cover image
Dawn InfoTek

IT Product Owner - Application Security

Hybrid

Toronto, Canada

Senior

Freelance

13-12-2025

Share this job:

Skills

Communication Leadership GitLab CI/CD DevOps Jenkins Azure DevOps Prioritization Problem-solving Presentation Skills Training Architecture Azure Agile SDLC Gitlab CI GitLab CI/CD

Job Specifications

Dawn InfoTek Inc. is a professional IT consulting team that partners with major financial institutions, investment firms and government sectors. We have been dedicated to delivering cutting-edge consulting services and recruiting all levels of IT positions for our clients.

We are currently seeking competent individuals to fulfill the role of IT Product Owner to join our dynamic team for our client, one of the major banks.

Work arrangement: (Hybrid) 3 days/week, potentially changing to 4 days.

Contract Duration: 6 months

Typical day in role:

Product Execution & Planning

• Support the development and execution of product roadmaps for AppSec capabilities.

• Translate product strategy into actionable tasks and user stories.

• Work directly with security tools to evaluate, configure, and optimize SDLC integrations

• Assist in backlog management and feature prioritization based on business value and risk.

Team Collaboration

• Partner with engineering, architecture, and DevOps teams to deliver security capabilities.

• Participate in Agile ceremonies including sprint planning, stand-ups, and retrospectives.

• Help facilitate working sessions to resolve delivery blockers.

AppSec Enablement

• Support the rollout and configuration of application security tools (e.g., SAST, DAST, SCA).

• Partner with development teams to enable security checks in their workflows.

• Support security findings review to validate accuracy and help prioritize policy updates.

• Monitor emerging threats and industry trends to guide feature enhancements.

• Collaborate with security teams to maintain a strong application security posture.

• Contribute to defining rules and policies that align with organizational risk tolerance.

Stakeholder Engagement

• Develop training materials to educate internal teams on product security features.

• Contribute to stakeholder communications and reporting.

Product Ownership & Vendor Coordination

• Maintain product backlogs and assist in defining epics and user stories.

• Support vendor coordination and onboarding activities.

• Contribute to business case development and cost/benefit analysis.

Data-Driven Insights

• Use data insights to support roadmap decisions and measure product impact.

• Assist in preparing presentations and reports for leadership and stakeholders.

• Define KPIs to measure capability effectiveness (e.g., scan coverage, false positive rate, time to remediation).

Candidate Requirements/Must-Have Skills:

• 8 years’ experience in IT with at least 2 + years of experience on application security (preferably, SAST, DAST, or OSSS). Someone who has worked before as an Application security product manager/specialist.

• 3+ years’ experience with product strategy and maintaining a product backlog

• 3+ years working in Agile teams; experienced in sprint ceremonies and writing epics/user stories

• Demonstrable communication and presentation skills for technical and executive audiences

Nice to have:

• Exposure to popular CI/CD tools like Jenkins, Azure DevOps, GitLab CI/CD, CircleCI

• CISSP/CCSP/CSPO/SAFe POPM Certification

Soft Skills Required:

• A demonstrated history of problem-solving, technology implementation, and sound judgment

• Fluent English-language verbal and written communications: the ability to distill complex and ambiguous operational processes, business requirements/rules, and data sets into process flows and analysis, concisely convey technical requirements and requests, prepare and edit high-quality documentation, and be accepted as a trusted advisor by peers

• Able to work remotely and on-site on multiple activities simultaneously and meet deadlines

About the Company

Dawn InfoTek Inc. is an international consulting firm that provides Information Technology solutions and expertise to domestic and international clients. Our solutions are focused on several mission critical business areas: Application Performance Management (APM): Our Application Quality Assurance (AQA) suite of solutions covers the entire APM solution set. Our Synthetic Transaction Monitor is unique in the market, as it tests past the load balancer, right to the JVM, cloud instance or .Net instance. This key application is... Know more