IT Security Engineer

Socket.dev

Burnaby

On-site

CAD 90,000 - 130,000

Full time

13 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Socket.dev in Burnaby, BC, is seeking an IT Security Engineer to design, implement, and monitor security controls across on‑premises and cloud environments, supporting security operations, incident response, and risk management. You will review architectures, assess risks, coordinate vulnerability management and third‑party testing, and provide training to teams.

The role requires strong knowledge of standards and tools such as XDR and Qualys, and the ability to work both independently and as

Qualifications

  • A bachelor's in computer science or IT Security with equivalent training and certifications plus 3+ years of progressive security experience.
  • Experience with SIEM, DLP, Vulnerability Management, Forensics, IDS/IPS, privilege and identity management, software and security architectures; familiarity with NIST, CIS Controls, Benchmarks, ISO 27001; Microsoft XDR and Qualys preferred.
  • Thorough knowledge of information security principles and practices.
  • Knowledge of SDLC, CMMI, Change Mgmt, ITIL, OWASP, encryption methods and techniques.
  • Understanding of network and host-based intrusion detection, non-repudiation, access control, SSL/TLS, PKI, auditing architectures.
  • Understanding risk analysis, policies, regulatory environments, and security architectures.
  • Strong communication, analytical, problem-solving, and critical-thinking skills.
  • Attention to detail, organizational skills, and ability to manage competing priorities.
  • Ability to work independently and collaboratively in a team.
  • Proven judgment and confidentiality with sensitive information.
  • Excellent verbal and written English communication skills.
  • Canadian work experience or experience with Canadian industries.

Responsibilities

  • Design, implement, and maintain security controls across enterprise technologies.
  • Review architectures and changes for alignment with security standards and business needs.
  • Assess control effectiveness and recommend improvements to reduce risk.
  • Monitor and respond to security events, incidents, and vulnerabilities; coordinate remediation.
  • Coordinate third-party penetration testing; track remediation findings.
  • Perform incident investigations, root-cause analysis, and post-incident reviews.
  • Support development and maintenance of security policies, standards, and procedures.
  • Assist audits and remediation of findings from internal/third-party reviews.
  • Maintain security risk, exception, and corrective action records.
  • Provide security guidance, awareness, and training to staff.
  • Support business continuity, disaster recovery, and cyber resilience planning.
  • Monitor threats and drive process improvements, automation, and reporting.
  • Occasional travel and after-hours support for incidents and maintenance.

Skills

SIEM
Vulnerability Management
Threat Modeling
EDR/MDR
Identity & Access Management
Security Architecture
Network Security

Education

Bachelor's degree in Computer Science or IT Security

Tools

Microsoft XDR
Qualys
IDS/IPS

Job description

The IT Security Engineer is responsible for safeguarding the organization's information systems, infrastructure, applications, and data by designing, implementing, monitoring, and improving security controls across on-premises and cloud environments. The role supports security operations, incident response, vulnerability management, risk and compliance activities, and provides technical guidance to ensure the organization's cybersecurity posture, resilience, and operational effectiveness.

Key responsibilities
  • Design, implement, and maintain security controls across enterprise technologies, ensuring security requirements are integrated throughout the system lifecycle.

  • Review architectures, configurations, and technology changes to ensure alignment with security standards, business requirements, and best practices.

  • Assess control effectiveness and recommend improvements to strengthen security and reduce risk.

  • Monitor, investigate, and respond to security events, incidents, and vulnerabilities, including coordinating remediation and recovery activities.

  • Conduct security assessments, vulnerability reviews, and coordinate third-party penetration testing activities; prioritize, track, and validate remediation of identified findings.

  • Perform incident investigations, root cause analysis, reporting, and post-incident reviews to improve security resilience.

  • Conduct security risk assessments and support the development and maintenance of security policies, standards, procedures, and documentation.

  • Support internal and external audits, compliance activities, third-party security reviews, and remediation of identified findings.

  • Maintain security risk, exception, and corrective action records and monitor alignment with organizational and regulatory requirements.

  • Provide security guidance, awareness, and training to employees and technical teams.

  • Support business continuity, disaster recovery, cyber resilience, and crisis management planning and testing.

  • Monitor emerging threats and contribute to process improvements, automation, reporting, and other initiatives that enhance security effectiveness.

  • Occasional travel and after-hours support may be required for critical incidents, system maintenance, testing activities, and business continuity needs.

Qualifications, Job Function, Technical Knowledge, and Skills
  • A bachelor's in computer science or IT Security or a combination of equivalent professional training and security industry certifications, combined with a minimum of three years related work experience in a position(s) with increasing responsibility may be accepted.

  • Experience in information technology that encompasses a variety of roles, such as working with SIEM, Data Loss Protection, Vulnerability Management, Forensics, IDS/IPS, privilege and identity management as well as software and security architectures, and industry standards such as NIST, CIS Controls and Benchmarks, and ISO 27001. Experience with security tools such as Microsoft XDR (EDR/MDR) and Qualys vulnerability management is preferred.

  • Thorough knowledge of information security principles and practices.

  • Knowledge of industry standard processes (SDLC, CMMI, Change Mgmt, ITIL, OWASP), methodologies, standards, best practices and encryption methods and techniques.

  • Understanding of network and host-based intrusion detection (NDS/HDS), non-repudiation, access control, network security, threat modelling, SSL / TLS, Digital Signatures, auditing architectures, application vulnerabilities and Public Key Infrastructure (PKI) is desired.

  • Understanding of methods and models within information security & compliance to include risk analysis and mitigation, policies, regulatory environment, technologies, architecture, and best-practices.

  • Strong communication, analytical, problem-solving, and critical-thinking skills.

  • Demonstrated attention to detail, organizational skills, and ability to manage competing priorities.

  • Ability to work independently and collaboratively in a team environment.

  • Proven ability to exercise sound judgment and maintain confidentiality when handling sensitive information.

  • Excellent verbal and written English communication skills.

  • Previous Canadian work experience or experience working directly with Canadian industries.

DP World (Canada) Inc. fosters diversity, inclusion and belonging across our organization. We are a proud equal opportunity employer with a commitment to creating a respectful, inclusive, and barrier free workplace. We welcome and encourage applications from people with disabilities. Accommodation may be available upon request for candidates taking part in all aspects of the selection process. We welcome applicants to advise us on your preferred pronouns in your application

All aspects of employment, including the decision to hire and promote, are based on applicants’ qualifications, merits, competence, and performance without regard to any characteristic related to diversity.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Quantum Technology Recruiting Inc. (QTR) • Toronto

Hybrid
CAD 125,000 - 135,000
IT Security Analyst
IT Security Analyst

Pomerleau • Montreal (administrative region)

Hybrid
CAD 80,000 - 120,000
RRSP with up to 5% employer matching
Hybrid work model for corporate roles
Employee stock ownership program
+3
Senior Consultant, Security & Privacy
Senior Consultant, Security & Privacy

ROSS • Canada

On-site
CAD 70,000 - 90,000
Senior Information Security Analyst
Senior Information Security Analyst

IKO North America • Mississauga

On-site
CAD 106,000 - 120,000
Competitive compensation
Health care
Challenging workplace
+1
Enterprise Security Specialist
Enterprise Security Specialist

Cprvision • Whitchurch-Stouffville

Hybrid
CAD 120,000 - 135,000
Flexible working arrangements
Comprehensive benefits package
Annual bonus program
+1
Security Engineer (Ethical Hacker)
Security Engineer (Ethical Hacker)

8B Education Investments • Toronto

On-site
CAD 90,000 - 120,000
Senior Cloud Security Engineer, Information Security
Senior Cloud Security Engineer, Information Security

Peoples Group • Calgary

Hybrid
CAD 140,000 - 190,000
Hybrid work environment
Profit sharing
RRSP matching
+2
Manager, IT Security
Manager, IT Security

J.D. Irving • New Brunswick

On-site
CAD 90,000 - 120,000
Professional development opportunities
Inclusive workplace culture
Senior Cloud Security Engineer, Information Security
Senior Cloud Security Engineer, Information Security

Peoples Group • Vancouver

Hybrid
CAD 150,000 - 190,000
Hybrid work environment
Competitive salary
Profit sharing
Senior Cloud Security Engineer, Information Security
Senior Cloud Security Engineer, Information Security

Peoples Group • Toronto

Hybrid
CAD 140,000 - 180,000