Global Relay

Technology

ApplicationandProductSecurityPrincipal

CA$125–160k Vancouver, British Columbia, Canada FULL TIME
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Principal candidates.

The Brief

“Application and Product Security Principal at Global Relay. Skills: Application security, Product security, DevSecOps, Vulnerability management. Lead DevSecOps areas. Integrate security practices”

Industry & Context.

Technology
Problems you'll solve

Methodical approach; Creative approach

What They're Looking For.

Must Have

8+ years application security experience, Expert knowledge software security, Experience with OWASP, Experience with Mitre, Experience with NIST SP800-115, Experience with SAST, Experience with DAST, Experience with SCA, Experience with Python, Experience with Java, Experience with Bash, Experience with PowerShell, Experience with Puppet, Experience with Ansible, Experience with Git repositories, Experience with Jenkins, Experience with Docker/Podman, Experience with CI/CD technologies, Experience with OpenShift/Kubernetes, Experience with API security

What You'll Do.

Integrate security practices

Partner with engineering teams

Partner with platform teams

Partner with product teams

Embed automated controls

Embed secure design principles

Embed continuous assurance

Lead security sessions

Analyze security reports

Mitigate identified vulnerabilities

Develop automated security framework

Deploy automated security framework

Leverage scripting languages

Leverage open-source solutions

Embed security practices

Embed DevSecOps practices

Integrate security tools

Prevent vulnerabilities

Shift-left security testing

Provide technical expertise

Support DevSecOps tasks

Review vulnerability data

Identify security risks

Address false positives

Investigate security issues

Determine steps for reproduction

Determine scope of vulnerabilities

Provide encouragement to team members

Identify training needs

Build security culture

Improve security efficacy

Oversee team member work

Create security documentation

Create developer training material

Improve test case documentation

Improve test case grouping

Act as subject matter expert

Lead selection of scanning tools

Lead deployment of scanning tools

Lead management of scanning tools

Develop competency in OWASP Top 10

Derive new test methodologies

Identify lacking security test coverage

Improve security test coverage

Provide suggestions for improvements

See improvements through to completion

How You'll Work.

Team & Collaboration

Partner with engineering; Partner with platform; Partner with product; Work with developers

Communication Scope

Verbal communication; Written communication

Process & Methodology

Agile delivery methodology

Full Job Description

Who we are: For over 25 years, Global Relay has set the standard in enterprise information archiving with industry-leading cloud archiving, surveillance, eDiscovery, and analytics solutions. We securely capture and preserve the communications data of the world’s most highly regulated firms, giving them greater visibility and control over their information and ensuring compliance with stringent regulations. Though we offer competitive compensation and benefits and all the other perks one would expect from an established company, we are not your typical technology company. Global Relay is a career-building company. A place for big ideas. New challenges. Groundbreaking innovation. It’s a place where you can genuinely make an impact – and be recognized for it. We believe great businesses thrive on diversity, inclusion, and the contributions of all employees. To that end, we recruit candidates from different backgrounds and foster a work environment that encourages employees to collaborate and learn from each other, completely free of barriers. Your role: The Application & Product Security Principal is responsible for leading the DevSecOps areas of application security, application vulnerability scanning and other daily security and compliance efforts. This role is positioned between software engineering, security and operations, driving the integration of robust security practices into every stage of the software development lifecycle. As a senior member of the Application & Product team you will input into strategy, standards and partner closely with engineering, platform and product teams to ensure security is built-in and aligned with business objectives. You will champion a proactive, risk-based approach to security, embedding automated controls, secure design principles and continuous assurance into the development pipelines. You will lead security sessions for development engineering teams with focus on risks, security report analysis, mitigations of identified vu

Free ATS check

Applying for this Application and Product Security Principal role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

ANONYMOUS · UNFILTERED

What do employees actually say about Global Relay?

Real rants from real employees. Read before you apply.

Read Company Rants →