Cloud Security Specialist

Medfar

$100K — $120K *
US-AnywhereRemote in Montreal, QC
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field.
  • Extensive experience as a DevOps Engineer focusing on security, ideally in an Azure setting.
  • Familiarity with penetration testing tools, authentication protocols, and web security principles.
  • Proficient in designing CI/CD pipelines, notably using tools like SonarQube for code quality.
  • Deep understanding of Microsoft and .NET security integration in CI/CD processes.
  • Ability to lead and mentor teams in DevSecOps adoption.
  • Strong problem-solving, communication, and leadership skills.
  • Relevant security certifications (CISSP, Security+, Azure Security Engineer, etc.) are encouraged.

Responsibilities

  • Lead the design and implementation of secure software architecture and CI/CD for .NET applications on Azure.
  • Provide mentorship and technical leadership to development teams, collaborating on a security-focused roadmap.
  • Conduct internal penetration tests and security assessments, identifying vulnerabilities and recommending mitigation.
  • Design and deploy secure authentication systems to protect user data and access.
  • Integrate DevSecOps practices into the development lifecycle, ensuring continuous security integration.
  • Collaborate with teams to embed .NET security features into application design.
  • Stay informed about emerging security threats and adjust strategies accordingly.

Benefits

  • Flexible remote work options supporting work-life balance.
  • RRSP contribution.
  • Healthcare insurance upon starting.
  • Three weeks paid time off plus one extra week during the holidays.
  • Annual training budget for professional development.
  • Onboarding program for familiarization with the work environment.
  • Provision of all necessary IT equipment.
  • Opportunities for internal promotions and mobility.
  • Support initiatives for team cohesion and employee well-being.
  • Collaborative and transparent company culture.
Full Job Description
Job Description

As a Cloud Security Specialist, you will lead the integration of security practices within our R&D department. You will be helping our development teams to design, implement, and maintain secure, scalable, and efficient software architecture. You will ensure that security is baked into every step of the software development lifecycle. Your work will directly impact the security posture of our applications and services, ensuring the integrity and reliability of our deployments.

What you'll do:
  • Lead the design and implementation of secure software architecture, CI/CD pipelines for .NET applications on Azure, integrating security best practices and tools to ensure code quality and security.
  • Provide technical leadership and mentorship to the development teams as well as collaborate to establish a security-focused roadmap.
  • Assist with internal penetration testing duties and security assessments for our cloud infrastructure and applications, identifying vulnerabilities and implementing effective mitigation strategies.
  • Help design and deploy robust authentication systems, enhancing the security of user data and access controls.
  • Drive the integration of DevSecOps practices into the development lifecycle, ensuring continuous security from code to cloud.
  • Collaborate with development teams to incorporate .NET security features and best practices into application design and deployment.
  • Stay updated on the latest in security threats, vulnerabilities, and mitigation technologies, adapting our strategy to continuously protect against risks.
  • Develop and maintain comprehensive documentation on security configurations, procedures, and audits.
  • Provide technical leadership and mentorship to our teams on DevSecOps best practices, tools, and technologies.
  • Work closely with cross-functional teams to ensure compliance with all regulatory and industry security standards and certifications.


Qualifications

Who you are:
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • Proven experience as a DevOps Engineer or similar role with a strong focus on security and DevSecOps practices, preferably in an Azure environment.
  • Knowledge and experience of penetration testing tools and methodologies, along with a deep understanding of authentication protocols, application security, and web security principles.
  • Proficient in designing and implementing CI/CD pipelines, with a solid grasp of tools like SonarQube, ensuring code quality and security.
  • Familiarity with Microsoft and .NET ecosystem security features, best practices, and the integration of security into CI/CD pipelines.
  • Demonstrated ability to lead and mentor teams in the adoption of DevSecOps practices.
  • Excellent problem-solving skills with the ability to work independently or as part of a team.
  • Strong communication and leadership skills, with the capability to guide and influence technical teams and stakeholders.
  • Relevant certifications (e.g CISSP, Security+, A+, OSCP, OSCE, OSWE, Azure Security Engineer, DevSecOps, etc.) are highly desirable.
  • Fluency in English, French is a plus.


Working conditions:
  • Contract: Permanent, full-time (40h/week)
  • Working mode: Hybrid or remote
    • Occasional in-office presence may be required during the year (for events or team meetings, for example).
    • Candidates must reside in the province of Quebec.


Additional Information
  • Remote work and flexibility (supporting work-life balance)
  • RRSP contribution
  • Healthcare insurance from day one
  • Paid time off: 3 weeks + 1 additional week between Christmas and New Year
  • Annual training allowance to support your professional development
  • An onboarding program to help you get familiar with our environment and the digital healthcare field
  • All IT equipment is provided, with additional gear if needed
  • Internal growth opportunities (promotions, internal mobility)
  • Support from a wellness and social committee, with initiatives to foster team cohesion, mental health, and employee well-being
  • A company culture focused on transparency, collaboration, and innovation
  • Join a dynamic and innovative environment where your work has a real and wide-reaching impact, helping to modernize healthcare in Canada and internationally


With offices around the world, fluency in both French and English is a must at MEDFAR. Because of the need to communicate with colleagues and/or customers in other provinces or countries, bilingualism enables us to communicate in both languages while promoting the use of French.

Similar Jobs

More Jobs at Medfar

More Information Technology Jobs

Find similar Cloud Security Specialist jobs: