Senior Detection Engineer

1 Presidents Choice Circle, Brampton, ON, Canada

⚠️ We'll shut down after Aug 1st - try foo🦍 for all jobs in tech ⚠️

Loblaw Companies Limited

At Loblaw, we’ve innovated the grocery retail experience to better serve Canadians. We make good food affordable. Health, beauty and wellness accessible. Saving for the future possible. And essential style achievable.

View all jobs at Loblaw Companies Limited

Apply now Apply later

Come make your difference in communities across Canada, where authenticity, trust and making connections is valued – as we shape the future of Canadian retail, together. Our unique position as one of the country's largest employers, coupled with our commitment to positively impact the lives of all Canadians, provides our colleagues a range of opportunities and experiences to help Canadians Live Life Well®.

At Loblaw Companies Limited, we succeed through collaboration and commitment and set a high bar for ourselves and those around us. Whether you are just starting your career, re-entering the workforce, or looking for a new job, this is where you belong. 

Does working with some of Canada’s most talented minds in innovation supporting retail, digital consumer solutions and analytical platforms excite you? Loblaw Technology powers some of Canada’s most game-changing retail solutions, giving our customers the ability to live their lives well.

Come work with a team that values diverse ideas, fosters a culture of inclusion and develops our talent from within. Loblaw Technology gives you the chance to excel, and helps you to strive for success in a big way.  Keep reading to learn more!
 

Senior Detection Engineer, Brampton, ON

Our Detection Engineering team is embarking on an exciting new journey, focused on building cutting-edge detection capabilities to stay ahead of the rapidly evolving threat landscape. As we shape the future of threat detection across multi-cloud environments we’re looking for talented individuals to help us crafting innovative solutions to protect multi-cloud environments to combat the evolving threat landscape. If you’re eager to tackle complex security challenges and make a real impact, this is the opportunity for you.

What You’ll Do:

  • Drive the end-to-end design, development, and technical leadership of high-fidelity, scalable detection content across multi-cloud environments (Azure, GCP, OCI etc). Define detection strategy that balances breadth, depth, and precision threat coverage across critical assets while minimizing blind spots and telemetry gaps.
  • Provide technical oversight for SIEM infrastructure, ensuring ingestion pipelines are optimized for scale, signal fidelity, and cost efficiency. Collaborate with platform engineering teams to continuously improve data normalization, enrichment, and event routing.
  • Define and enforce detection engineering best practices for SIEM rule development, tuning, and lifecycle management. Ensure content aligns with MITRE ATT&CK, threat intelligence, and operational priorities, while maintaining hygiene and performance at scale.
  • Engineer robust detections that scale against modern attacker tradecraft—including automated threats, AI-driven TTPs, (LotL) abuse, and emerging post-exploitation behaviors. Champion logic that reduces noise and false positives %, enabling actionable signals for downstream response.
  • Operationalize threat intel, telemetry patterns, and anomaly baselines into advanced detection content across SIEM/XDR pipelines. Build correlation logic and multi-stage detections to surface APT activity, credential abuse, zero-day exploitation, and lateral movement etc.
  • Act as the detection content authority working alongside security & engineering stakeholders -  IR, threat intel, and product teams. Mentor a team of detection engineers, providing code-level reviews, logic validation, and cross-domain threat modeling to maintain high-quality and battle-tested detections.
  • Own and evolve detection KPIs (e.g., precision, recall, MTTD, FPR). Implement automated validation and regression pipelines to continuously assess detection health, adapt logic to threat shifts, and ensure long-term signal resilience under active adversary conditions.

What you Bring:

  • Brings a curious, analytical, and offensive-aware mindset to defensive detection. Continuously hunts for telemetry gaps, tests detection logic against emulated threat scenarios, and iteratively improves detection coverage and fidelity through data-driven analysis.
  • Demonstrated expertise in architecting and leading large-scale detection engineering efforts across multi-cloud environments with a strong grasp of threat modeling, adversary emulation, and signal-to-noise optimization. Proven ability to build and manage detection strategies that scale across hybrid infrastructures.
  • Deep understanding of attacker TTPs, threat intelligence application, and detection design principles. Adept at crafting high-fidelity, low-noise detection content that maps to adversary behaviors (MITRE ATT&CK), continuously tuned to evolving threats and telemetry patterns.
  • Extensive hands-on experience with SIEM and XDR platforms, including building and maintaining complex correlation rules, data models, and enrichment pipelines. Strong grasp of DaC, log telemetry normalization, event schema design, and detection lifecycle management at scale.
  • Familiarity with SOAR platforms and automation frameworks, with the ability to integrate detection and response workflows. Brings a proactive mindset to building automated triage, context enrichment, and signal escalation processes to accelerate time-to-response via DaC framework.
  • Solid understanding of cloud-native security risks and telemetry sources (e.g., API audit logs, cloud flow logs, identity artifacts), and how to detect high-impact threats such as lateral movement, privilege escalation, and misconfiguration exploitation in multi-cloud ecosystems.
  • Proven leadership in cross-functional technical collaboration—partnering with incident response, threat intel, SRE, and platform teams to ensure detection content is tightly aligned with threat priorities, operational workflows, and platform telemetry realities.
  • Demonstrated ability to mentor and technically guide other detection engineers, instill quality review processes, and foster a culture of rigor, innovation, and accountability within the detection engineering function.

What Loblaw Offers You

We offer flexibility and balance, and an environment that sets you up for success no matter where your workspace is located.

Here, you will find a great team to help you achieve your goals as you help us achieve ours! Work in our fast-paced, exciting Technology environment, helping our stores, colleagues and customers every day.

Loblaw colleagues also enjoy:

  • Work Perks Program
  • On-site GoodLife Fitness, Basketball & Volleyball courts, Ice Rink, Dry Cleaning services (1PCC Office)
  • Tuition Reimbursement & Online Learning
  • Pension & Benefits
  • Paid Vacation


If you’re up to the challenge, then we would love to hear from you. Apply today, and get the process started.

Loblaw recognizes Canada's diversity as a source of national pride and strength. We have made it a priority to reflect our nation’s evolving diversity in the products we sell, the people we hire, and the culture we create in our organization. At Loblaw, we celebrate diversity and strive to build a culture of inclusion where differences are embraced, valued and supported.  We are committed to being an equal opportunity employer and encourage people from all backgrounds and identities to apply to our jobs.  Accommodation in the recruitment, assessment, and hiring process is available upon request for applicants with disabilities.

We thank all candidates for their interest but please note, those candidates who meet the minimum requirements for the position will be contacted.

www.Loblaw.ca/careers

Our commitment to Sustainability and Social Impact is an essential part of the way we do business, and we focus our attention on areas where we can have the greatest impact. Our approach to sustainability and social impact is based on three pillars – Environment, Sourcing and Community – and we are constantly looking for ways to demonstrate leadership in these important areas. Our CORE Values – Care, Ownership, Respect and Excellence – guide all our decision-making and come to life through our Blue Culture. We offer our colleagues progressive careers, comprehensive training, flexibility, and other competitive benefits – these are some of the many reasons why we are one of Canada’s Top Employers, Canada’s Best Diversity Employers, Canada’s Greenest Employers & Canada’s Top Employers for Young People.

If you are unsure whether your experience matches every requirement above, we encourage you to apply anyway. We are looking for varied perspectives which include diverse experiences that we can add to our team.

We have a long-standing focus on diversity, equity and inclusion because we know it will make our company a better place to work and shop. We are committed to creating accessible environments for our colleagues, candidates and customers. Requests for accommodation due to a disability (which may be visible or invisible, temporary or permanent) can be made at any stage of application and employment. We encourage candidates to make their accommodation needs known so that we can provide equitable opportunities.  
 
Please Note:
Candidates who are 18 years or older are required to complete a criminal background check. Details will be provided through the application process.

#EN

#SS #LTnA #ON
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0

Tags: APIs APT Automation Azure Cloud GCP Incident response KPIs MITRE ATT&CK SIEM SOAR Strategy Threat detection Threat intelligence TTPs XDR Zero-day

Perks/benefits: Career development Fitness / gym Health care Startup environment

Region: North America
Country: Canada

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.