Security Platform Engineer (SIEM)

Sun Life

Southwestern Ontario

Hybrid

CAD 65,000 - 105,000

Full time

12 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid work environment
Wellness programs
Career path opportunities

Job summary

Sun Life is seeking a Security Platform Engineer (Security Visibility) to support planning, design, and monitoring of security technologies across Sun Life’s platforms. You will work with Enterprise Infrastructure, IT operations, and application teams to identify risks and propose countermeasures, leading complex security problem solving.

You will analyze information systems with diverse cybersecurity techniques, maintain SIEM capabilities, and participate in 24x7 incident response.

Qualifications

  • IT degree or diploma in a related field or equivalent work experience.
  • Minimum 2–5 years in information security and engineering with enterprise security tech.
  • Experience with SIEM (QRadar or Splunk ES) and threat detection tools.
  • Knowledge of NIST/ISO 27000x security frameworks.

Responsibilities

  • Support and manage the SIEM (Splunk Enterprise Security) within the Security Visibility squad.
  • Analyze systems using cybersecurity techniques and lead security initiatives and POC/POV for new tech.
  • Support and maintain security technologies deployed within Sun Life.
  • Implement risk-driven security controls and provide SME during audits.
  • Investigate and respond to security incidents; participate in 24x7 on-call support and major incident calls.
  • Identify business risks and recommend mitigation strategies.
  • Manage capacity and resiliency of security systems protecting data.
  • Collaborate with security peers, vendors, and Sun Life teams to improve posture.
  • Use JIRA/Confluence to plan, estimate, and track security stories; document changes.

Skills

SIEM Expertise
Cloud Security
Incident Response
Threat Detection
AWS/Azure
Security Policy

Education

IT Degree

Tools

QRadar
Splunk ES
IDS/IPS
JIRA/Confluence

Job description

You are as unique as your background, experience and point of view. Here, you'll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll have new and exciting opportunities to make life brighter for our Clients - who are at the heart of everything we do.

At Sun Life, we’re driven by our Purpose: helping our Clients achieve lifetime financial security and live healthier lives. Our values shape how we work: caring, authentic, bold, inspiring, and impactful.

When you join Sun Life, you’ll work with passionate colleagues and empowering leaders who support your growth and celebrate your contributions, so you can make a meaningful difference in our Clients' lives.

Discover how you can make a difference in the lives of individuals, families and communities around the world.

Job Description
About the role

The Security Platform Engineer (Security Visibility) is responsible for assisting the Sr Platform Engineer in planning, designing, implementing, and monitoring security technologies and projects that support Sun Life’s security policies and procedures. Your primary responsibilities will be supporting in-scope Platform and developing use case scenarios, enhancing the security of Sun Life’s corporate and production systems. You will work closely with Enterprise Infrastructure, IT operations, Enterprise Architecture, and application development teams to identify risks to the business and assist in developing security solutions to protect customer and financial information.

The successful candidate must be able to interpret complex information, adapt as needed and have a deep understanding of security risks, data impact and controls to help mitigate the risk and provide countermeasures.

The successful candidate is strong in multiple Information Security domains and is expected to lead the efforts to solve complex security problems.

What will you do
  • Support and manage the SIEM (Splunk Enterprise Security) within our Security Visibility squad
  • Analyze information systems utilizing various cybersecurity techniques and lead security initiatives and enterprise level projects implementing security solutions and performing POC/POV for new technologies.
  • Responsible to support and maintain new and existing security technologies that are deployed within Sun Life and owned by Security Visibility..
  • Implement risk driven security controls and provide SME (Subject Matter Expertise) during Audit.
  • Investigate and respond to security incidents, adhering to defined SLA’s. Participate in teams 24x7 on-call support and be required to join major incident management calls to provide support and consultation.
  • Identify risks to the business and recommend strategies to address those risks.
  • Manage the capacity and resiliency of security systems protecting Sun Life’s internal and client data.
  • Collaborate and build trust with security peers, vendors, and other Sun Life teams to enhance security posture and best practices.
  • A change catalyst for Digital transformation, using JIRA, Confluence, estimating stories, setting definition of done, completing and tracking story updates and assignments.
  • Smoothly transition and operationalize projects and products. This includes developing roles & responsibilities (RACI), completing product documentation and educating the teams who will be performing BAU (Business as usual) the day-to-day work.
  • Document, update and maintain cyber security playbooks, policies and knowledge base articles used to support the established Incident Management and CSIRT processes.
  • Continuously improve operational and security platform processes.
What you need to succeed
  • An Information Technology University degree/college diploma in related discipline(s) or equivalent work experience.
  • Minimum 2-5 years Information security and engineering experience with enterprise level security technologies in the one or more areas of: Perimeter, Endpoints, Crypto, Cloud, Email Security, Security Visibility, and Automation and Orchestration.
  • Proven experience with Infrastructure Visibility related technologies – SIEM (QRadar or Splunk ES), IDS/NDR, or threat simulation tools.
  • Broad exposure to multiple security disciplines and in-depth exposure in Incident Response or Detection Engineering.
  • Knowledge of a broad range of security controls and risk management frameworks NIST & (ISO) 2700x standards.
  • Experience with end-point detection and response, intrusion detection, certificate management, email security and web content filtering technologies.
  • Experience planning, researching, and developing security policies, standards, and procedures.
  • Experience in deploying enterprise level technology via managed projects using Scrum and Kanban methodologies.
  • Knowledge of networking technologies, firewalls, web application firewalls and intrusion detection and prevention systems.
  • Knowledge of AWS cloud technologies.
  • Knowledge of disaster recovery, technologies, and methods.
Individual skills
  • Able to work independently with high degree of ambiguity and deliver expected outcomes, be focused on the end deliverables, and build trust with internal clients and peers.
  • Technical Skills – Pursues training and development opportunities; Shares expertise with others; Sound knowledge of security technologies for both Cloud and On Premise.
  • Strong leadership and teamwork skills - Motivates others to perform well; effectively influences actions of others; accepts feedback from others.
  • Pragmatic understanding of security problems, as a mix of technology and process issues, with the ability to pursue solutions at both layers within the organization.
  • Strong oral and written communicator with the ability to communicate security technical issues to peers and management.
Additional skills
  • Problem Solving – Identifies and resolves problems in a timely manner; Gather and analyzes information skillfully; Develops alternative solutions. Exceptional troubleshooting skills.
  • Analytical – Synthesizes complex or diverse information; collects and researches data.
  • Critical Thinking – Uses logic and reasoning to identify alternative solutions/approaches to problems.
  • Strong practical knowledge of AWS and Microsoft Azure cloud technologies and services.
  • Solid understanding of existing and emerging Information Security technologies.
  • Self- Starter, strategic thinker in maturing deployed security technologies to ensure full capabilities are explored to meet enterprise security requirements.
  • Strong investigative mindset with acute attention to detail, sense of ownership, urgency, and drive.
What’s in it for you
  • We’re honored to be recognized as a 2024 Best Workplaces in Ontario by Great Place to Work Canada.
  • We are thrilled to be recognized by Excellence Canada with their top-level certification, the Canada Order of Excellence for Mental Health at Work, for prioritizing employee well-being, fostering a positive work culture, and achieving excellence in mental health.
  • We’re proud to be recognized as a company with a 2023 Most Trusted Executive team by Great Place to Work Canada.
  • Wellness programs that support the three pillars of your health – mental, physical, and financial
  • The opportunity to move along a variety of career paths with amazing networking potential.
  • As a hybrid organization, you and your leader use business and Client needs to choose where you work, at home or in the office.
Clearance

In addition to a law enforcement inquiry and a credit check, as part of your application, the Government of Canada will ask if you lived or travelled outside of Canada for 6-consecutive months during the last 5 years, and you must account for all activities during this time. Important: Obtaining Reliability Status Clearance within a reasonable amount of time is a condition required to start employment for this role at Sun Life.

Must be able to satisfactorily complete applicable background checks prior to the start date and during employment, in accordance with Sun Life's policies and practices.

Salary Range

65,000/65 000 - 105,000/105 000

Job Category

IT - Technology Services

Posting End Date

26/08/2026

The Base Pay range is for the primary location for which the job is posted. It may vary depending on the work location of the successful candidate or other factors. In addition to Base Pay, eligible Sun Life employees participate in various incentive plans, payment under which is discretionary and subject to individual and company performance. Certain sales focused roles have sales incentive plans based on individual or group sales results.

Diversity and inclusion have always been at the core of our values at Sun Life. A diverse workforce with wide perspectives and creative ideas benefits our Clients, the communities where we operate and all of us as colleagues. We welcome applications from qualified individuals from all backgrounds.

Persons with disabilities who need accommodation in the application process, or those needing job postings in an alternative format, may e-mail a request to thebrightside@sunlife.com.

We are proud to be a hybrid organization that offers our employees the choice and flexibility to work from both the office and virtually based on the needs of the business, our Clients and you.

We may use artificial intelligence to support candidate sourcing, screening, interview scheduling.

We thank all applicants for showing an interest in this position. Only those selected for an interview will be contacted.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Platform Engineer (SIEM)
Security Platform Engineer (SIEM)

Sun Life • Toronto

Hybrid
CAD 65,000 - 105,000
Hybrid work model
Wellness programs
Career progression
Security Platform Engineer (SIEM)
Security Platform Engineer (SIEM)

Sun Life Financial • Toronto

On-site
CAD 90,000 - 130,000
Hybrid work model
Wellness programs
Diversity & inclusion culture
Senior Physical Security Intelligence and Investigations Specialist
Senior Physical Security Intelligence and Investigations Specialist

Sun Life Financial • Southwestern Ontario

Hybrid
CAD 80,000 - 128,000
Hybrid work model
Wellness programs
Information Security Advisor
Information Security Advisor

Sun Life Financial • Toronto

On-site
CAD 65,000 - 105,000
Hybrid work model
Wellness programs
Diversity and inclusion
Security Platform Developer, Security Automation (Python, Splunk SOAR)
Security Platform Developer, Security Automation (Python, Splunk SOAR)

Sun Life Financial • Toronto

Hybrid
CAD 65,000 - 105,000
Hybrid work model
Analyst, Data Loss Prevention
Analyst, Data Loss Prevention

Sun Life Financial • Toronto

On-site
CAD 65,000 - 105,000
Hybrid work arrangement
Flexible benefits
Senior Physical Security Intelligence and Investigations Specialist
Senior Physical Security Intelligence and Investigations Specialist

Sun Life Financial • Toronto

Hybrid
CAD 80,000 - 128,000
Best Workplace Canada 2026
Mental Health Canada certification
Wellness programs
+2
Security Platform Developer, Security Automation (Python, Splunk SOAR)
Security Platform Developer, Security Automation (Python, Splunk SOAR)

Sun Life • Toronto

Hybrid
CAD 65,000 - 105,000
Hybrid work arrangement
Wellness programs
Career growth opportunities
Strategy Analyst
Strategy Analyst

Sun Life Financial • Toronto

On-site
CAD 65,000 - 105,000
Hybrid work arrangement
Senior Risk Business Analyst
Senior Risk Business Analyst

Sun Life • Southwestern Ontario

Hybrid
CAD 80,000 - 128,000
Flexible benefits
Hybrid work model
Diversity and inclusion focus