Hiring.Camp

Application Security, Senior Specialist

Interac Corp.

·

Today

Salary
$85k – $105k
Location
Interac Corp. Head Office, Canada
Type
Full-time
Department
Security
Seniority
Senior
Experience
5+ years
Source
Workday

Description

Who We Are:

 

Every transaction matters. Every Canadian matters. At Interac, we protect both — driving trust, security, and inclusion, so our digital economy thrives.
 
Founded in 1984, Interac connects Canadians through secure digital payments, advanced identity verification and industry-leading fraud protection. Connecting banks, businesses, and individuals, Interac enables millions to send, receive, and manage money safely and effortlessly every day — across both digital and physical environments.

 

As the backbone of Canada’s financial ecosystem, Interac facilitates over 20 million transactions daily, supported by trusted partnerships with government and financial institutions. Consistently ranked as Canada’s most reputable financial technology brand, Interac is deeply embedded in the daily lives of Canadians.

Who You Will Work With:

The Application Security, Senior Specialist will play a critical role in safeguarding our ecosystem by ensuring that our applications are designed, built, and deployed securely. You will work closely with engineering, product, cloud, and security teams to embed security into the software development lifecycle, model threats associated with the application, identify and assist engineering in mitigating vulnerabilities during build, reduce security defects into prod, and champion secure‑by‑design principles across the organization.

What You Will Do:  ​

Secure Development Lifecycle (SDLC) Enablement

  • Embed security controls and best practices into all phases of the SDLC.

  • Conduct secure design reviews, threat modeling, and architecture assessments for new and existing applications.

  • Partner with engineering teams to ensure secure coding practices and frameworks are consistently applied.

  • Provide guidance on secure API design, microservices security, and cloud‑native application patterns.

Vulnerability Identification & Remediation

  • Perform application security assessments, including static/dynamic analysis, dependency scanning, and manual code review.

  • Triage, prioritize, and track remediation of vulnerabilities across web, mobile, and backend systems.

  • Collaborate with development teams to provide actionable remediation guidance and validate fixes.

  • Support penetration testing activities and coordinate follow‑up actions.

Security Tooling, Automation & DevSecOps

  • Maintain and optimize AppSec tools such as SAST, SCA, DAST, secrets scanning, and container security platforms.

  • Integrate security tooling into CI/CD pipelines to enable automated, scalable security testing.

  • Identify opportunities to improve automation, reduce friction, and enhance developer experience.

Risk Assessment, Governance & Compliance

  • Assess application‑level risks and contribute to enterprise risk reporting.

  • Ensure application security practices align with regulatory requirements and industry standards (e.g., PCI DSS, SOC 2, OWASP).

  • Support audit activities by providing evidence, documentation, and subject‑matter expertise.

CrossFunctional Collaboration & Security Advocacy

  • Act as a trusted advisor to engineering, product, and cloud teams on application security matters.

  • Deliver training, workshops, and secure coding sessions to elevate security awareness across the organization.

  • Communicate complex security issues in a clear, actionable way to both technical and non‑technical stakeholders.

  • Stay current with emerging threats, vulnerabilities, and security technologies, and proactively assess their impact on the organization.

What You Bring: 

  • 5+ years of experience in application security, software security engineering, or related roles within FinTech, SaaS, or cloud‑native environments.

  • Strong understanding of modern application architectures (microservices, APIs, containers, serverless).

  • Expertise in DevSecOps practices and SSDLC frameworks

  • Hands‑on experience with SAST, SCA, DAST, secrets scanning, and CI/CD security tooling.

  • Proficiency in at least one programming language (e.g., Java, Python, JavaScript, Go) and familiarity with secure coding practices.

  • Experience performing threat modeling, code reviews, and vulnerability assessments.

  • Knowledge of cloud security principles (AWS, Azure, or GCP).

  • Familiarity with OWASP Top 10, CWE, NIST, and other security frameworks.

  • Strong communication skills and the ability to influence without authority.

  • A proactive, problem‑solving mindset and a passion for building secure, resilient systems.

  • Cybersecurity certifications such as CISSP, CSSLP, CCSP, OSCP

  • Eligibility to work for Interac Corp. in Canada in a full-time capacity.   

What We’re Offering: 

The hiring range for this position is $85,000 - $105,000, and you will also be eligible for our short-term incentive plan. The exact amount will depend on factors such as skills, experience, and job-related knowledge, but Interac’s commitment goes beyond compensation. Our Total Rewards package is designed to support your well-being and future, and includes: 

  • Generous vacation and wellness days to help you recharge 

  • Comprehensive employer-paid benefits coverage for peace of mind 

  • Market-leading employer-funded RRSP program to invest in your future 

  • Flexible hybrid work model for better work-life balance 

  • Access to a free and confidential 24/7 employee & family assistance program to offer support for you and your immediate family 

  • Pregnancy and parental leave top-up to support growing families 

  • Charitable donation matching with United Way to amplify your impact

Why Join Us?

 

At Interac, the impact we make, and the people who drive it, is profound. When you become part of our team, you’re joining a purpose-driven organization that’s shaping the future of digital finance in Canada. Here’s what you can expect:

  • Investing in the Future – Help us unlock digital prosperity for all Canadians.

  • Innovative Thinking – Collaborate on products, practices, and platforms that redefine what’s possible.

  • Inclusive Culture – Be empowered to bring your whole self to work and realize your full potential.

  • Inspiring Community – Work in an ecosystem where we lift each other up and rise together.

  • Intentional Support – Enjoy flexible, supportive offerings that prioritize your total wellness.

Additional Pre-Employment Requirements:

 

To ensure the integrity of our organization, successful candidates will be required to complete background checks, which may include, Canadian Criminal Credit Check, Canadian ID Cross-Check, Public Safety Verification, 5-year Employment Verification, Education Verification, Credit Check, and Social Media Check.

Equal Opportunity Employer

 

Interac is also an equal opportunity employer committed to fostering a diverse and inclusive workplace. We believe that innovation thrives when people from different backgrounds, experiences, and perspectives come together. That’s why we are committed to providing fair and equitable employment opportunities for all individuals, without discrimination based on race, color, ancestry, ethnic origin, place of origin, citizenship, creed, sex, sexual orientation, gender identity or expression, age, marital or family status, disability, or any other characteristic protected by applicable law.

 

If you require accommodation during any stage of the application or recruitment process, please contact us at [email protected]. We will work with you to meet your needs.

 

Please be aware that certain individuals are misusing Interac Corp.’s name and logo to promote fictitious employment opportunities. Interac Corp. never requests, solicits, or accepts any form of payment in exchange for employment. Any such offers are fraudulent and should be disregarded. Interac Corp. assumes no liability for any claims, losses, damages, expenses, or inconveniences arising from or related to these fraudulent activities. Such communications do not constitute an offer or representation by Interac Corp. or its subsidiaries and affiliates.

Skills

PythonJavaScriptJavaAWSAzureGCPCI/CDCybersecurityPenetration TestingSOCMicroservicesComplianceSOC 2CISSPGo

Similar Jobs

30

Senior Security Engineer I, Application Security

Flywire · Bengaluru, KA, India · Hybrid

Today

Sr. Application Security Engineer

Click Here to Learn More · United States, United States of America

4 days ago

Senior Application Security Engineer

Charterup · Austin, Texas +1 · Remote, Hybrid, Onsite

1 week ago

Senior Security Engineer II - Application Security

Aledade · Washington DC · Remote

1 week ago

Senior Application Security Engineer

NYC Department of City Planning · New York City, NY, United States

1 week ago

Sr. Engineer, Application Security - USA Remote

Danaher · USA - Remote, United States of America · Remote

1 week ago

Sr Security Application Support Engineer

Cibc · Toronto-81 Bay, 15th Floor, Canada

1 week ago

Senior Security Engineer, Application Security

Faire · Kitchener-Waterloo, ON; Toronto, ON +2

1 week ago

Senior Application Security Engineer

Starburst · Boston, MA +1

2 weeks ago

Senior Security Engineer I, Application Security

Flywire · Bengaluru, KA, India · Hybrid

2 weeks ago

Senior Application Security Engineer

Wilson Elser - Business & Legal Professionals · New York, New York

2 weeks ago

Senior Application Security Engineer

ServiceNow · Petah Tikva, Israel · Hybrid

2 weeks ago

Senior Application Security Engineer

Technosylva

2 weeks ago

Senior Application Security Engineer

Guild Mortgage · Remote · Remote

2 weeks ago

Application Security Senior Consultant (Remote)

Crowdstrike · USA TX Remote, United States of America · Remote

2 weeks ago

Senior Application Security Engineer

We are hiring! · Krakow, Poland

2 weeks ago

Senior Application Security Engineer

Redgate · Cambridge · Hybrid

2 weeks ago

Founding Member, Senior AI & Application Security Specialist (Delhi NCR - Hybrid)

J.S. Held · Delhi, DL, India · Hybrid

2 weeks ago

Senior Application Security Engineer

Siftstack · Marina Del Rey, CA · Hybrid

2 weeks ago

Senior Application Security Architect, Enterprise Technology

ONEX · Toronto, Ontario, Canada

2 weeks ago

Senior Application Security Manager (Vaga Afirmativa Para Mulheres)

Ifoodcarreiras · Remoto +1

3 weeks ago

Senior Application Security Engineer

Tripadvisor · London, United Kingdom +2

3 weeks ago

Sr Application Security Engineer

Nelnet as the nation · Remote - Nebraska, United States of America +1 · Remote

3 weeks ago

Sr Application Security Engineer - Cyber Security

Sands · Dallas, Texas, United States of America

3 weeks ago

Senior Engineer, Application Security

Danaher · IND - Pune - Pall India Pvt Ltd +1 · Onsite

3 weeks ago

Senior Network Engineer - Application Delivery & Security

Teraswitch · Pittsburgh, PA or Hybrid · Hybrid

3 weeks ago

Oracle Application Security & Controls Sr Associate

Pwc · Atlanta - 1075 Peachtree Street NE, United States of America +14

3 weeks ago

Senior Application Security Engineer II

Relayfi · Toronto, ON · Hybrid

4 weeks ago

Sr. Application Security Engineer

Lplfinancial · Fort Mill/Charlotte, United States of America +4

4 weeks ago

Senior Security Engineer - Application Security

Khealthcareers · New York, NY

1 month ago