DDoS Security Engineer

Bell Cyber

Mississauga

On-site

CAD 80,000 - 100,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Bell Cyber is looking for a DDoS Security Engineer in Mississauga to oversee the design and operation of DDoS protection services across major platforms like Radware, Arbor, Cloudflare, and Akamai. The ideal candidate will have 3-7 years of experience in network security and DDoS mitigation, demonstrating strong incident management skills while maintaining the integrity of both customer-facing and internal services. Responsibilities include monitoring for threats, executing mitigation strategies, and developing operational procedures.

Qualifications

  • 3–7+ years in network security, DDoS protection, SOC, or managed security services.
  • Hands-on experience with DDoS mitigation platforms.
  • Strong understanding of TCP/IP, DNS, and HTTP/HTTPS.

Responsibilities

  • Manage DDoS protection services across multiple platforms.
  • Monitor environments for DDoS threats and anomalous behavior.
  • Coordinate with teams during active incidents.

Skills

Network security operations
Traffic analysis
Incident management
DDoS protection

Education

Bachelor’s degree in Cybersecurity, Computer Science, or equivalent

Tools

Radware
Arbor
Cloudflare
Akamai

Job description

The DDoS Security Engineer is responsible for the design, operation, monitoring, and optimization of Distributed Denial-of-Service protection services across multiple mitigation platforms, including Radware, Arbor, Cloudflare, and Akamai. This role focuses on protecting customer-facing and internal digital services from volumetric, protocol, and application-layer attacks through continuous monitoring, incident response, tuning, and service improvement.

The ideal candidate has strong experience in network security operations, traffic analysis, mitigation workflows, and customer-facing incident management within high-availability environments.

Salary

$80,000 to $100,000 per year

Key Responsibilities
  • Operate and manage DDoS protection services across Radware, Arbor, Cloudflare, and Akamai platforms.
  • Monitor customer environments for DDoS threats, anomalous traffic behavior, and service degradation.
  • Analyze attacks across Layer 3, Layer 4, and Layer 7, including volumetric floods, protocol abuse, and application-layer attacks.
  • Execute mitigation actions such as traffic diversion, scrubbing activation, ACL updates, rate-limiting, WAF tuning, and routing changes.
  • Coordinate with SOC, NOC, network engineering, cloud, and customer teams during active incidents.
  • Develop and maintain runbooks, playbooks, escalation procedures, and standard operating procedures for DDoS response.
  • Perform onboarding of new customers, including traffic baselining, protection profile tuning, DNS/routing integration, and validation testing.
  • Tune detection thresholds, mitigation policies, signatures, and protection profiles to reduce false positives and improve response speed.
  • Support always-on and on-demand DDoS protection models.
  • Produce incident reports, attack summaries, customer communications, and post-incident recommendations.
  • Track service availability, mitigation performance, SLA compliance, and operational KPIs.
  • Provide guidance on DDoS architecture, resilience design, and best practices for internet-facing services.
  • Work with vendors and internal teams on platform upgrades, policy enhancements, and issue resolution.
  • Contribute to continuous improvement of managed DDoS services, including automation and orchestration opportunities.
Required Qualifications
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Network Engineering, or equivalent experience.
  • 3–7+ years of experience in network security, DDoS protection, SOC, or managed security services.
  • Hands‑on experience with one or more of the following: Radware, Arbor, Cloudflare, Akamai.
  • Strong understanding of:
  • TCP/IP, UDP, ICMP, BGP, DNS, HTTP/HTTPS, CDN, proxy, and load‑balancing concepts
  • DDoS attack methods such as SYN floods, UDP floods, DNS amplification, NTP amplification, HTTP floods, bot‑driven application attacks, and SSL/TLS exhaustion
  • Traffic analysis using logs, packet captures, NetFlow/sFlow, and platform telemetry
  • Experience in incident handling and operational response in high-pressure environments.
  • Strong troubleshooting and analytical skills.
  • Excellent written and verbal communication skills for technical and customer-facing interactions.
Preferred Qualifications
  • Experience in a managed DDoS, MSSP, ISP, telco, or enterprise security operations environment.
  • Familiarity with cloud and hybrid environments, including public-facing application protection.
  • Experience with WAF, CDN, bot mitigation, and API protection capabilities.
  • Knowledge of routing-based mitigation, GRE tunneling, BGP diversion, and scrubbing center operations.
  • Experience with SIEM, SOAR, ticketing systems, and monitoring platforms.
  • Scripting or automation experience in Python, PowerShell, or REST API integrations.
  • Relevant certifications such as:
  • CISSP
  • CCNP Security / CCIE Security
  • GIAC certifications
  • Vendor-specific training or certifications in Radware, Cloudflare, Akamai, or Arbor
Core Competencies
  • DDoS detection and mitigation
  • Network traffic analysis
  • Incident response and escalation management
  • Security service onboarding and optimization
  • Documentation and reporting
  • Operational excellence under pressure
  • Rapid identification and mitigation of DDoS attacks
  • Accurate incident triage and escalation
  • Reduced false positives and improved mitigation tuning
  • Strong customer reporting and service communication
  • Reliable service onboarding and policy implementation
  • Continuous improvement in response time, service stability, and protection effectiveness
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Global DDoS Defense Architect
Global DDoS Defense Architect

Rumble • Toronto

On-site
CAD 132,000 - 158,000
Benefits
Equity
Senior Cyber Security Specialist
Senior Cyber Security Specialist

NDT Global GmbH & Co. • Quebec

On-site
CAD 110,000 - 150,000
Network Security Engineer
Network Security Engineer

Enterprise Solutions Inc. • Mississauga

On-site
CAD 90,000 - 120,000
Equal Opportunity Employer
Inclusive environment for all employees
Senior Software Developer
Senior Software Developer

Jobtailor • Ottawa

On-site
CAD 120,000 - 180,000
Senior Cyber Security Specialist
Senior Cyber Security Specialist

NDT Global • Quebec

On-site
CAD 110,000 - 170,000
Great long-term career prospects
Challenging tasks in innovative teams
Attractive compensation system
+1
Senior Infrastructure Engineer - DDOS
Senior Infrastructure Engineer - DDOS

Rumble • Toronto

On-site
CAD 132,000 - 158,000
Benefits
Equity
Cyber Security Analyst
Cyber Security Analyst

Arsenault • Ottawa

On-site
CAD 85,000 - 110,000
Network Security Support Engineer
Network Security Support Engineer

CloudFlare • Canada

On-site
CAD 90,000 - 120,000
Senior Cybersecurity Analyst
Senior Cybersecurity Analyst

Jobtailor • Boisbriand

On-site
CAD 90,000 - 130,000
Security Operations Specialists
Security Operations Specialists

CDW Canada • Mississauga

On-site
CAD 72,000 - 102,000
Market-competitive salary