions.
  • Qualifications and Success Factors

Job Requirements
  • 4+ years of hands-on cybersecurity experience, including secure coding practices, web technologies, and application security.
  • 3+ years of experience managing penetration testing programs and vulnerability assessments.
  • 3+ years of experience using security testing tools and integrating security controls into CI/CD pipelines.
  • 4+ years of experience managing cybersecurity solutions in a complex enterprise environment.
  • 2+ years of experience with Microsoft security technologies, including Azure DevOps, Microsoft Sentinel, Microsoft Defender for Endpoint, and Defender for Cloud.
  • 1+ year of experience securing AI-enabled applications, including LLM integrations.
  • Proven experience as an Application Security Analyst or in a similar cybersecurity role.
  • Strong understanding of application, cloud, web, network, and endpoint security principles.
  • Knowledge of cybersecurity frameworks, security controls, and industry best practices.
  • Ability to assess risk and communicate technical concepts to both technical and non-technical audiences.
  • Strong analytical, problem-solving, and technical documentation skills.
  • Experience evaluating security controls and recommending improvements.
  • Commitment to continuous learning and staying current with emerging technologies and threats.
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • Relevant certifications such as CISSP, CSSLP, GSEC, CASP+, CEH, or equivalent are considered an asset.

Special Requirements
  • Valid driver's license.
  • Ability to travel occasionally.
  • Participation in an on-call rotation.
  • Ability to work effectively in a remote work environment.

Nice to Have
  • Experience with Microsoft Defender and Microsoft Sentinel.
  • Experience with network security technologies and controls.

What we offer
  • The target compensation for this role is $88,270-$102,640 per year based on experience
  • Extended group health, dental, and vision benefits are available to all eligible full-time and part-time permanent employees.
  • Employee Assistance Program
  • A group RRSP/DPSP matching program
  • Discount on tires and mechanical services
  • Positive work culture, opportunities for growth and development, and work-life balance.
  • Opportunities for professional development, such as training programs, mentorship, and tuition reimbursement.

Hiring Process

All interviews and hiring decisions are being made by Kal Tire's hiring managers and recruiters. Kal Tire uses AI tools to support parts of recruitment, including but not limited to job posting and pre-screening.

Kal Tire is committed to fostering a workplace where everyone feels valued, included, and empowered to thrive. We embrace diverse perspectives and welcome applications from all backgrounds and experiences. If your qualifications align with the role, we'll connect with you to guide you through the next steps. Candidates considered for the role must be legally eligible to work for any employer in Canada. A Canadian Criminal Record Check may be required for certain positions as part of the final stages of the hiring process.

#KalTireCareers

Similar Jobs

More Jobs at Kal Tire

More Information Technology Jobs

Find similar Application Security Analyst jobs: