Назад
4 дня назад

Security Engineer (Blue Team)

200 000 - 240 000CAD
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Canada
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer (Blue Team) (Cloud/SaaS Security): Leading detection and response across cloud infrastructure, identity providers, endpoints, SaaS environments, and software supply chains with an accent on automation, detection-as-code, and forensic investigation. Focus on building tested detection logic, containing CI/CD and supply-chain incidents, conducting threat hunting, and improving security operations through engineering practices.

Location: Vancouver, Canada; office-centric hybrid schedule with in-office days on Monday, Tuesday, and Thursday. Working from home on Wednesdays is generally available; Fridays depend on the work and partner teams.

Base salary: CAD $200,000–$240,000 per year, excluding additional compensation components such as equity and benefits.

Company

Asana develops a collaboration platform used by teams worldwide, combining human and AI collaboration.

What you will do

  • Lead detection, analysis, and response across cloud and SaaS environments, identity providers, endpoints, and the software supply chain.
  • Investigate and remediate incidents across AWS, GCP, Azure, Okta, SaaS applications, and CI/CD pipelines.
  • Build and maintain detection-as-code infrastructure, SOAR automation, and tested, version-controlled response playbooks.
  • Use and optimize security platforms including Panther, CrowdStrike, and other SIEM and endpoint security tools.
  • Conduct threat hunting, operationalize threat intelligence, and perform digital forensics and root-cause analysis.
  • Partner with engineering teams on secure configurations and deliver security operations and incident response training.

Requirements

  • 7+ years of experience in threat detection, security operations, or incident response.
  • Experience investigating incidents across cloud platforms, identity providers, and SaaS applications, including audit logging and IAM.
  • Proficiency in Python for security scripting and automation, with experience using REST APIs, Git workflows, and pull-request-based code reviews.
  • Hands-on experience with software supply chain threats, developer ecosystems such as npm and PyPI, build logs, and CI/CD pipelines.
  • Strong experience with SIEM platforms and EDR tools, including specialized knowledge of macOS endpoint security and telemetry.
  • Knowledge of digital forensics, root-cause analysis, common attack techniques, TTPs, and MITRE ATT&CK.

Nice to have

  • Experience with Bash, Go, or JavaScript/TypeScript.
  • Curiosity about AI tools and emerging technologies.

Culture & Benefits

  • Office-centric hybrid work model with flexibility varying by role and collaboration needs.
  • Mental health, wellness, and fitness benefits.
  • Career coaching and support.
  • Inclusive family-building benefits.
  • Long-term savings or retirement plans and in-office culinary options.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →