Назад
3 дня назад

Senior Security Engineer (Detection & Response)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Australia
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Security Engineer (Detection & Response): Developing and implementing high-impact security engineering solutions for detection and platform engineering with an accent on automating security workflows and enhancing platform infrastructure. Focus on leading incident response, reducing analyst toil through automation, and scaling security operations capabilities across cloud-native infrastructure.

Location: Must be based in Melbourne, Australia (Hybrid)

Company

Canva is a global design platform redefining how the world experiences design.

What you will do

  • Lead incident response coordination and act as an escalation point for security incidents across cloud-native infrastructure.
  • Investigate and triage security alerts, coordinating containment, eradication, and recovery activities.
  • Build and maintain automation workflows and response playbooks (SOAR) to reduce analyst toil and improve response times.
  • Develop security response tooling and capabilities across SIEM, case management, and forensics.
  • Partner with CTI, Application Security, and Red Teams to translate threat intelligence into practical detection outcomes.
  • Lead post-incident reviews and translate learnings into improved detections and response processes.

Requirements

  • Proven experience in incident response, DFIR, or security operations.
  • Expertise with enterprise security platforms including SIEM (Elastic Security, Splunk), EDR (SentinelOne, CrowdStrike, Microsoft Defender), and SOAR platforms.
  • Working knowledge of major cloud providers (AWS, GCP, or Azure) and cloud attack techniques.
  • Proficiency in scripting and programming languages such as Python or Go.
  • Experience with Infrastructure-as-Code (Terraform/Ansible) and DevOps practices.
  • Experience with advanced detection techniques: behavioural analytics, anomaly detection, and GenAI workflows.

Nice to have

  • Experience with Threat Hunting or Threat Intelligence.
  • Background in forensic acquisition and analysis, including chain of custody.
  • Incident response experience in containerized and Kubernetes environments.
  • Contributions to open-source security tools or published research.

Culture & Benefits

  • Equity packages to share in the company's success.
  • Inclusive parental leave policy supporting all parents and carers.
  • Annual Vibe & Thrive allowance for wellbeing, social connection, and office setup.
  • Flexible leave options to recharge and provide personal support.
  • Hybrid work model combining remote flexibility with meaningful in-person collaboration.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →