×
Register Here to Apply for Jobs or Post Jobs. X

Senior IT Security Advisor (Application Security

Job in Mississauga, Ontario, Canada
Listing for: goeasy Ltd.
Full Time position
Listed on 2026-08-20
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, IT Consultant, Security Management & Operations
Job Description & How to Apply Below
Position: Senior IT Security Advisor (Application Security)

Join one of Canada’s fastest-growing companies and be part of something extraordinary – welcome to goeasy
! At goeasy, our people and culture are at the heart of everything we do, and we’re proud to be recognized for it. We’ve earned prestigious accolades such as Waterstone Canada’s Most Admired Corporate Cultures
, Canada’s Top Growing Companies
, and the TSX
30

, highlighting us as one of the top performers on the TSX. We’re also honoured to be named a Greater Toronto Top Employer and recognized by Great Place to Work® as having the Best Workplaces for Women &
Most Trusted Executive Teams
, and included on TIME Magazine’s 2025 list of Canada’s Best Companies
. These honours reflect our commitment to fostering an inclusive, high-performance culture where talent thrives and innovation drives us forward.

As one of Canada’s leading alternative consumer lenders, we’re passionate about helping everyday Canadians create a brighter future. Our vision is to provide a path to a better tomorrow, today. We offer a full range of products, including non-prime leasing, unsecured and secured loans, and point-of-sale financing through easyhome
, easyfinancial
, and Lend Care
.

If you're seeking an exciting, high-growth environment where your contributions truly matter, we want to hear from you! Join us, and together, let's create a future of financial empowerment.

The Senior IT Security Advisor, Application Security plays a critical role in protecting and enabling goeasy's technology landscape. As a senior security expert, you'll lead security assessments, influence architecture decisions, and partner with teams across the organization to embed security into every stage of the development and delivery lifecycle.

You'll serve as a trusted advisor to business and technology stakeholders, helping identify and manage security risks across applications, cloud platforms, infrastructure, networks, and strategic technology initiatives. Combining strong technical expertise with a pragmatic, risk-based approach, you'll drive security best practices, mature application security capabilities, and help ensure goeasy continues to deliver innovative solutions securely and confidently.

What will you be doing?

  • Lead security risk assessments for applications, infrastructure, cloud, network, and enterprise technology initiatives using ISO 27001, NIST, PCI DSS, SOC 2, and internal security standards to identify, assess, document, and communicate security risks and remediation strategies.
  • Conduct security architecture and design reviews to ensure solutions align with organizational security standards, regulatory requirements, and industry best practices.
  • Perform threat modelling, vulnerability analysis, and impact assessments to identify risks and recommend appropriate mitigation strategies.
  • Partner with engineering, infrastructure, architecture, and business teams to provide security guidance throughout project lifecycles.
  • Present security findings, risk recommendations, and remediation plans to technical and non-technical stakeholders.
  • Promote Security by Design principles throughout project delivery lifecycles and enterprise technology initiatives.
  • Champion Secure Software Development Lifecycle (SSDLC) practices, including secure coding standards, shift-left security, automated testing, and CI/CD integration.
  • Manage and mature application security programs, including SAST, SCA, DAST, penetration testing, vulnerability management, and API security.
  • Manage third-party application security testing activities, validate findings, and drive remediation efforts based on risk.
  • Identify security gaps across the technology landscape and recommend scalable, practical solutions to strengthen goeasy's security posture.
  • Act as a trusted advisor on information security, privacy, compliance, and risk management matters.
  • Evaluate existing security technologies and processes, recommending improvements that enhance efficiency, effectiveness, and security maturity.
  • Support and maintain security controls and compliance initiatives, including PCI DSS, SOC 2, Bill 198, and other regulatory requirements.
  • What experience do you have?

  • Bachelor's degree in Computer Science,…
  • Position Requirements
    10+ Years work experience
    Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
    To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
     
     
     
    Search for further Jobs Here:
    (Try combinations for better Results! Or enter less keywords for broader Results)
    Location
    Increase/decrease your Search Radius (miles)
    0
    200
    Filters
    Education Level
    Experience Level (years)
    Posted in last:
    Salary