Retour à la recherche
C
CGISource d’offres vérifiée

Senior Java Developer (Cloud)

Offre en anglais

Design, develop, and maintain secure enterprise Java applications while remediating security vulnerabilities across cloud environments. The role involves integrating security controls into CI/CD pipelines and providing technical leadership to offshore development teams.

  • Hybride
  • Toronto, ON
  • Publié 6 août 2026
  • Postuler avant le 5 sept. 2026
  • 1 poste

Résumé du poste

Position Description We are Canada's largest independent information technology services firm, and after 45+ years, we're still growing! Join Canada's largest IT Company as a Senior Java Developer, in our Financial Services Sector in Toronto. Come build High Value Payments with us! Location - Downtown Toronto (Hybrid - 4 days office and 1 day remote) We are seeking a Senior Java Developer with strong cloud and application security expertise to join a high-performing delivery team supporting enterprise applications in a highly regulated environment. This hybrid role requires a hands-on technical professional who can quickly become productive, take ownership of complex initiatives, and work independently with minimal supervision after onboarding. The successful candidate will bring deep expertise in Java, Spring Boot, cloud technologies, secure coding practices and common security vulnerabilities, including OWASP Top 10, CVEs, and dependency management. Your future duties and responsibilities Design, develop, and maintain enterprise Java applications using Java, Spring Boot, and modern development frameworks. Identify, analyze, prioritize, and remediate application and infrastructure security vulnerabilities across cloud environments. Review application code to identify security risks and ensure adherence to secure coding standards and organizational best practices. Integrate security controls into CI/CD pipelines and support DevSecOps initiatives. Troubleshoot and resolve security findings related to application code, APIs, containers, and cloud services. Collaborate with architects, security teams, developers, and business stakeholders to implement secure, scalable solutions. Perform root cause analysis for security and performance issues and implement sustainable long-term solutions. Provide technical leadership, mentor offshore development teams, and coordinate project deliverables. Produce technical documentation including solution designs, remediation plans, and status reports. Participate in Agile ceremonies while managing multiple priorities in a fast-paced delivery environment. Required Qualifications To Be Successful In This Role This role is hybrid and requires you to be at our downtown Toronto office and/or client office at a minimum of four (4) days per week. This requirement is subject to change at any time. 5+ years of experience identifying, analyzing, and remediating application and infrastructure security vulnerabilities within cloud-based environments. Recent hands-on enterprise development experience using Java, Spring Boot, and related technologies. Strong understanding of secure coding principles, OWASP Top 10, Common Vulnerabilities and Exposures (CVEs), software dependency management, and application security best practices. Hands-on experience using vulnerability scanning and remediation tools such as Snyk, Checkmarx, Veracode, SonarQube, Black Duck, or similar platforms. Experience with cloud platforms including AWS, Azure, or Google Cloud Platform and implementation of cloud security best practices. Strong experience troubleshooting security issues affecting applications, REST APIs, containers, and cloud infrastructure. Solid understanding of RESTful APIs, microservices architecture, and enterprise integration patterns. Experience implementing security controls within CI/CD pipelines and DevSecOps environments. Hands-on experience with Docker and container orchestration platforms such as Kubernetes or OpenShift. Strong understanding of Identity and Access Management (IAM), encryption, secrets management, and data protection. Experience conducting secure code reviews and peer reviews to ensure compliance with organizational standards. Excellent communication and leadership skills with the ability to coordinate and mentor offshore development teams. Experience working within Agile/Scrum delivery environments. Strong analytical, troubleshooting, and technical documentation skills. Nice to have- Financial services or other highly regulated industry experience. Experience supporting enterprise vulnerability remediation programs and security compliance initiatives. Experience supporting large-scale, mission-critical applications with stringent security and availability requirements. AWS Certified Developer, Microsoft Azure Developer Associate, Certified Secure Software Lifecycle Professional (CSSLP), or equivalent security/cloud certification. Previous experience leading or mentoring offshore development teams. CGI is providing a reasonable estimate of the pay range for this role. The determination of this range includes factors such as skill set level, geographic market, experience and training, and licenses and certifications. Compensation decisions depend on the facts and circumstances of each case. A reasonable estimate of the current range is $80,000–$130,000. This role is an existing vacancy. Together, as owners, let’s turn meaningful insights into action. Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, you’ll reach your full potential because… You are invited to be an owner from day 1 as we work together to bring our Dream to life. That’s why we call ourselves CGI Partners rather than employees. We benefit from our collective success and actively shape our company’s strategy and direction. Your work creates value. You’ll develop innovative solutions and build relationships with teammates and clients while accessing global capabilities to scale your ideas, embrace new opportunities, and benefit from expansive industry and technology expertise. You’ll shape your career by joining a company built to grow and last. You’ll be supported by leaders who care about your health and well-being and provide you with opportunities to deepen your skills and broaden your horizons. At CGI, we value the strength that diversity brings and are committed to fostering a workplace where everyone belongs. We collaborate with our clients to build more inclusive communities and empower all CGI partners to thrive. As an equal-opportunity employer, being able to perform your best during the recruitment process is important to us. If you require an accommodation, please inform your recruiter. That same commitment to fairness extends to how we use technology. To support our recruitment team, AI tools may be used to help assess applications though they never replace human judgement. All hiring decisions remain entirely in the hands of our recruitment professionals. To learn more about accessibility at CGI, contact us via email. Please note that this email is strictly for accessibility requests and cannot be used for application status inquiries. Come join our team—one of the largest IT and business consulting services firms in the world.

Ce que vous ferez

Design, develop, and maintain secure enterprise Java applications while remediating security vulnerabilities across cloud environments. The role involves integrating security controls into CI/CD pipelines and providing technical leadership to offshore development teams.

Exigences

Requires 5+ years of experience in cloud security remediation and hands-on enterprise development with Java and Spring Boot. Candidates must have expertise in secure coding practices, vulnerability scanning tools, and container orchestration platforms.

Compétences indiquées

  • Microsoft AzureSouhaitée
  • KubernetesSouhaitée
  • DockerSouhaitée
  • Amazon Web ServicesSouhaitée
  • JavaSouhaitée
  • Spring BootSouhaitée

Autres compétences pertinentes

Relevées dans la description du poste. Confirmez les exigences importantes ci-dessus.

  • Java
  • Spring Boot
  • Cloud Security
  • OWASP Top 10
  • CVE Remediation
  • Snyk
  • Checkmarx
  • Veracode
  • SonarQube
  • Black Duck
  • AWS
  • Azure
  • Google Cloud Platform
  • Docker
  • Kubernetes
  • OpenShift

Domaines d’emploi

  • Software
  • Technology
  • Consulting
  • Security & Safety
  • Engineering

Renseignements supplémentaires

Expérience minimale
5+ ans
Postuler avant le
5 sept. 2026
Langue de l’offre
anglais
Heures de travail
40 heures par semaine
Présence au bureau
4 jours par semaine
Niveau d’expérience
Entry level