обновлено 5 дней назад
SOC Engineering Lead (Cybersecurity)
120 000 - 135 000CAD
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
SOC Engineering Lead (Cybersecurity): Leading the evolution of SOC capabilities, security monitoring platforms, and detection engineering for a Canadian digital payments ecosystem with an accent on SIEM architecture, security data pipelines, incident response, and MITRE ATT&CK-aligned detection. Focus on validating controls through adversary emulation, improving enterprise visibility, and modernizing scalable security operations.
Location: Toronto, with a flexible hybrid work model
Salary: CAD 120,000–135,000 per year, plus eligibility for a short-term incentive plan
Company
is a Canadian financial technology company providing secure digital payments, identity verification, and fraud protection across digital and physical environments.
What you will do
- Lead the effectiveness, maturity, governance, and continuous evolution of SOC and detection engineering capabilities.
- Own the architecture, integration, performance, and reliability of SIEM platforms, security monitoring infrastructure, and supporting security technologies.
- Establish security data pipeline, logging, telemetry, normalization, enrichment, and coverage standards across the enterprise.
- Design, tune, optimize, and validate threat detection use cases aligned with threat actor tactics, techniques, and procedures.
- Provide technical leadership during cybersecurity incidents, investigations, threat containment, red team, purple team, and adversary emulation exercises.
- Own the SOC engineering strategy and roadmap, driving automation, process optimization, resilience, scalability, and technology modernization.
Requirements
- At least 7 years of experience in cybersecurity engineering, security operations, or a related discipline, including ownership or leadership of cybersecurity platforms, services, or capabilities.
- Strong experience in security monitoring, detection engineering, incident response, threat intelligence, and MITRE ATT&CK-aligned detection use cases.
- Hands-on experience with SIEM, EDR/XDR/NDR, security data pipelines, logging, and monitoring solutions.
- Strong understanding of network security, TCP/IP, systems hardening, cloud security, and modern cybersecurity architectures.
- Experience leading security platform transformations, migrations, or modernization initiatives in complex enterprise environments.
- Government of Canada Secret (Level II) clearance, or eligibility to obtain and maintain it, is required.
Nice to have
- Certifications such as CISSP, CCSP, CISM, CISA, CEH, OSCP, or equivalent.
Culture & Benefits
- Flexible hybrid work model supporting work-life balance.
- Vacation and wellness days, employer-paid benefits, and an employer-funded RRSP program.
- Confidential 24/7 employee and family assistance program.
- Pregnancy and parental leave top-up.
- Charitable donation matching and an inclusive, purpose-driven work environment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
4 дня назад
Security Platform Developer, Security Automation (Python, Splunk SOAR)
65 000 - 105 000CAD
3 дня назад
Senior Security Operations Engineer (GCP)
130 600 - 170 000CAD
7 дней назад
Senior SOC Analyst
2 дня назад
Information Security Engineer (Cloud) - Contract
85 000 - 90 000CAD
4 дня назад