Security Engineering Director - Detection & Response - Remote across ANZ

Wellington, Australia

Apply now Apply later

Company Description

Join the team redefining how the world experiences design.

Hey, hello, hiya, g'day, mabuhay, kia ora, 你好, hallo, vítejte!

Thanks for stopping by. We know job hunting can be a little time consuming and you're probably keen to find out what's on offer, so we'll get straight to the point.

Where and how you can work

Our flagship campus is in Sydney. We also have a campus in Melbourne and co-working spaces in Brisbane, Perth and Adelaide. But you have choice in where and how you work. That means if you want to do your thing in the office (if you're near one), at home or a bit of both, it's up to you.

What you’d be doing in this role

As Canva scales change continues to be part of our DNA. But we like to think that's all part of the fun. So this will give you the flavour of the type of things you'll be working on when you start, but this will likely evolve.

As a Security Engineering Director for Detection and Response, it is your mission to lead teams of talented security engineers to solve complex security problems at scale. You will define a clear vision for security detection and response across Canva, and develop strategies and roadmaps that move towards that vision.

At the moment, this role is focused on:

  • Leading multiple teams across Australia, New Zealand, and the UK, to provide Threat Intelligence, Detection & Hunting, and Incident Response capabilities
  • Setting a clear mission, vision, and strategic direction that inspires security engineers and aligns with business strategies
  • Coaching and providing business context to Detection & Response team leads to create and deliver impactful roadmaps, and build empowered and engaged teams
  • Building and maintaining strong partnerships with key stakeholders across Technology, Legal, People, and other business units to ensure security initiatives align with company objectives
  • Clearly communicating insights from threat intelligence and security incidents across different groups, specialties, and company leadership forums, to inform risk management and drive meaningful change
  • Fostering a culture of continuous learning, knowledge sharing, and growth across security engineering teams

You're probably a match if

  • Demonstrated experience within Information Security, with a proven track record of leading Security teams in Detection & Response domains.
  • You have demonstrated experience building and scaling security operations, threat detection, or incident response programs in a high-growth technology environment
  • You have a strong track record of leading and developing leaders, including experience managing geographically distributed teams
  • You have a deep technical understanding of modern security tools, threat detection methodologies, and incident response procedures
  • You have experience establishing and maintaining security metrics programs and communicating effectively with executive stakeholders
  • You have success in recruiting, retaining, and developing diverse security talent in competitive markets
  • You are able to lead by example - promoting Canva’s values, no-blame mentality, and engineering values.

Beneficial Experience (not required, but helpful)

  • Experience working with cloud-native security tools and implementing detection capabilities in cloud environments (AWS, GCP, Azure)
  • Background in one or more specialized security domains (malware analysis, threat hunting, security data engineering)
  • Experience implementing automation and engineering practices within security operations
  • Previous experience working with or supporting product security initiatives
  • Experience working with external security partners, vendors, and participating in industry sharing communities


About the team

The Security Group is responsible for protecting Canva systems and data from information security threats. Our teams work together, and with other groups, to deliver preventive and detective controls and processes that reduce security risk. The group runs programs across Enterprise Security, Application Security, Risk Management, and Threat Detection and Response domains.  

The Detection and Response group are responsible for leading Canva’s understanding of the threats that we face, continuously improving our ability to detect relevant actions of threat actors, and leading the company’s response to any potential intrusions.

What's in it for you?

Achieving our crazy big goals motivates us to work hard - and we do - but you'll experience lots of moments of magic, connectivity and fun woven throughout life at Canva, too. We also offer a stack of benefits to set you up for every success in and outside of work.

Here's a taste of what's on offer:

  • Equity packages - we want our success to be yours too
  • Inclusive parental leave policy that supports all parents & carers
  • An annual Vibe & Thrive allowance to support your wellbeing, social connection, office setup & more
  • Flexible leave options that empower you to be a force for good, take time to recharge and supports you personally

Check out lifeatcanva.com for more info.

Other stuff to know

We make hiring decisions based on your experience, skills and passion, as well as how you can enhance Canva and our culture. When you apply, please tell us the pronouns you use and any reasonable adjustments you may need during the interview process.

Please note that interviews are conducted virtually.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  2  1  0

Tags: Application security Automation AWS Azure Cloud GCP Incident response Malware Product security Risk management Threat detection Threat intelligence

Perks/benefits: Career development Equity / stock options Flex hours Home office stipend Parental leave Startup environment

Regions: Remote/Anywhere Asia/Pacific Europe

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.