Intact FC

Security Advisor Specialist - Web Application Protection

Intact FC Vancouver, British Columbia, Canada · CA$119K–CA$145K/yr

Insurance · 10,001+ employees

19 h ago
Senior (5-10 yrs) Full-time Canada
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The Security Advisor Specialist will design, implement, and optimize CDN and WAF security controls while managing configurations as Infrastructure as Code. They are responsible for monitoring security telemetry, investigating attack patterns, and integrating security changes into CI/CD pipelines.

What they look for

CDN WAF Terraform Infrastructure as Code Python Bash CI/CD OWASP Top 10 Network security API security DDoS mitigation Automation Security policy management Incident response Cloud security

Requirements

Candidates must have at least five years of relevant experience in information technology with a focus on enterprise web and application security. A university degree in information security, computer science, or a related field is required, along with strong expertise in Terraform and scripting languages.

Benefits

Flexible work arrangements Hybrid work model Paid time off Telemedicine Wellness account Share plan Annual bonus Employee Share Purchase Plan Defined benefit pension plan

Full description

Our employees are at the heart of everything we do. Together, we help people, businesses, and society prosper in good times and be resilient in bad times.

Our employee promise represents Intact’s commitment to you in exchange for living our Values, striving to do your best work, being open to change and investing in your career. In return, we promise to provide support, opportunities and performance-led financial rewards at a workplace where you can shape the future, win as a team and grow with us.

Pay at Intact is about much more than just salary.

  • Flexible work arrangements and a hybrid work model
  • Possibility to purchase up to 5 extra days off per year
  • Multiple benefits offered to support physical and mental wellbeing, including telemedicine, Wellness account and much more
  • Share plan & other savings: up to 12% of salary or even more (ask how you could earn guaranteed income for life)

Salary range (but not limited to):

118,700 - 145,100

Annual bonus target, based on the base salary, with a potential payout of up to double the target (subject to personal and company performance):

15%

As part of our commitment to Win As A Team, we share our success with employees through our annual bonus plan and Employee Share Purchase Plan (ESPP) – with Intact matching 50% of your net shares.

Our pension offerings provide flexibility and long-term security for our employees beyond their careers. We are one of the few companies offering the opportunity to receive guaranteed income for life via our defined benefit pension plan.

Salary for the candidate will be determined taking into consideration a number of factors including: experience, skills, qualifications, anticipated contribution to role, internal equity, etc. The salary range presented above is based on a 35-hour workweek and would represent a majority of different candidate profiles. However, we encourage candidates who may fall outside of this range to apply as well.

About the role

We’re looking for a Security Advisor Specialist to join our growing team!

What you'll do here:

  • Identify security events and risks that need to be monitored, measured, and reported.
  • Design, implement, and continuously optimize CDN and WAF security controls across enterprise environments.
  • Develop, maintain, and tune security rules aligned with industry best practices, including the OWASP Top 10.
  • Configure and enhance bot protection, DoS, and DDoS mitigation capabilities while balancing security, performance, and availability.
  • Protect web applications and APIs against common attacks and emerging threats.
  • Manage CDN and WAF configurations as Infrastructure as Code using Terraform, including reusable modules and secure configuration standards.
  • Integrate CDN and WAF changes into CI/CD pipelines with version control, peer review, automated validation, and controlled deployments.
  • Develop automated tests and scripts for security policies, configuration changes, operational tasks, and reporting.
  • Monitor WAF logs and security telemetry, investigate attack patterns, tune policies, and minimize false positives.
  • Detect configuration drift, support incident response, and maintain clear documentation for WAF architecture, policies, and operational procedures.

What you bring to the table:

  • University degree in information security, computer science, or a related field, or an equivalent combination of education and experience.
  • Minimum five years of relevant experience in information technology, including hands-on experience supporting enterprise web and application security.
  • Extensive experience administering and supporting enterprise-grade CDN and WAF platforms in complex environments.
  • Deep understanding of networking fundamentals and protocols, including TCP/IP, HTTP/S, DNS, TLS, routing, load balancing, reverse proxies, caching, and traffic flows across distributed environments.
  • Strong understanding of web traffic, application architectures, APIs, and common attack techniques.
  • Proven ability to develop, document, and enforce security policies, standards, and procedures.
  • Experience managing security policies throughout their lifecycle, including requirements gathering, implementation, testing, approvals, exception management, reviews, and retirement.
  • Strong Terraform expertise, with experience creating and maintaining reusable modules, managing environments through version control, and applying Infrastructure as Code practices to security services.
  • Proficiency in scripting and automation using Python, Bash, or similar languages.
  • Ability to interpret security events and technical data, troubleshoot complex production issues, identify root causes, and communicate practical recommendations to technical and business stakeholders.
  • Strong collaboration skills, sound judgment, and a commitment to ethical security practices.
  • Security certification would be an asset.
  • For candidates located in Quebec, bilingualism is required considering the necessity to interact on a regular basis with English-speaking colleagues across the country
  • No Canadian work experience required however must be eligible to work in Canada

#LI-Hybrid

Il s'agit d'un nouveau rôle au sein de notre équipe en pleine croissance | This role is a new member of our growing team. We are an equal opportunity employer

At Intact, our Value of respect is founded on seeing diversity as a strength. We strive to create an accessible workplace where employees feel valued, included and encouraged to share their unique perspectives.

We encourage applications from individuals who are members of equity-deserving groups, including but not limited to women, Indigenous peoples, persons with disabilities, Black people, and members of the 2SLGBTQI+ community.

As part of Intact’s commitment to reconciliation, we acknowledge that we work, meet and travel across the land currently called Canada, originally inhabited by First Nations, Metis and Inuit people. This history extends through many centuries and continues to evolve today.

We have policies to ensure equal access and participation for people with disabilities, including providing workplace adjustments (accommodations). A copy of applicable policies is available on request.

If we can provide a specific adjustment to make the recruitment process more accessible for you, please let us know when we reach out about a job opportunity. We’ll work with you to meet your needs.

Learn more about our recruitment process and your candidate journey here.

Please note that Intact does not provide sponsorship or other support for immigration-related matters including but not limited to employer-specific closed work permits. Candidates must be eligible to work in Canada from the anticipated start date and throughout their employment and are solely responsible for maintaining their work eligibility.

If you are an employee of Intact or belairdirect, please apply for this role on Internal Career Site.