Application & API Security Consultant at Procom
Toronto, ON, Canada -
Full Time


Start Date

Immediate

Expiry Date

14 Nov, 25

Salary

0.0

Posted On

14 Aug, 25

Experience

4 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Csslp, Kubernetes, Coding Practices, Graphql, Nist, Testing Tools, Aws, Docker, Azure, Soap, Cissp

Industry

Information Technology/IT

Description

APPLICATION & API SECURITY CONSULTANT:

On behalf of our Banking client, Procom is searching for an Application & API Security Consultant for a 6-month role. This position is a hybrid position with 4 days onsite at our client’s Toronto office.

APPLICATION & API SECURITY CONSULTANT - JOB DESCRIPTION:

As an Application & API Security Consultant, you will play a crucial role in the API Protection Platform Rollout project. This involves deploying a new API Runtime Protection solution and collaborating with cross-functional teams to ensure seamless integration across cloud and on-prem environments, enhancing the organization’s security posture.

APPLICATION & API SECURITY CONSULTANT - MANDATORY SKILLS:

  • Security certifications such as CISSP, CSSLP, CASP, CEH, or Certified DevSecOps Engineer
  • 4 years of experience in Application & API security or DevSecOps
  • Strong knowledge of API protocols/frameworks (e.g., REST, SOAP, GraphQL, gRPC) and API gateways (e.g., Apigee, Kong)
  • Understanding of OWASP API Security Top 10 and secure coding practices
  • Familiarity with Kubernetes, Docker, and CI/CD tools (e.g., Jenkins, GitHub Actions)
  • Experience working in cloud environments such as AWS, Azure, or GCP
  • Scripting skills (e.g., Python, Bash) for automation and monitoring tasks

APPLICATION & API SECURITY CONSULTANT – NICE-TO-HAVE SKILLS:

  • Knowledge of API Runtime Protection Platforms such as SALT Security, Traceable.ai, Akamai API Security
  • Experience with API Security frameworks (NIST 800-228) and API Security Testing tools (DAST, AST, etc.)
  • Knowledge of data residency requirements and compliance frameworks (e.g., GDPR, PCI-DSS, NIST CSF)
Responsibilities
  • Deploy API Runtime Protection solutions
  • Collaborate with cross-functional teams for integration
  • Develop processes, procedures, and controls for API security
  • Research industry best practices and create new documentation
  • Automate security processes and controls with engineering teams
  • Adapt to changing priorities in an Agile environment
  • Participate in daily stand-ups and provide updates to stakeholders
Loading...