Thales

Senior Analyst, Advanced Security Response Team (ASRT), Web Application Security

Thales Vancouver, British Columbia, Canada · CA$78K–CA$139K/yr

Defense and Space Manufacturing · 10,001+ employees

2 d ago
security Senior (5-10 yrs) Full-time Canada
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The Senior Analyst will lead incident response efforts, analyze security threats, and implement remediation strategies for web application security. They will also act as a technical authority, mentoring team members and collaborating with cross-functional teams to resolve complex customer escalations.

What they look for

Application Security Network Security Incident Response Threat Mitigation TCP/IP HTTP SSL/TLS Proxies Firewalls OWASP Top 10 Bot Mitigation SQLi XSS Python Bash Java

Requirements

Candidates must possess a bachelor's degree in a technology field and at least 6 years of experience in application or network security, or a master's degree with 2 years of relevant experience. Proficiency in security protocols, scripting languages, and web application vulnerability mitigation is required.

Benefits

Extended Health Dental HSA Life Insurance AD&D Short-term Disability Cancer Care Program Travel Insurance Employee Assistance Plan Well-Being Program Retirement Savings Plans Paid Holidays Vacation Days Paid Sick Leave Voluntary Life Critical Illness Long-Term Disability Employee Discounts

Full description

Location: Vancouver - Burrard St, Canada

Thales people architect identity management and data protection solutions at the heart of digital security. Business and governments rely on us to bring trust to the billions of digital interactions they have with people. Our technologies and services help banks exchange funds, people cross borders, energy become smarter and much more. More than 30,000 organizations already rely on us to verify the identities of people and things, grant access to digital services, analyze vast quantities of information and encrypt data to make the connected world more secure.

Position Summary

Vancouver, Hybrid

Thales is looking for a Senior Analyst, Advanced Security Response Team (ASRT), who will work with a team which is dedicated to providing first response to security incidents and focused on the operational aspects of web application security: analyzing threats, suggesting direct methods of remediation and mitigation, and actively working to block attacks in real time.

In this customer-facing role, you will continuously interact with customers to mitigate security attacks while creating long lasting relationships through your technical expertise and engagement. Manage technical escalations, and work closely with Product and CS teams for our application security products (Value Added-Services, Dev, Support, Security, Sr. Management) in order to get issues resolved.

You will be a technical authority of Imperva’s Application Security suite, while constantly improving best practices for solutions and services. You will work closely with Management to implement and expand the global Advanced Security Response program.

Key Areas of Responsibility

  • Serve as a senior technical resource for the Americas Advanced Security Response (ASR) team, providing technical leadership, mentoring engineers, and promoting best practices in incident response and application security.
  • Own the technical resolution of complex customer issues, escalations, and critical incidents, acting as a trusted advisor while ensuring timely communication, root cause analysis, and customer satisfaction.
  • Collaborate with customers, Services Teams, Customer Success, Security Threat Research, Product Management, Product Development, and Engineering teams to resolve high-impact issues and drive product and service improvements.
  • Analyze customer traffic, logs, attack trends, security alerts, and case history to identify risks, recommend security improvements, and strengthen customers' overall application security posture.
  • Design, implement, and optimize custom security policies that detect, prevent, and mitigate application-layer attacks while minimizing false positives and ensuring optimal application availability.
  • Serve as technical escalation point during sophisticated application attacks, including large-scale Distributed Denial-of-Service (DDoS) incidents, zero-day threats, and advanced web application exploits.
  • Perform forensic analysis of application logs, security events, and attack payloads to identify vulnerabilities, validate attack patterns, and provide actionable remediation recommendations.
  • Document technical findings, create knowledge base articles, and share best practices that improve operational consistency, accelerate incident resolution, and enhance the technical capabilities of the ASR team.
  • Develop and maintain automation solutions to streamline ASR workflows, reduce manual effort, and improve incident response efficiency.

Minimum Qualifications

  • Minimum of 4 year bachelors degree in Information Systems or Computer Science or Telecommunications or any Technology field and minimum of 6 years experience in application or network security in a customer facing role with at least last 3 years in Security Engineering/Threat Mitigation role OR 4 years’ experience in application or network security with a Master’s degree in a technology field with at least 2 years in Security Engineering/Threat mitigation role.
  • Excellent analytical and problem-solving approach alongside self-learning ability. Passion for customer success/advocacy.
  • Demonstrated experience in working with Internet Security and Networking Technologies such as TCP/IP, HTTP, SSL/TLS, Proxies, Firewalls, OWASP Top 10, and OWASP Automated Threats to Web Applications.
  • Hands-on experience in identifying BOT behaviors and mitigating BOT attacks. And with web application vulnerabilities and common attack techniques (SQLi, XSS, OWASP Top 10, etc).
  • Experience with one or more scripting languages (i.e. python, bash, java, etc).

Special Position Requirements

  • A degree of flexibility to take appointments evenings and mornings, as required.

The anticipated Total Target Compensation (TTC), inclusive of annual salary and bonus eligibility, for this role is based on $78,027.75 - $139,038.26 range. The Company reserves the right to ultimately pay more or less than the posted range and offer additional benefits and other compensation, depending on circumstances not related to an applicant’s status protected by local, provincial, and federal laws.

Why Join Us?

Say HI and learn more about working at Thales click here. 

#LI-Hybrid

#LI-TI1

Thales provides an extensive benefits program for all full-time employees working 24 or more hours per week and their eligible dependents, including the following: 

  • Company paid Extended Health, Dental, HSA, Life, AD&D, Short-term Disability, Cancer Care Program, travel insurance, Employee Assistance Plan and Well-Being program.
  • Retirement Savings Plans (RRSP, DCPP, TFSA) with a company contribution and a match to a DCPP, with no vesting period.
  • Company paid holidays, vacation days, and paid sick leave. 
  • Voluntary Life, AD&D, Critical Illness, Long-Term Disability.
  • Employee Discounts on home, auto, and gym membership.

Thales is an equal opportunity employer which values diversity and inclusivity in the workplace. Thales is committed to providing accommodations in all parts of the interview process. Applicants selected for an interview who require accommodation are asked to advise accordingly upon the invitation for an interview. We will work with you to meet your needs. All accommodation information provided will be treated as confidential and used only for the purpose of providing an accessible candidate experience.

Similar roles