JSOC - Senior Detection Engineer
Tasks
- Author Sigma rules for cross platform portability
- Author test deploy detection rules
- Build alert severity framework
- Collaborate with SIEM engineers on rule infrastructure
- Communicate detection changes and coverage analysis
- Conduct log analysis to validate detections
- Maintain detection portfolio coverage and fidelity
- Maintain runbooks and escalation procedures
- Mentor detection engineering best practices
- Perform threat modeling to identify detection gaps
- Produce detection metrics by MITRE ATT&CK
- Retire stale detections with documentation
- Translate threat intelligence into detection requirements
- Tune detection logic reduce false positives
- Validate alerts purple team exercises
Perks/Benefits
- Career growth and development opportunities
- Community contribution opportunities
- Health and wellbeing resources
- Hybrid work environment
- Paid vacation personal and sick days
Skills/Tech-stack
Data Exploration | Detection rules | EQL | ESQL | Elastic Detection Rules | KQL | Log Analysis | MITRE ATT&CK | Purple Team | SIEM | Sigma | Threat Intelligence | Threat modeling
Education
N/A
Related jobs
-
Senior Information Security Engineer CAD 111K-160KAccess Management | Cryptography | CyberArk | CyberArk PIM | HIPAASenior-level Full TimeToronto, Canada (Ethoca)1d ago
-
Automation | Command Line | Customer Success | Documentation | Email SecurityAccessibility accommodations | Collaborative cross-functional environment | Continuous learning | Equal opportunity practices | Health, dental, and vision insuranceMid-level Full TimeCanada1d ago
-
Senior Security Engineer & Identity Engineer CAD 145K-175KAWS Security | AWS Security Hub | Access Management | Application Security | AuthenticationSenior-level Full TimeVancouver, British Columbia, Canada R4d ago
-
Application Security | Architecture Review | Bug Bounty | Cause analysis | Cloud SecurityDental insurance | Equity grants | Flexible work arrangements | Health insurance | Inclusive cultureSenior-level Full TimeCanada4d ago
-
Senior-level Full TimeToronto, Ontario4d ago
-
Staff Software Engineer CAD 80K-100KAWS | Alerting | Algorithms | Automated testing | Azure ResourceSenior-level Full TimeToronto, Ontario4d ago
-
Vulnerability Mitigation Specialist (Hybrid) CAD 86K-135KAPI Security | API Testing | AWS | Attack Simulation | BashHybrid work environment | Incident On Call Support | Training and developmentMid-level Full TimeMontreal 700, Canada R5d ago
-
Senior Security Engineer II CAD 196K-207KCause analysis | Code review | Design review | Offensive security | Remediation planningAnnual refresh grants | Equity grants | In-person events | Remote workSenior-level Full TimeCanada - Remote (ON, AB, BC, … R6d ago
-
AI Agents | API Security | Anomaly Detection | Application Firewall | Behavioral AnalysisCounseling services | Critical illness insurance | Disability insurance | Employee assistance program | Flexible leave policiesSenior-level Full TimeBurnaby, BC, Canada6d ago
-
Security Engineer (Remote First) CAD 94K-125KAWS | Audit Logging | Awareness Training | Business Continuity | CIS ControlsCourses conferences books memberships reimbursement | Education assistance reimbursement | Flexible health and dental plans | Half days before public holidays | Health and Personal Spending AccountsMid-level Full TimeToronto, ON R6d ago
-
Control enhancement | Cybersecurity | Data Analysis | Data Processing | EDRSenior-level Full TimeCalgary-Remote, AB R7d ago
-
DevSecOps Technical Lead CAD 125K-160KAPI Security | Ansible | Application Security | Automation | BashExtended health benefits | Maternity parental enhancement program | Meal program | Paid sick days | Paid vacation daysSenior-level Full TimeVancouver, British Columbia, Canada7d ago
-
Cloud Security Engineer CAD 95K-135KAWS Certificate Manager | AWS CloudFormation | AWS CloudTrail | AWS CloudWatch | AWS ConfigDiscounts | Employee assistance program | Health and dental insurance | Hybrid work environment | Professional development reimbursementSenior-level Full TimeToronto, Canada7d ago
-
AWS | Bug Bounty | Cloud platform | Google Cloud | Google Cloud PlatformFlexible work options | Health benefits | Paid time off | Professional learning opportunities | Remote-first workSenior-level Full TimeCanada7d ago
-
Artificial Intelligence | Batch scripting | Cloud Technology | DevOps | EDRMid-level Full TimeBurnaby, BC, CA, V5G 4S4 R8d ago
-
Security Engineer, Application Security CAD 125K-150KAI Security | API Authentication | API Design | API Gateway | API Gateway SecurityFlexible remote work 1 day per week | Health & dental benefits | Paid time off | Pension plan | Travel opportunitiesSenior-level Full TimeCA Victoria, Canada R8d ago
-
Staff Security Researcher USD 135K-202KAccess Management | Adversarial techniques | Behavioral analytics | CI/CD | Cloud SecuritySenior-level Full TimeRemote Canada | Remote United States R8d ago
-
AWS | Cloud Security | CrowdStrike | EDR | EKSEmployee stock purchase plan | Equity participation | Flexible spending stipends | Inclusive culture | Medical, dental, and vision coverageSenior-level Full TimeCanada R8d ago
-
Senior Security Engineer CAD 121K-157KAWS | Application Security | Architecture Review | Attack Vector | Attack vector analysisFlexible work environment | Generative AI projects | Health benefits | Hybrid work | PTOSenior-level Full TimeCanada R8d ago
-
API Security | Adversarial Machine Learning | Data Security | Data leakage | Fine TuningComprehensive healthcare benefits | Private medical coverageSenior-level Full TimeVancouver, British Columbia, Canada9d ago
-
IT Systems Engineer CAD 75K-85KAC power | Amazon Web Services | Ansible | Antivirus | AutomationGovernment security clearance support | Hybrid work scheduleMid-level Full TimeMontreal, Quebec, Canada9d ago
-
API Design | Alerting | DAST | DevOps | Error budgetCoaching and development support | Flexible work life balance options | Opportunities for challenging workMid-level Full Time16 YORK ST:TORONTO, Canada9d ago
-
Senior-level Full TimeRichmond Hill, Ontario, Canada11d ago
-
Application Security Engineer/Developer CAD 126K-176KAI Agents | API | Authentication | Cloud Computing | CryptographyEmployee assistance programs | Health and welfare benefits | Onsite 3 days per week | Professional development opportunities | Remote flexibilityMid-level Full TimeToronto - Bremner, Canada R12d ago
-
Sr. Security Operations Engineer, Incident Response CAD 150K-200KAWS | Automation | Cause analysis | Cloud Security | EDRDental insurance | Employee stock purchase plan | Flexible spending wallets | Health insurance subsidized | Paid time offSenior-level Full TimeRemote Canada R12d ago