Titre du poste ou emplacement
RECHERCHES RÉCENTES

Senior DevSecOps & AI Engineer

J M Group Inc - 38 emplois

Toronto, ON

Posté aujourd'hui

Détails de l'emploi :

Temps plein
Exécutif

We are hiring for a Senior DevSecOps & AI Engineer. This role focuses on application security, DevSecOps, cloud security, and AI/LLM security across enterprise applications and platforms.


The ideal candidate will have 6+ years of security engineering experience with strong expertise in offensive security, vulnerability management, and security automation.

What you bring

  • 6+ years of experience in Application Security, DevSecOps, Offensive Security, or Security Engineering
  • Strong experience with SAST, DAST, secure code review, and vulnerability management
  • Hands-on penetration testing experience across web, API, mobile, cloud-native, and AI-powered applications
  • Experience with AI/LLM security, including prompt injection, prompt manipulation, and jailbreak testing
  • Strong understanding of SDLC, SSDLC, DevSecOps, and MLOps practices
  • Experience securing cloud-native and AI-enabled applications
  • Strong Python scripting and security automation experience
  • Experience with Azure cloud security
  • Experience with Kubernetes, container security, and container image analysis
  • Experience with SCA and open-source security
  • Experience with GitHub security controls
  • Experience with threat modeling and risk assessment
  • Bachelor's or master's degree in Computer Science, Information Security, Cyber Security, or a related discipline
  • Any 2–3 of the specified security or cloud security certifications

What you'll do

  • Perform security assessments and penetration testing across web, API, mobile, cloud-native, and AI-powered applications
  • Conduct secure code reviews and identify application security weaknesses
  • Validate findings from SAST, DAST, SCA, and container security tools
  • Perform vulnerability analysis, root cause investigation, and remediation validation
  • Assess AI and LLM applications for security vulnerabilities and misuse scenarios
  • Evaluate AI deployment architectures and recommend security controls
  • Integrate security controls into CI/CD pipelines and deployment workflows
  • Automate security validation, reporting, and vulnerability workflows using Python
  • Perform Azure cloud security assessments
  • Review Kubernetes and containerized workloads for security risks
  • Prioritize vulnerabilities based on exploitability, business risk, and operational impact
  • Track security findings through closure and verify remediation effectiveness
  • Support security governance, compliance, and audit activities
  • Work with development, DevOps, architecture, and product teams on security best practices
  • Provide guidance on secure coding and vulnerability remediation
  • Mentor engineering teams on security-first development practices

Nice to have

  • CISSP
  • CSSLP
  • Microsoft Azure Security Engineer (AZ-500)
  • Certified DevSecOps Professional
  • Azure or AWS Cloud Security certifications

Partager un emploi :