19 hours ago
Halifax, CanadaSenior
Responsibilities
- Analyze and remediate application security vulnerabilities from SAST, DAST, SCA, and penetration testing assessments.
- Review security findings from Checkmarx, Fortify, AppScan, SonarQube, Veracode, and similar tools.
- Implement secure coding practices aligned with OWASP Top 10 standards.
- Perform vulnerability root cause analysis and develop sustainable remediation solutions.
- Collaborate with architects, developers, DevOps engineers, and security stakeholders to resolve findings.
- Support SSDLC initiatives and application security compliance requirements.
- Conduct security-focused peer code reviews.
- Integrate and improve automated security testing and remediation within CI/CD pipelines.
- Provide technical guidance and mentorship on secure software design and vulnerability prevention.
- Help establish application security standards and promote security awareness.
Requirements
- Bachelor’s degree in Computer Science, Information Technology, Engineering, or a related field, or equivalent professional experience.
- 5–7 years of deep expertise in application security, vulnerability remediation, and secure software development.
- Strong enterprise application development experience with Microsoft .NET Framework and/or .NET Core/.NET 8+.
- Strong knowledge of OWASP Top 10, secure coding, authentication and authorization, session management, input validation, encryption, and data protection.
- Hands-on experience with Checkmarx, Fortify, SonarQube, AppScan, Veracode, or similar security scanning platforms.
- Experience analyzing SAST, DAST, SCA, and penetration testing findings.
- Experience working in Agile software development environments.
- Strong troubleshooting, analytical, problem-solving, verbal communication, and written communication skills.
- Must be legally authorized to work in Canada without employer sponsorship now or in the future.
Benefits
- Medical, dental, vision, and life insurance.
- Paid holidays and paid time off.
- 401(k) plan and company contributions.
- Long-term and short-term disability coverage.
- Paid parental leave.
- Employee stock purchase plan.
- Applications accepted until 9/17/2026, with the posting potentially closing earlier if enough qualified applicants apply.
- Some roles may require in-person interviews at Cognizant offices or client locations.
Tech Stack
SonarQube
Categories
About Cognizant
Cognizant is a public IT services and consulting firm that designs, builds, and runs enterprise technology, including digital engineering, cloud modernization, data/AI, and managed services. It sells consulting, systems integration, and outsourcing on multi-year engagements to large enterprises in healthcare, banking, retail, communications, and manufacturing. Founded in 1994 and headquartered in Teaneck, New Jersey, Cognizant is NASDAQ-listed (CTSH) and a Fortune 500 company.
