Security Architect
- Montréal, QC
- On-site
- Posted Sep 3, 2026
- 1 position
Opens an external site
- Employment type
- Contract
- Experience level
- Lead · 10+ years
- Minimum education
- Bachelor’s degree
- Apply by
- Oct 3, 2026
- Posting language
- English
- Working hours
- 40 hours per week
- Seniority
- Mid-Senior level
- Application method
- Direct apply is available
Job summary
Design and implement secure, automated solutions across cloud and application ecosystems by integrating security controls into CI/CD pipelines. Collaborate with engineering teams to embed secure-by-design principles and leverage AI for threat detection and risk management.
Job details
About the Company: As a leading organization in the tech industry, we are committed to innovation and excellence. Our mission is to provide secure and scalable solutions that empower businesses to thrive in a digital world. We foster a culture of collaboration, diversity, and continuous learning. About the Role: As a Senior Security Architect your role will be to design and implement secure, scalable, and automated solutions across our cloud and application ecosystems. This role blends cybersecurity architecture, DevOps automation, and emerging AI capabilities to ensure security is embedded throughout the software development lifecycle (SDLC). You will collaborate closely with engineering, DevOps, and delivery teams to build secure-by-design systems, leveraging automation and intelligent tooling to proactively manage risks. Responsibilities: Integrate security controls into CI/CD pipelines (SAST, DAST, SCA, secrets scanning). Build and maintain security automation using scripting and Infrastructure-as-Code (IaC) tools. Implement policy-as-code and automated compliance validation. Apply enterprise and cloud security architectures aligned with business and compliance requirements. Apply zero-trust principles across identity, network, and workloads. Leverage AI tools to enhance threat detection, anomaly detection, and alert triage. Evaluate and secure AI pipelines and models. Explore automation using AI-assisted security operations. Partner with Delivery teams to embed secure coding practices. Act as a security advisor during system design and architecture discussions. Provide guidance on cloud security posture management and risk mitigation. Contribute to security standards, frameworks, and governance. What Success Looks Like: Security controls seamlessly integrated into CI/CD pipelines. Reduced vulnerabilities through automated detection and remediation. Adoption of AI-driven security insights to improve response time. Secure and scalable architectures supporting business innovation. Qualifications: Bachelor’s degree in one of the following: Cybersecurity, Computer Science / Software Engineering, Information Technology OR equivalent practical experience (typically 5+ years in security, development, or DevSecOps). Minimum of 7-10 years of experience in DevOps, Site Reliability Engineering (SRE), or Software Engineering roles. 3–7 years of relevant experience in at least one area: Application Security (AppSec), DevSecOps / DevOps security, Secure software development. Proven experience in Implementing and managing application scanning tools (SAST, DAST, SCA), Integrating security into CI/CD pipelines and working closely with development and engineering teams. Hands-on experience with SAST, SCA, IAC & DAST. Experience with CI/CD Tools, scripting, and practical understanding of major languages. Basic understanding AI assisted security tools for triage and scanning optimization. Experience with automated vulnerability management workflows. Required Skills: Hands-on experience with: SAST, DAST, SCA and Secrets scanning tools. Ability to tune scans (reduce false positives/negatives), Customize rules and policies and Correlate findings across tools. DevSecOps and automated gating policies integration. Risk analysis and vulnerabilities management. Deep Application security expertise. Strong Knowledge of secure coding practices across different languages. Ability to translate scan results into architectural improvements. Automation and AI in scanning. Ability to translate technical results into risk narratives. Preferred Skills: Experience with advanced AI tools for security operations. Familiarity with cloud security frameworks and compliance standards. Equal Opportunity Statement: We are an equal opportunity employer and are committed to creating a diverse and inclusive workplace. We encourage applications from all qualified individuals regardless of race, gender, age, sexual orientation, disability, or any other characteristic protected by law.
What you’ll do
Design and implement secure, automated solutions across cloud and application ecosystems by integrating security controls into CI/CD pipelines. Collaborate with engineering teams to embed secure-by-design principles and leverage AI for threat detection and risk management.
Requirements
Requires a bachelor's degree or equivalent experience with 7-10 years in DevOps/SRE and 3-7 years specifically in Application Security or DevSecOps. Must have hands-on experience with scanning tools (SAST, DAST, SCA) and integrating security into automated pipelines.
Listed skills
- Software · Preferred
- Technical · Preferred
- CI/CD · Preferred
- analysis · Preferred
- Organization · Preferred
- Reliability · Preferred
- Collaboration · Preferred
- Attention to detail · Preferred
- Teams · Preferred
- Compliance · Preferred
- management · Preferred
- Development · Preferred
Other relevant skills
Identified from the job description. Confirm important requirements above.
- SAST
- DAST
- SCA
- Secrets Scanning
- DevSecOps
- CI/CD Pipelines
- Infrastructure-as-Code
- Zero Trust
- AI Security
- Cloud Security Architecture
- Risk Analysis
- Vulnerability Management
- Secure Coding
- Policy-as-Code
- Scripting
- Application Security
Job areas
- Security & Safety
- Technology
- Software
- Engineering
- Consulting
More jobs you can apply to directly
Similar opportunities posted by employers hiring on Jobs.ca, with no external application form.
TUAC 501
Adjoint juridique
SponsoredDirect employerEasy Apply- Hybrid
- Montréal, QC
- Posted Sep 24, 2026
SOQUIJ
Conseiller(ère) en gestion financière
Direct employerEasy Apply- Hybrid
- Montréal, QC
- Posted Sep 23, 2026
BC Public Schools
Manager, Financial Planning and Analysis
SponsoredDirect employerEasy Apply- On-site
- Victoria, BC
- Posted Sep 18, 2026
