Security Developer

Security Developer

Pay Rate: $58.82/hour, depending on experience

Contract Length: 3 Months

Location: Calgary, Alberta – open to remote Candidates

Raise is currently hiring a Security Developer on behalf of our client. They’re expanding their team to meet growing needs, making this a unique opportunity to work with an industry leader. Our Client is a market leading financial institution

Note: The primary pay rate is based on T4 classification; however, we will also consider applications from candidates interested in an INC classification, where applicable.

Description

Security Developer in this role will join our clients growing security engineering team. In this role, you will play a pivotal part in our Threat Intelligence & Security Configuration Project, driving advanced technical assessments, simulating sophisticated threats, and fortifying our financial infrastructure against emerging cyber risks. You will bridge the gap between deep technical vulnerability analysis and cross-functional business execution, ensuring our security posture remains resilient and dynamic.

Responsibilities

  • Advanced Threat Emulation & Testing: Execute hands-on penetration testing across web applications, APIs, networks, and cloud environments. Design and conduct complex red team operations to validate organizational detection and response capabilities against real-world adversary tactics.
  • Crisis Simulation & Tabletop Leadership: Design and facilitate strategic enterprise-wide crisis simulations and tactical, team-specific tabletop exercises to enhance corporate communication and refine incident response playbooks.
  • Vendor Governance & Lifecycle Management: Govern external third-party penetration testing vendors by defining technical scopes, establishing Rules of Engagement (ROEs), and validating final findings for organizational risk acceptance.
  • Cross-Functional Risk Translation: Bridge the gap between technical security and business units by translating complex vulnerabilities into clear business risks, driving cross-functional remediation with non-technical stakeholders.
  • Remediation Governance & Defensive Sync: Partner with blue teams and engineering to provide technical remediation guidance, validate security fixes, and translate assessment findings into prioritized engineering action items.
  • Operational Optimization & Tooling: Author high-quality technical documentation (standard operating procedures and runbooks) and develop custom automation scripts to continuously scale assessment efficiency.         

Qualifications

  • 3+ years of hands-on professional experience in information security, application security, penetration testing, or offensive security roles (preferably within financial services or regulated enterprise environments).
  • Deep expertise in identifying and exploiting OWASP Top 10 vulnerabilities in complex web applications and modern API architectures.
  • Proficiency in internal/external network assessments, lateral movement techniques, and infrastructure hardening.
  • Demonstrated hands-on security experience with GCP (Google Cloud Platform) or other major cloud infrastructure providers (AWS, Azure).
  • Exceptional capability in drafting clear, actionable technical documentation, executive summaries, and standard operating procedures (SOPs).
  • Strong understanding of threat intelligence feeds, adversary tactics (e.g., MITRE ATT&CK framework), and security configuration baselines.
  • Ability to script and automate routine testing or reporting tasks using languages such as Python, Bash, or Go.
  • Outstanding communication skills with the ability to translate highly technical findings into business risks for non-technical stakeholders.
  • Education and Certifications
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field (or equivalent practical industry experience).
  • Industry-recognized security certifications such as OSCP (Offensive Security Certified Professional), GPEN, GWAPT, PNPT, or cloud security certifications (e.g., Google Professional Cloud Security Engineer).

Additional Information

  • A requirement for candidates to be considered for this role will be to complete a criminal and credit check (including Canadian Credit Risk Score) 

Looking for meaningful work? We can help!

Raise is an established hiring firm with over 65 years of experience. We believe strongly in making the world a better place through work, which is why we’re a certified B Corporation and donate 10% of our profits to charity.

We strive to build teams that reflect the diversity of the communities we work in. We encourage all qualified applicants to apply, including people from traditionally underrepresented groups such as women, visible minorities, Indigenous peoples, people identifying as LGBTQ2SI, veterans, and people with visible/nonvisible disabilities.

We have a dedicated webpage for accommodations where you can learn more about what we offer and request accommodation: https://raise.jobs/accommodations/

In order to submit candidates for roles, our clients will sometimes require personal information to confirm the identity of applicants and their legal status to work. Raise will never ask you for personal or banking information unless you have been selected for a job. If you are ever unsure about the legitimacy of this or any other Raise job posting (or have any other questions), please contact us at +1 800-567-9675 or hello@raiserecruiting.com.

#WES

#LI-SC1

Security Developer

Similar job opportunities:

When you apply for a job with us, you consent to the use of automated screening tools — including voice and text analysis — for this job and future jobs with Raise. These tools help us review resumes, assess qualifications, and make initial recommendations; however, all final reviews and hiring decisions are made by people. Questions? Contact us at hello@raiserecruiting.com

Search all jobs:

Search jobs by title or keyword
Click here

Keep exploring!