Stop applying to remote jobs that are already dead.
Every listing checked, aged honestly, expired when filled.

All listings

Trimble via Workday

Senior Application Security Engineer (SCA/SAST)

Canada senior
still open verified 1d ago posted 11d ago seen just now
Apply at trimble.wd1.myworkdayjobs.com

This is the employer's own posting, not a copy on a job board.

What we know

Is it still open?

Confirmed still open

Last checked 1d ago — checked against the employer's own applicant tracking system, which is the company answering directly.

We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.

Check this listing's status as JSON

How old is it?

Posted 11d ago

The date the source published, not the day we noticed it (2026-09-21). Last seen at its source just now.

We have tracked this listing since 22 Sep 2026 (9 days). The employer's own board has carried it every time we have read it, most recently just now.

Is it remote?

The listing says yes

The location field doesn't say remote, so our assessment is based on the title or the description. Read the listing before applying.

Who may apply?

Canada

The description agrees: it names Canada.

What the ad says
…Location: Canada-Remote The…

Pay not stated

Similar roles pay CA$155.7k–183k/yr

Middle 50% of 120 listings that do state pay — Engineering · Senior · Canada · CAD/year. This employer has published no salary; this is what comparable listings we hold disclose, never converted between currencies or periods. How this is calculated.

Skills named in the ad

AzureC#CI/CDDevOpsGitHub ActionsGitLab CIJavaJenkinsPythonThreat Modeling

Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.

Carried by 1 source

The listing

Senior Application Security Engineer (SCA/SAST)

Scale Security. Empower Engineers. Shape the Future.


Location: Canada-Remote


The Mission: At Trimble, we aren't just building software; we’re transforming the way the world works. We are looking for a Senior Application Security Engineer who is more than a technical expert—you are a strategist and a catalyst for secure innovation. You will lead the charge in open-source security (SCA) and static analysis (SAST) across a massive global footprint, ensuring that security is a seamless part of the developer experience.



Why This Role?

  • Global Influence: You won't just be "fixing bugs." You will be the architect of a global security strategy that impacts 99% of our engineering teams.
  • Strategic Autonomy: Lead the vision for our SCA and SAST roadmaps. You have the seat at the table to decide how we evolve.
  • Innovation at Scale: Work across diverse tech stacks—from .NET and Java to Go and Python—integrating security directly into the heartbeat of our CI/CD pipelines.


How You’ll Make an Impact

Strategic Leadership

  • Act as the global SME for SCA and SAST, turning complex security requirements into scalable, automated solutions.
  • Optimize our security tooling to be "developer-first," slashing false positives and focusing engineering energy on what truly matters.
  • Shape the organizational approach to open-source security and license compliance.

Engineering Excellence

  • Embed security into the DNA of the SDLC by collaborating with architects and product owners worldwide.
  • Automate everything. You’ll build the "guardrails" that allow our developers to move fast without breaking things.
  • Mentor the next generation of security talent and lead through influence across cross-functional teams.

Vision & Advisory

  • Stay ahead of the curve. You’ll evaluate emerging security tech and proactively keep Trimble at the cutting edge.
  • Conduct threat modeling and architectural reviews to kill vulnerabilities before they are ever coded.


The Profile We’re Looking For

  • The Architect: 5+ years in AppSec with a deep, battle-tested mastery of SCA and SAST implementation at an enterprise level.
  • The Polyglot: You speak the language of developers. Whether it’s Java, C#, Python, or Go, you can read the code and provide real remediation paths.
  • The Integrator: You live in the pipeline. You have hands-on experience with GitHub Actions, Jenkins, Azure DevOps, or GitLab CI.
  • The Communicator: You can translate "security risk" into "business value" for stakeholders and "clear action" for engineers.
  • Education: Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.


How to Apply: Please submit an online application for this position by clicking on the ‘Apply Now’ button located in this posting.

Join a Values-Driven Team: Belong, Grow, Innovate. 

At Trimble, our core values of Belong, Grow, and Innovate aren't just words—they're the foundation of our culture. We foster an environment where you are seen, heard, and valued (Belong); where you have an opportunity to build a career and drive our collective growth (Grow); and where your innovative ideas shape the future (Innovate). We believe in empowering local teams to create impactful strategies, ensuring our global vision resonates with every individual. Become part of a team where your contributions truly matter. 

Candidate Privacy Notices by Country

If you need assistance or would like to request an accommodation in connection with the application process, please contact careers@trimble.com.

Apply at trimble.wd1.myworkdayjobs.com