
Application Security Analyst (1860)
Focus Systems is seeking experienced
Application Security Analyst(s)
to join the Cybersecurity & Risk Management (CSRM) Branch.
If you’re a hands-on security professional with strong application security expertise and a passion for protecting enterprise systems—this is a high-impact, long-term opportunity.
Key Details
• Location:
Onsite in Regina, SK (mandatory)
• Start: June 2026 - Jun 2029 (3-year contract)
• Work Model: Full-time, onsite
Role Overview
You will support enterprise cybersecurity operations by performing
application security assessments, threat risk analysis, and vulnerability management
across government systems. This role plays a critical part in protecting public-facing services and ensuring secure application development and deployment practices.
Key Responsibilities
• Conduct application security testing and vulnerability assessments
• Perform Threat Risk Assessments (TRAs) for IT initiatives
• Identify, assess, and mitigate application and infrastructure risks
• Provide security guidance for solution design and procurement
• Support incident response and security investigations
• Evaluate emerging threats, vulnerabilities, and security controls
• Promote secure development practices and DevSecOps integration
Mandatory Qualifications
✔ CISSP
or
Certified Ethical Hacker (CEH) certification (must provide copy)
✔ Ability to work
100% onsite in Regina, SK
⭐
Key Evaluation Criteria (Scored Requirements)
• Experience in
application & information security risk identification and mitigation
• Strong knowledge of
web protocols (HTTP, HTTPS, SOAP)
• Experience with
web technologies
(HTML, JavaScript, XML, JSON, REST, AJAX)
• Hands-on experience with
OWASP standards and security testing tools
• Experience with
vulnerability scanning, analysis, and risk management programs
• Experience with
static & dynamic application security testing (SAST/DAST)
• Knowledge of
Secure SDLC and DevSecOps practices
• Experience with
cloud security and modern application architectures
• Understanding of
network infrastructure, DNS, routing, and security controls
• Familiarity with
ISO 27002 or equivalent security frameworks
Application Deadline:
Please complete your initial application by
Apr 23, 2026, at 11:00 PM CST.
Only candidates selected to proceed to the next stage will be contacted and invited to complete their application package.