Senior Java Developer

CGI

• $80K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in security vulnerability identification and remediation in cloud environments.
  • Strong hands-on experience with Java and Spring Boot in enterprise applications.
  • Proficient in secure coding practices and familiar with OWASP Top 10.
  • Experience using vulnerability scanning tools such as Snyk and Checkmarx.
  • Proficient with cloud platforms like AWS, Azure, or GCP and their security controls.
  • Strong knowledge of RESTful APIs and microservices architecture.
  • Experience with CI/CD pipelines and integrating security in DevSecOps.

Responsibilities

  • Design, develop, and maintain enterprise applications using Java and Spring Boot.
  • Analyze and remediate application and infrastructure security vulnerabilities.
  • Troubleshoot security findings affecting application code and cloud services.
  • Apply secure coding practices to handle common security threats.
  • Integrate security controls into CI/CD pipelines and DevSecOps processes.
  • Conduct code and peer reviews to identify vulnerabilities and maintain coding standards.
  • Coordinate with offshore team members to resolve technical issues.

Benefits

  • Hybrid work arrangement with in-office requirements.
  • Opportunity to take ownership of significant projects.
  • Collaborative work environment with security and development teams.
  • Access to advanced vulnerability scanning and coding tools.
  • Professional development opportunities within a leading IT firm.
Full Job Description
Find similar career opportunities

Senior Java Developer

Category: Software Development/ Engineering

Main location: Canada, Ontario, Toronto

Position ID:J0926-1481

Employment Type: Full Time

CGI Canada Career - Java Developer

By playing this video you consent to Google/YouTube processing your data and using cookies - Learn more.

Position Description:

This is a hybrid Senior Java Developer role requiring the successful candidate to work from our downtown Toronto office and/or the client office at a minimum of 4 days per week. The work arrangement is subject to change based on business requirements.

We are seeking a hands-on senior technical resource who can contribute independently within a few weeks of receiving the required access and knowledge transfer. The successful candidate will take ownership of assigned work, proactively resolve technical and security-related issues, and deliver solutions with minimal supervision.

Your future duties and responsibilities:
• Design, develop, enhance, and maintain enterprise applications using Java, Spring Boot, and related technologies.
• Investigate, analyze, prioritize, and remediate application and infrastructure security vulnerabilities across cloud-based environments.
• Troubleshoot and resolve security findings affecting application code, RESTful APIs, containers, microservices, and cloud services.
• Apply secure coding practices and address common security vulnerabilities, including OWASP Top 10, CVEs, dependency vulnerabilities, IAM, secrets management, encryption, and data protection requirements.
• Use vulnerability scanning and code analysis tools such as Snyk, Checkmarx, Veracode, SonarQube, Black Duck, or similar platforms to identify and remediate security findings.
• Contribute to CI/CD pipelines and DevSecOps processes by integrating appropriate security controls and remediation practices into the software delivery lifecycle.
• Conduct code reviews and peer reviews to identify security vulnerabilities, maintain coding standards, and support compliance with organizational requirements.
• Perform root cause analysis for security and performance issues and implement sustainable long-term solutions.
• Provide technical direction and coordinate with offshore team members to support delivery, resolve technical issues, and ensure commitments are met on time.
• Collaborate with security teams, architects, business stakeholders, and development teams to prioritize vulnerabilities, develop remediation plans, and communicate delivery status.

Required qualifications to be successful in this role:
• 5+ years of experience identifying, analyzing, and remediating application and infrastructure security vulnerabilities in cloud-based environments.
• Strong hands-on experience with Java, Spring Boot, and related technologies in enterprise environments.
• Strong understanding of secure coding practices and common security vulnerabilities, including OWASP Top 10, CVEs, and dependency management.
• Hands-on experience with vulnerability scanning and remediation tools such as Snyk, Checkmarx, Veracode, SonarQube, Black Duck, or similar platforms.
• Proficiency with cloud platforms such as AWS, Azure, or GCP, including implementation of security best practices and controls.
• Strong knowledge of RESTful APIs, microservices architecture, and enterprise application integration patterns.
• Experience with CI/CD pipelines and integrating security controls into DevSecOps processes.
• Familiarity with containerization technologies such as Docker and orchestration platforms such as Kubernetes or OpenShift.
• Strong understanding of IAM, secrets management, encryption, and data protection best practices.
• Experience working in Agile/Scrum environments and managing multiple priorities in a fast-paced delivery setting.
• Strong communication, collaboration, and technical leadership skills, including the ability to coordinate with offshore team members and provide technical direction.
• Strong documentation skills, including the ability to prepare technical designs, remediation plans, and stakeholder status reports.
• Ability to collaborate effectively with security teams, architects, business stakeholders, and development teams to prioritize and remediate vulnerabilities.

Nice to have -
• Prior experience managing or mentoring offshore teams.
• Experience with enterprise vulnerability remediation programs and security compliance initiatives.
• Financial services or other highly regulated industry experience.
• Relevant certifications such as AWS Certified Developer, Azure Developer Associate, Certified Secure Software Lifecycle Professional (CSSLP), or similar.
• Prior experience supporting large-scale, mission-critical applications with stringent security and availability requirements.

**CGI is providing a reasonable estimate of the pay range for this role. The determination of this range includes factors such as skill set level, geographic market, experience and training, and licenses and certifications. Compensation decisions depend on the facts and circumstances of each case. A reasonable estimate of the current range is $80,000-$130,000. This role is an existing vacancy.

#LI-BN

Skills:
  • Checkmarx
  • Financial Services
  • Java
  • RESTful (Rest-APIs)
  • Spring Boot
  • Amazon Web Services Cloud
  • Azure
  • Docker
  • Google Cloud Platform
  • OpenShift


Similar Jobs

More Jobs at CGI

  • Momentum SME
    $79K — $172K *
    Washington, VA 22747 (Rappahannock County)
    Education, Government & Non-Profit
    In-Person
  • UiPath Solution Architect
    $89K — $198K *
    Plymouth Meeting, PA 19462 (Montgomery County)
    Enterprise Technology
    In-Person
  • SAP Solution Architect
    $90K — $180K *
    Montreal, QC H1A 0A1
    Enterprise Technology
    In-Person
  • Momentum Systems Support Specialist (On-Site)
    $51K — $121K *
    Arlington, VA 22204 (Arlington County)
    Information Technology
    In-Person
  • Java Developer
    $65K — $115K *
    Toronto, ON M3C 0E3
    Information Technology
    In-Person

More Information Technology Jobs

Find similar Senior Java Developer jobs: