Cybersecurity Detection Engineer / Purple Team

act digital

Montreal (administrative region)

On-site

CAD 90,000 - 130,000

Full time

6 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Act Digital, Montreal-based international technology and cybersecurity consulting, is seeking a Detection Engineer to strengthen detection capabilities in a major financial-sector environment. You will work with SOC, Incident Response and Security Engineering teams on detection engineering, purple teaming and offensive validation to improve coverage and defensive maturity.

The role focuses on reviewing use cases, building new detections, validating through adversary simulation, and reducing

Qualifications

  • 3+ years of cybersecurity experience.
  • Experience in Detection Engineering, Threat Detection, SOC or Purple Teaming.
  • Hands-on experience with offensive security techniques or adversary simulation.
  • Experience working in enterprise or regulated environments.
  • Strong understanding of modern attack techniques and intrusion methodologies.

Responsibilities

  • Reviewing and improving existing detection use cases
  • Developing new detection logic and behavioral analytics
  • Validating detections through offensive testing and adversary simulation
  • Identifying detection gaps across endpoint, identity, network and cloud environments
  • Simulating attacker techniques mapped to MITRE ATT&CK
  • Improving detection quality and reducing false positives
  • Supporting continuous improvement of monitoring and response capabilities

Skills

SIEM & EDR
Detection use case development
MITRE ATT&CK
Log analysis
Offensive security fundamentals
Python/PowerShell/Bash
Windows security
Active Directory knowledge
Investigation capabilities

Job description

Act Digital is an international technology and cybersecurity consulting company supporting major organizations across digital transformation, cyber defense and security operations.

Within our cybersecurity activities, we support large enterprise and financial-sector clients on topics including:

  • SOC operations
  • Offensive security
  • Purple teaming

We are currently looking for a Detection Engineer to join a major financial-sector environment in Montreal.

About the Role

As a Detection Engineer, you will help improve and validate cybersecurity detection capabilities against modern attacker techniques.

This role combines detection engineering, purple teaming and offensive validation activities. The objective is not only to create detections, but also to continuously test and improve their effectiveness against realistic attack scenarios.

You will work closely with SOC, Incident Response and Security Engineering teams to strengthen detection coverage and defensive maturity across the environment.

Main responsibilities include:

  • Reviewing and improving existing detection use cases
  • Developing new detection logic and behavioral analytics
  • Validating detections through offensive testing and adversary simulation
  • Identifying detection gaps across endpoint, identity, network and cloud environments
  • Simulating attacker techniques mapped to MITRE ATT&CK
  • Improving detection quality and reducing false positives
  • Supporting continuous improvement of monitoring and response capabilities
Qualifications
  • 3+ years of experience in cybersecurity
  • Experience in Detection Engineering, Threat Detection, SOC or Purple Teaming
  • Hands-on experience with offensive security techniques or adversary simulation
  • Experience working in enterprise or regulated environments
  • Strong understanding of modern attack techniques and intrusion methodologies
Required Skills
  • SIEM and EDR technologies
  • Detection use case development and tuning
  • MITRE ATT&CK framework
  • Log analysis and event correlation
  • Offensive security fundamentals
  • Scripting skills (Python, PowerShell and/or Bash)
  • Windows security and Active Directory knowledge
  • Strong analytical and investigation capabilities
Preferred Skills
  • Experience in financial or highly regulated environments
  • Experience with purple teaming or adversary simulation
  • Experience with detection-as-code methodologies
  • Knowledge of threat hunting methodologies
  • Familiarity with Windows internals, Active Directory and cloud environments
  • Knowledge of modern attack chains, lateral movement and privilege escalation techniques
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

L3 SOC Analyst / Incident Responder
L3 SOC Analyst / Incident Responder

act digital • Montreal (administrative region)

On-site
CAD 90,000 - 120,000
Remote working available
Flex Office work environment
Annual training and certification
DLP Engineer
DLP Engineer

act digital • Montreal (administrative region)

On-site
CAD 90,000 - 120,000
Senior Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Mandiant
Senior Forward Deployed Detection and Response Consultant, Cyber Defence, National Security, Mandiant

Google • Ottawa

On-site
CAD 140,000 - 190,000
Senior Security Operations Analyst, Detection & Response
Senior Security Operations Analyst, Detection & Response

Financeit • Toronto

On-site
CAD 110,000 - 125,000
Hybrid workplace options
Competitive pay and bonus
RRSP matching
+3
SOC Cybersecurity Analyst – Permanent Position
SOC Cybersecurity Analyst – Permanent Position

Jobtailor • Montreal (administrative region)

On-site
CAD 70,000 - 90,000
Red Team Security Engineer
Red Team Security Engineer

Jobgether • Canada

Remote
CAD 146,000 - 190,000
Remote work in Canada
Health, dental, vision benefits
Disability coverage
+3
Cyber Use Case Developer
Cyber Use Case Developer

Jobtailor • Toronto

On-site
CAD 90,000 - 130,000
Security Advisor Specialist, Offensive Security (Global Red Team)
Security Advisor Specialist, Offensive Security (Global Red Team)

Intact • Saint-Hyacinthe

Hybrid
CAD 80,000 - 110,000
Competitive financial rewards
Employee Share Purchase Plan
Comprehensive pension and benefits package
+1
Cyber Security Engineer - Montreal
Cyber Security Engineer - Montreal

Yeah! Global • Montreal (administrative region)

On-site
CAD 80,000 - 100,000
Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

10 Percent Recruiting Ltd. • Canada

Hybrid
CAD 110,000 - 140,000