JSOC - Senior Detection Engineer
Tasks
- Author Sigma rules for cross platform portability
- Author test deploy detection rules
- Build alert severity framework
- Collaborate with SIEM engineers on rule infrastructure
- Communicate detection changes and coverage analysis
- Conduct log analysis to validate detections
- Maintain detection portfolio coverage and fidelity
- Maintain runbooks and escalation procedures
- Mentor detection engineering best practices
- Perform threat modeling to identify detection gaps
- Produce detection metrics by MITRE ATT&CK
- Retire stale detections with documentation
- Translate threat intelligence into detection requirements
- Tune detection logic reduce false positives
- Validate alerts purple team exercises
Perks/Benefits
- Career growth and development opportunities
- Community contribution opportunities
- Health and wellbeing resources
- Hybrid work environment
- Paid vacation personal and sick days
Skills/Tech-stack
Data Exploration | Detection rules | EQL | ESQL | Elastic Detection Rules | KQL | Log Analysis | MITRE ATT&CK | Purple Team | SIEM | Sigma | Threat Intelligence | Threat modeling
Education
N/A
Related jobs
-
Senior Cloud Security Engineer CAD 130K-160KCI/CD | Cloud platform | Datadog | GitHub Actions | Google CloudCoaching and feedback | Flexible vacation policy | Health and dental benefits | Home office setup | Hybrid work optionsSenior-level Full TimeSaskatoon, SK1d ago
-
Senior Cloud Security Engineer CAD 130K-160KAI Tooling | CI/CD | Cloud platform | Data masking | DatadogDental insurance | Flexible vacation policy | Health insurance | Hybrid work options | Parental leaveSenior-level Full TimeToronto, ON1d ago
-
Information Security Engineer / Ingénieur en Sécurité de l'Information | North America (EST) /Amérique du Nord (EST) CAD 105K-145KAWS | Browser Extension | Browser extension security | CASB | Cloud SecuritySenior-level Full TimeCanada R1d ago
-
Senior Cybersecurity Developer CAD 101K-136KAWS | Auth0 | Bash | CI/CD | Cloud SecurityDental coverage | Fitness reimbursement | Health spending account | Hybrid work | Insurance coverageSenior-level Full TimeToronto, Canada; Montréal, Canada2d ago
-
Senior Security Engineer CAD 150K-190KApplication Security | Automation | Bug Bounty | CI/CD | Cloud SecurityCo-working stipend | Health and dental benefits | Inclusive culture | Parental leave top-up | Remote-flexibleSenior-level Full TimeToronto2d ago
-
Senior-level Full TimeCalgary, Alberta4d ago
-
Application Security Manager CAD 150KApplication Security | Authentication Protocols | Azure | Azure Security | Azure deploymentSenior-level Full TimeCanada - Remote R6d ago
-
Security Automation Engineer, 18-month Term CAD 120K-159KAdmission control | Artifact signing | Attestation | Azure DevOps | Azure PolicyFlexible vacation | Flexible work options | Hackathons | Mentorship programs | Recognition programsSenior-level TemporaryRemote, Canada R7d ago
-
Security Engineer CAD 120K-151KAccess Control | Access Management | Authentication | Azure Security | CI/CDFlexible vacation | Flexible work options | Hackathons | Mentorship programs | Recognition programsSenior-level Full TimeRemote, Canada R7d ago
-
AI Security Engineer CAD 120K-155KAI Security | Adversarial Testing | Agentic Workflows | Application Security | CI/CDCareer development | Flexible vacation | Flexible work options | Hackathons | Mentorship programsSenior-level Full TimeRemote, Canada R7d ago
-
Senior Product Security Engineer USD 150K-185KAPI Security | Application Security | CI/CD | Design reviews | Detection and ResponseDynamic work environment | Flexible working hoursSenior-level Full TimeUS - Remote, Canada - Remote R7d ago
-
Information Security Specialist CAD 93K-155KAnti-DDoS | Anti-spam | Anti-virus | Bash | Cloud SecuritySenior-level Full TimeMississauga, ON, CA8d ago
-
Ansible | Application Firewalls | Certificate management | Cloud Security | Content FilteringCareer path development | Hybrid work options | Networking opportunities | Wellness programsMid-level Full TimeSun Life Toronto One York, Canada9d ago
-
Ansible | Application Firewall | Certificate management | Cloud Security | Content FilteringMid-level Full TimeSun Life Toronto One York, Canada9d ago
-
SOC Engineer CAD 85K-140KAWS | Access Management | Cloud Security | Digital Forensics and Incident Response | Digital forensics401k employer match | Annual training allowance | Child care resources | ERG membership opportunities | Employee stock purchase programMid-level Full TimeVancouver, British Columbia15d ago
-
Application Security Engineer Prin CAD 112K-200KAPI Security | AWS | Atlassian Suite | Azure | Black box testingCommunity Charity Opportunities | Recognition | Time away from work programs | Volunteer days | Wellness initiativesSenior-level Full TimeCanada15d ago
-
Cyber Security Intern/Co-op (Fall 2026) CAD 45K-74KApplication Security | Automation | Cloud Security | Cyber Security | Data Loss PreventionHybrid work model | Mentoring programs | Online learning platform | Paid time off | Training and onboardingEntry-level Full Time Internship120 Bremner Blvd, Toronto, Ontario, Canada R16d ago
-
DevSecOps Lead CAD 101K-139KAWS | Automation | Azure | Cloud Security | DrataHealth and well-being benefits | Long-Term disability benefit | Professional development programs | Recognition program | Retirement and savings planSenior-level Full TimeMontreal, Quebec, CA, H4M2Z219d ago
-
DevSecOps Lead CAD 100K-135KAWS | Access Management | Automation | Azure | Cloud SecurityDental care | Extended health care | Health insurance | Long-term disability | Professional development programsSenior-level Full TimeMontreal, Québec, CA, H4M2Z219d ago
-
Splunk & Dynatrace Engineer (Java) CAD 100K-125KCI/CD | Cause analysis | Dynatrace | Git | J2EEOnsite workSenior-level Full TimeToronto, ON, Canada19d ago
-
Information Security Engineer / Ingénieur en Sécurité de l'Information | North America (EST) /Amérique du Nord (EST) CAD 101K-138KAWS | Azure | CASB | CCPA | CISAdditional country based perks and benefits | Remote work flexibility | Stock grant opportunities | WeWork access optionalSenior-level Full TimeCanada R20d ago
-
Mid-level Full TimeAMER - Canada - Ontario - …21d ago
-
Senior Security Engineer, Threat Intelligence USD 144K-214KAI machine learning | APIs | Automation | Cloud Security | Data PipelinesBackground check | On-call rotation | Remote workSenior-level Full TimeRemote (United States | Canada) R21d ago
-
Senior GRC Engineer CAD 116K-150KAI Governance | API Integration | AWS | Access Management | CI/CDAdoption Assistance | Extended health coverage | Internal mobility programs | Learning resources | Paid time offSenior-level Full TimeToronto (Flexible), Canada22d ago
-
Lead Security Engineer (Fraud) CAD 150K-220KAPI Security | AWS | CI/CD | Cloud Native | Cloudflare WAFFlexible working hours | Professional development stipend | Supplemental health insurance | Work from home reimbursementSenior-level Full TimeMontreal / Toronto22d ago