About the role
Job Description
What is the opportunity?
The Director of Vulnerability Engineering leads the application and data engineering teams responsible for building and operating the platform that enables application teams to manage vulnerabilities end-to-end. This platform will also serve as the home for Exposure Management and reporting. The team also supports internal automation, AI skills, and controls engineering. The role reports to the Sr. Principal, Vulnerability and Exposure Management.
This is a team full of initiative and momentum — we’re shipping a platform that will change how thousands of engineers interact with vulnerability data. You’ll have the rare opportunity to lead both application and data engineering in a space where AI, automation, and graph technologies are being applied to real security problems at enterprise scale. If you want to build products that matter, not just maintain systems, this is the role.
What will you do?
Oversees the execution of enterprise wide application security services, including secure design, testing, remediation, and training, ensuring alignment with organizational standards and objectives.
Provides strategic leadership in implementing security frameworks, tools, and processes to address complex security challenges and drive innovation.
Manages budgets and resource allocation to ensure operational efficiency, compliance with policies and adherence to regulatory requirements.
Cultivates stakeholder relationships to influence strategic decisions and promote the adoption of secure application practices across the organization.
Manages application security initiatives of significant complexity, applying advanced technical expertise to solve abstract problems, and making independent decisions across business units.
Makes independent decisions on program, technical or operational strategy for the department, providing leadership, coaching and mentorship through senior managers and managers. Sets strategic direction for the department or area receiving high level direction from senior leaders.
Drives innovation across areas of responsibility identifying opportunities for making operational changes and practices, solving highly complex problems broadly related to application security.
Leads cross functional collaboration efforts, fostering strong internal relationships across the organization and external relationships to drive business outcomes.
Lead and Develop Talent: Lead and develop the application and data engineering teams delivering the vulnerability management platform.
Design and Deliver: Partner with product on the design of platform capabilities, then build and operationalize them to enable application teams to manage vulnerabilities end-to-end.
Exposure Management: Define and execute the engineering roadmap for Exposure Management and reporting capabilities within the platform
Automation and AI: Deliver internal automation and AI skills that accelerate vulnerability assessment, prioritization, and resolution
Controls Validation: Manage the engineering lifecycle for the automation of controls validation, ensuring controls are working as expected
Cross-functional Partnership: Partner across Technology and Operations to translate requirements into scalable engineering solutions
Engineering Standards: Establish engineering standards, delivery practices, and technical governance across the team
Talent Growth: Attract, retain, and grow engineering talent across application development and data engineering disciplines.
What do you need to succeed?
Must Have
6+ years of experience in software engineering with progressive leadership responsibility
Experience leading application and data engineering teams in an enterprise environment
Experience designing and delivering platforms that support end-to-end operational workflows
Working familiarity with data modeling, graph databases, or knowledge graph architectures
Experience building and operationalizing automation at scale
Ability to partner with product and translate business requirements into engineering delivery
Effective stakeholder management skills across technical and non-technical audiences
Experience working within regulated industries (financial services preferred)
Nice to have
Understanding of vulnerability management, exposure management, or cybersecurity operations
Experience with AI/ML integration, LLM-based tooling, or intelligent automation
Familiarity with security control frameworks and control validation methodologies
Experience with graph technologies such as Neo4j, Neptune, or similar
Prior experience in a financial institution or similarly regulated enterprise
Familiarity with agile delivery practices and engineering governance at scale
What’s in it for you?
We thrive on the challenge to be our best, progressive thinking to keep growing, and working together to deliver trusted advice to help our clients thrive and communities prosper. We care about each other, reaching our potential, making a difference to our communities, and achieving success that is mutual.
A comprehensive Total Rewards Program including bonuses and flexible benefits, competitive compensation, commissions, and stock where applicable
Leaders who support your development through coaching and managing opportunities
Ability to make a difference and lasting impact
Work in a dynamic, collaborative, progressive, and high-performing team
A world-class training program in financial services
Flexible work/life balance options
Opportunities to do challenging work
#LI-POST
#TECHPJ
Job Skills
Application Security, Collaboration, Computer Engineering, Cyber Security Management, Decision Making, Information Security Management, Information Technology Security, Infrastructure Penetration Testing, IT Security Architecture, IT Systems Integration, Leadership, Security Engineering, Security Information and Event Management (SIEM)Additional Job Details
Address:
City:
Country:
Work hours/week:
Employment Type:
Platform:
Job Type:
Pay Type:
Posted Date:
Application Deadline:
Note: Applications will be accepted until 11:59 PM on the day prior to the application deadline date above
Our Employment Opportunities
At RBC, we are guided by living shared values of Client First, Integrity, Collaboration, Respect and Excellence and winning together as One RBC. We believe an inclusive workplace that has diverse perspectives is core to our continued growth as one of the largest and most successful banks in the world. Maintaining a workplace where our employees feel supported to perform at their best, effectively collaborate, drive innovation, and grow professionally helps to bring our Purpose to life and create value for our clients and communities. RBC strives to deliver this through policies and programs intended to foster a workplace based on respect, belonging and opportunity for all.
Join our Talent Community
Stay in-the-know about great career opportunities at RBC. Sign up and get customized info on our latest jobs, career tips and Recruitment events that matter to you.
Expand your limits and create a new future together at RBC. Find out how we use our passion and drive to enhance the well-being of our clients and communities at jobs.rbc.com.
RBC is presently inviting candidates to apply for this existing vacancy. Applying to this posting allows you to express your interest in this current career opportunity at RBC. Qualified applicants may be contacted to review their resume in more detail.
Aplyr's read
Royal Bank of Canada stands as a financial giant in North America, attracting professionals in AI, digital transformation, and regulatory compliance.
What's promising
- •RBC's strong market position in North America provides stability and growth opportunities.
- •The bank invests heavily in AI and digital transformation, offering cutting-edge roles.
- •RBC's diverse financial services cater to a broad client base, enhancing career variety.
What to watch
- •Regulatory scrutiny in the financial sector can impact operations and job stability.
- •Adapting to rapid technological changes may challenge some employees.
- •High competition in the financial industry could pressure profit margins.
Why Royal Bank of Canada
- •RBC's focus on AI modernization differentiates it in the financial services sector.
- •The bank's commitment to sustainability reporting highlights its forward-thinking approach.
- •RBC's extensive role variety in finance transformation attracts diverse talent.
Aplyr’s read is generated by AI from public sources. Was it useful?
About Royal Bank of Canada
Royal Bank of Canada (RBC) is one of Canada's largest banks and a leading financial services provider in North America, offering a wide range of financial products and services to personal, business, and institutional clients.