Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Engineer (Blue Team) (Cloud/SaaS Security): Leading detection and response across cloud infrastructure, identity providers, endpoints, SaaS environments, and software supply chains with an accent on automation, detection-as-code, and forensic investigation. Focus on building tested detection logic, containing CI/CD and supply-chain incidents, conducting threat hunting, and improving security operations through engineering practices.
Location: Vancouver, Canada; office-centric hybrid schedule with in-office days on Monday, Tuesday, and Thursday. Working from home on Wednesdays is generally available; Fridays depend on the work and partner teams.
Base salary: CAD $200,000–$240,000 per year, excluding additional compensation components such as equity and benefits.
Company
Asana develops a collaboration platform used by teams worldwide, combining human and AI collaboration.
What you will do
- Lead detection, analysis, and response across cloud and SaaS environments, identity providers, endpoints, and the software supply chain.
- Investigate and remediate incidents across AWS, GCP, Azure, Okta, SaaS applications, and CI/CD pipelines.
- Build and maintain detection-as-code infrastructure, SOAR automation, and tested, version-controlled response playbooks.
- Use and optimize security platforms including Panther, CrowdStrike, and other SIEM and endpoint security tools.
- Conduct threat hunting, operationalize threat intelligence, and perform digital forensics and root-cause analysis.
- Partner with engineering teams on secure configurations and deliver security operations and incident response training.
Requirements
- 7+ years of experience in threat detection, security operations, or incident response.
- Experience investigating incidents across cloud platforms, identity providers, and SaaS applications, including audit logging and IAM.
- Proficiency in Python for security scripting and automation, with experience using REST APIs, Git workflows, and pull-request-based code reviews.
- Hands-on experience with software supply chain threats, developer ecosystems such as npm and PyPI, build logs, and CI/CD pipelines.
- Strong experience with SIEM platforms and EDR tools, including specialized knowledge of macOS endpoint security and telemetry.
- Knowledge of digital forensics, root-cause analysis, common attack techniques, TTPs, and MITRE ATT&CK.
Nice to have
- Experience with Bash, Go, or JavaScript/TypeScript.
- Curiosity about AI tools and emerging technologies.
Culture & Benefits
- Office-centric hybrid work model with flexibility varying by role and collaboration needs.
- Mental health, wellness, and fitness benefits.
- Career coaching and support.
- Inclusive family-building benefits.
- Long-term savings or retirement plans and in-office culinary options.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
5 дней назад
Threat Analyst 3 (Cybersecurity)
74 000 - 123 000CAD
6 дней назад
Staff Security Engineer (AI)
225 000 - 275 000CAD
6 дней назад
Global Solutions Engineer (AI Security)
11 дней назад
Security Architect
158 000 - 263 000CAD
Okta
5 дней назад
Senior Software Engineer, Security Engineering - Platform (Auth0)
136 000 - 187 000CAD
Okta
11 дней назад
Senior Software Engineer, Security Engineering (Auth0)
136 000 - 187 000CAD