Base Career helps you apply smarter for this job.
Key skills for this role
As Canada’s leading integrated freight, package, and logistics provider, we’ve been helping promises get where they need to be for more than 60 years. How does the magic happen? The journey starts with you . The places we go, the elements we brave, the promises we deliver – it’s all possible because of our people. So, whether you’re looking to build new skills, make an impact in your community, or inspire your team, we go there for you.
Purolator is one of Canada’s leading integrated freight, package, and logistics solutions providers, delivering dependable service to customers across the country. Security is a core enabler of Purolator’s digital and operational strategy. The Information Security Office partners closely with technology and business teams to protect Purolator’s systems, data, and customers while enabling innovation and secure delivery at scale.
The Senior Application Security Analyst is responsible for embedding security into the software development lifecycle (SDLC) by partnering closely with application and engineering teams. This role focuses on identifying, assessing, and reducing application and API security risk through threat modeling, secure design reviews, vulnerability management, and the operationalization of application security controls.
The successful candidate will act as a subject matter expert for application security, providing hands‑on guidance to development teams while helping mature secure development practices across the enterprise.
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
Truro, CAN
It’s not a package. It’s a promise®. As Canada’s leading integrated freight, package, and logistics provider, we’ve been helping promises get where they need to be for more than 60 years. How does the magic happen? The j
Etobicoke, CAN
It’s not a package. It’s a promise®. As Canada’s leading integrated freight, package, and logistics provider, we’ve been helping promises get where they need to be for more than 60 years. How does the magic happen? The j
Mississauga, CAN
It’s not a package. It’s a promise®. As Canada’s leading integrated freight, package, and logistics provider, we’ve been helping promises get where they need to be for more than 60 years. How does the magic happen? The j
, CAN
It’s not a package. It’s a promise®. As Canada’s leading integrated freight, package, and logistics provider, we’ve been helping promises get where they need to be for more than 60 years. How does the magic happen? The j
, CAN
It’s not a package. It’s a promise®. As Canada’s leading integrated freight, package, and logistics provider, we’ve been helping promises get where they need to be for more than 60 years. How does the magic happen? The j
, CAN
It’s not a package. It’s a promise®. As Canada’s leading integrated freight, package, and logistics provider, we’ve been helping promises get where they need to be for more than 60 years. How does the magic happen? The j
, CAN
, CAN
Truro, CAN
Etobicoke, CAN
Mississauga, CAN
, CAN
, CAN
, CAN
Embed security requirements and controls early in the SDLC (“shift left”) by working directly with development and delivery teams
Support the integration and tuning of Static Application Security Testing (SAST), Software Composition Analysis (SCA), secret scanning, Dynamic Application Security Testing (DAST) and other application security tooling within CI/CD pipelines
Provide secure coding guidance and recommendations based on OWASP Top 10 and industry best practices
Develop and maintain clear, reusable documentation and standardized frameworks to enable consistent adoption of application security practices across teams
Triage and assess application security findings from automated tools, penetration tests, and manual reviews
Partner with application teams to prioritize remediation based on risk, exploitability, and business impact
Act as a trusted security advisor to application owners, architects, and developers
Contribute to the development and maintenance of application security standards, patterns, and guidance documentation
Support third‑party assessments and security reviews for externally developed or hosted applications
Identify opportunities to improve application security processes, tooling, and governance
Stay current with emerging application security threats, vulnerabilities, and defensive techniques
Canadian courier, freight and logistics provider serving businesses and consumers across Canada and the United States.
Visit company websiteJobs and hiring trendsFull-time
Senior · 5+ years experience
Onsite
Apply faster on company sites with our extension.