Description
Job Title: Security Engineer (DevSecOps)
Duration: 12 months (Possibility of extension/conversion)
Location: Markham, ON (Hybrid โ 2 days a week)
Scope of Project: automation project (new features, maintenance, bug fixes)
Team Size/Culture: 7 people
Required Degree/Level of Education: Post secondary is an asset
Certifications Required: CISSP is an asset
Required Years of Overall Experience: 8+ years of experience
The Crypto Solution Validation Team is responsible for the cryptographic solution certification, design, develop and deploy enterprise cryptographic automation solution.
The team plays a critical role in safeguarding organizational data and systems by delivering secure, scalable, and automated cryptographic services.
This includes automating key management, certificate lifecycle management, encryption processes, and other cryptographic operations to improve efficiency, reliability, and the organization's overall security posture.
The team works closely with enterprise DevOps team, Crypto Requirements Team, Crypto Operations Team, and Security Architecture Team to ensure cryptographic solutions are certified, operationally sustainable, and aligned with enterprise security standards and strategic objectives.
Key Responsibilities
Automation Design and Development
Design, develop, test, and deploy automated solutions and workflows for cryptographic services and operations, including:Certificate lifecycle management (issuance, renewal, revocation, and compliance monitoring).Symmetric and asymmetric key generation, distribution, rotation, escrow, and retirement.Integration with enterprise-approved key management and certificate management platforms.
Cryptographic Service Integration
Develop APIs, automation frameworks, and reusable tools that enable seamless integration of cryptographic services (encryption, decryption, digital signing, verification, and key management) into enterprise applications, infrastructure platforms, and CI/CD pipelines.
Cryptographic Solution Certification
Evaluate, validate, and certify cryptographic products, platforms, and integrations to ensure they meet enterprise security, risk, compliance, and operational requirements.Develop certification standards, test plans, and implementation guidance to support enterprise adoption of approved cryptographic solutions.
Tooling and Software Development
Develop and maintain high-quality, secure, and maintainable code using languages such as Python, PowerShell, and Bash.Leverage modern automation and orchestration platforms to accelerate cryptographic service delivery and reduce operational risk.
Documentation and Standards
Produce and maintain comprehensive technical documentation, including automation workflows, operational procedures, certification artifacts, and configuration standards.Contribute to enterprise cryptographic standards, best practices, and governance requirements.
Must-Have Skills:
8+ years of security related technology experience3+ years of experience in Security Engineering, DevSecOps, SRE, Infrastructure Engineering, or Software Engineering with a strong focus on automation and security.5+ years of scripting/programming languages, including Python, PowerShell, and Bash.5+ years of experience with automation and Infrastructure-as-Code tools such as Ansible, Terraform, Jenkins, GitHub Actions, or equivalent platforms.Soft Skills:
Strong communication skills (written and verbal)Strong time management, priority management skillsAttention to detail and someone who is a self-starter and adaptableNice-To-Have
CISSP certificationExperience designing and implementing automation solutions for certificate lifecycle management and cryptographic operations.Strong understanding of cryptographic fundamentals, including:Symmetric and asymmetric encryptionKey management and lifecycle managementPublic Key Infrastructure (PKI)TLS/SSLDigital signatures and hashing algorithmsExperience supporting Linux and/or Windows server environments