Company Description
Ubisoft is a global leader in gaming with teams across the world creating original and memorable gaming experiences, from Assassin’s Creed, Rainbow Six to Just Dance and more. We believe diverse perspectives help both players and teams thrive. If you’re passionate about innovation and pushing entertainment boundaries, join our journey and help create the unknown!
Job Description
As a Solution Security Architect at Ubisoft Montréal, you will join the Security and Risk Management Security Engineering team. You will help define and implement security controls, contribute to risk reduction initiatives, and support the deployment of security solutions across the Ubisoft group, including projects related to Anvil and Snowdrop productions.
What you’ll do
- Contribute to security initiatives by participating in development activities, identifying and addressing security vulnerabilities, implementing security requirements, and deploying security solutions
- Support the deployment and long-term maintainability of security tools used by operational teams
- Evaluate and reduce risks affecting services and development teams by considering real-world threat scenarios
- Collaborate with Security Engineering leadership and enterprise security specialists to align solutions with security standards and domain requirements
- Contribute to the design, development, and deployment of security solutions used across Ubisoft services and products
- Support secure development practices within projects related to Anvil and Snowdrop
- Document implemented changes and security improvements
- Share knowledge and support development and operations teams on security-related topics
Qualifications
What you bring to the team
- Experience working with CI/CD pipelines, DevOps practices, and the integration of security tools such as SAST, SCA, or DSA
- Experience in software development and application security, including knowledge of OWASP practices
- Knowledge of C#, Go, Python, and/or JavaScript
- Understanding of OAuth, authentication mechanisms, Azure OIDC, and AWS
- Familiarity with threat modeling processes
- Knowledge of supply chain security and secret management solutions such as HashiCorp Vault
- Experience with penetration testing or Capture the Flag (CTF) activities is an asset
- Strong communication, collaboration, and knowledge-sharing skills
Additional Information
What to send our way
- Your CV highlighting relevant skills and experiences
- Relevant project links, GitHub repositories, or technical contributions
Contract: PermanentWork flexibility: Office-based