Senior Security Engineer

CSC-Generatio

Canada

Remote

CAD 120,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Remote work
Private medical insurance
Life insurance
Paid time off
Monthly allowances
Employee discounts
Professional growth opportunities

Job summary

Backcountry is seeking a Senior Cybersecurity Engineer to protect and harden multi-cloud platforms, Kubernetes workloads, and CI/CD pipelines powering its digital commerce ecosystem across AWS, GCP, and Azure Entra ID.

You will own security baselines, drive DevSecOps, and lead incident response across cloud, container, and identity layers. Within six months you will improve pipeline security posture, tighten access controls, and establish governance for AI tooling.

Qualifications

  • 5+ years in SecDevOps, cybersecurity, or related roles.
  • Hands-on AWS and GCP security configurations.
  • Experience with AI tooling in production or automation workflows.
  • Experience managing Kubernetes and containerized workloads.
  • 3+ of IAM, service mesh, GitOps, EDR/XDR, OAuth/OIDC, IaC and Git workflows.
  • Strong networking knowledge (TCP/IP, DNS, firewalls).
  • Scripting/automation (Python, PowerShell, Bash).

Responsibilities

  • Protect and monitor infrastructure in AWS and GCP; review IaC security.
  • Secure containerized workloads on EKS and GKE; manage GitOps security.
  • Integrate security into CI/CD with GitHub Actions; manage dependencies and risks.
  • Administer Azure Entra ID and enforce least-privilege access; conduct access reviews.
  • Manage Microsoft Defender XDR; monitor alerts and lead incident response.
  • Secure Microsoft 365; implement DLP and email security controls.
  • Define secure baselines for Linux/Windows VMs; patching and remediation.
  • Evaluate secure AI tool usage and data handling across the org.

Skills

SecDevOps
Cybersecurity
Cloud security
Kubernetes
AI tooling
GitOps
Incident response
IAM
Python scripting

Tools

AWS
GCP
Azure Entra ID
Defender XDR
ArgoCD
GitHub Actions
Terraform
Istio

Job description

Adventure is our Culture. Join a team that celebrates a lifestyle as bold as the terrain we love. At Backcountry, we are rooted in adventure, recognition, and wellbeing on and off the mountain. We spotlight employee stories, celebrate milestones, and offer exclusive outdoor perks. Whether you are at HQ, in a retail store, or remote, you will be part of a team that thrives on energy, exploration, and connection.

Reports to: Information Security Manager

Location: Canada - Remote

About the Role

Backcountry needs a senior security engineer to protect and harden the multi-cloud platforms, Kubernetes workloads, and CI/CD pipelines that power its digital commerce ecosystem. The role spans AWS, GCP, Azure Entra ID, Microsoft Defender XDR, and GitOps tooling — with a growing mandate to govern secure AI adoption across engineering and business teams.

As Senior Cybersecurity Engineer, you will define security baselines, drive DevSecOps practices, and lead incident response across cloud, container, and identity layers. Within your first six months, you will have measurably improved pipeline security posture, tightened identity and access controls, and established governance guardrails for AI tooling.

This is a lean team. You will own a lot, move fast, and make decisions with full end-to-end responsibility.

What You\'ll Do
  • Protect and monitor infrastructure hosted in AWS and GCP; configure and maintain AWS WAF/CDN and GCP Cloud Armor rules; review Infrastructure as Code for security best practices
  • Secure containerized workloads across EKS and GKE clusters; implement Istio mesh policies (mTLS, authorization, traffic controls); manage GitOps delivery security through ArgoCD (RBAC, secrets, drift detection)
  • Integrate security into CI/CD pipelines using GitHub Actions; manage dependency and supply-chain risk via Dependabot; collaborate with engineering teams on secure development practices
  • Administer and secure Azure Entra ID and SSO configurations; enforce least-privilege access across cloud, Kubernetes, and SaaS platforms; conduct periodic access reviews
  • Manage Microsoft Defender XDR for endpoint and identity security; monitor alerts, investigate incidents, and lead incident response efforts across cloud, Kubernetes, and identity layers
  • Secure the Microsoft 365 environment (Exchange Online, SharePoint, OneDrive, Teams); implement Data Loss Prevention (DLP) policies and email security controls
  • Define and enforce secure baselines for Linux and Windows VMs, including patching, configuration management, and vulnerability remediation
  • Evaluate and govern the secure use of AI tools (Claude, OpenAI) and automation platforms (n8n) across the organization, including data handling, access controls, and leakage risks
Required Qualifications
  • 5+ years of experience in SecDevOps, Cybersecurity, or related roles
  • Hands-on, production-level experience with AWS and GCP security configurations
  • Practical AI experience with tools such as Claude, OpenAI, or similar in production or automation workflows
  • Demonstrated experience managing Kubernetes and containerized workloads
  • Demonstrated experience in at least 3 of the following: Identity and Access Management (Azure Entra ID, SSO); service mesh technologies (Istio or similar); GitOps tooling (ArgoCD or similar); Endpoint Detection and Response (EDR) / XDR solutions; OAuth, OIDC, SSO; IaC (Terraform preferred) and Git/GitHub workflows
  • Solid understanding of networking fundamentals (TCP/IP, DNS, firewalls, VPNs)
  • Scripting and automation skills (Python, PowerShell, or Bash)
  • Strong analytical, problem-solving, and communication skills
Preferred Qualifications
  • Security certifications such as CISSP, CISM, AWS Security Specialty, GCP Security Engineer, CKS, SC-200, OSCP, or CEH
  • Background in compliance frameworks (SOC 2, ISO 27001, PCI-DSS, GDPR)
  • Experience with workflow-automation platforms such as n8n
Why Join

The people who do best here are builders. They take ownership, move fast, and want to see the direct impact of their work.

  • Cross-Functional Impact: Your security decisions will touch every engineering team and cloud platform across the business — from infrastructure and CI/CD to AI adoption governance.
  • AI-First Skill Building: Get hands-on with advanced AI tools and automation platforms while building the security frameworks that govern their safe use across the organization.
  • End-to-End Ownership: Own security strategy across a multi-cloud, Kubernetes-native stack — from threat detection and incident response to identity management and policy enforcement.
  • Competitive Benefits: We offer an attractive benefits package including primarily remote work, private medical and life insurance, additional paid time off, monthly allowances and reimbursements, employee discounts, and opportunities for professional growth.
Interview Process
  1. Recruiter Screen - A 30-minute conversation with our recruiting team to align on the role, your background, and what you are looking for.
  2. Hiring Manager Interview - Conversation with the Information Security Manager focused on your security engineering experience, multi-cloud background, and approach to DevSecOps.
  3. Technical Challenge - A short AI or security-focused challenge so we can understand how you approach problems and execution.
  4. Technical Deep-Dive Interview - Deep-dive interviews with Backcountry engineering and security leadership focused on your hands-on experience across Kubernetes, cloud security, and incident response.
  5. In-Person Interview - We\'d like to meet you at our Toronto office. Details and logistics will be arranged with your recruiter.
  6. Reference Checks - Conducted in parallel with the final stages where possible.
  7. Offer - We move quickly for the right candidate.

Interview process is subject to change. Any updates will be communicated promptly and clearly.

$120,000 - $130,000 a year

CSC Generation is an equal opportunity employer. We do not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other characteristic protected by law.

The CSC Generation family of brands is committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need assistance or accommodation due to a disability, please contact hrbenefits@cscshared.com.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cloud Security Engineer, Information Security
Senior Cloud Security Engineer, Information Security

Peoples Group • Calgary

Hybrid
CAD 140,000 - 190,000
Hybrid work environment
Profit sharing
RRSP matching
+2
Senior Cloud Security Engineer, Information Security
Senior Cloud Security Engineer, Information Security

Peoples Group • Vancouver

Hybrid
CAD 150,000 - 190,000
Hybrid work environment
Competitive salary
Profit sharing
Senior Cloud Security Engineer, Information Security
Senior Cloud Security Engineer, Information Security

Peoples Group • Toronto

Hybrid
CAD 140,000 - 180,000
Senior Security Engineer
Senior Security Engineer

fispan • Vancouver

On-site
CAD 130,000 - 160,000
Extended health and dental benefits
Paid time off
Savings and retirement plan matching
+5
Senior Security Engineer, Enterprise Security
Senior Security Engineer, Enterprise Security

United States Digital Space LLC • Toronto

On-site
CAD 133,000 - 209,000
Senior Site Reliability Engineer
Senior Site Reliability Engineer

AlleyCorp • Canada

On-site
CAD 197,000 - 225,000
Stock options
Health benefits
Unlimited PTO
+2
Senior Security Engineer
Senior Security Engineer

EQ Bank | Equitable Bank • Toronto

Hybrid
CAD 100,000 - 140,000
Competitive discretionary bonus
Market-leading RRSP match program
Medical, dental, vision, life, and disability benefits
+3
Engineer III, Cloud - Platform (Toronto, Hybrid)
Engineer III, Cloud - Platform (Toronto, Hybrid)

CrowdStrike • Toronto

Hybrid
CAD 115,000 - 165,000
Market-leading compensation
Equity opportunities
Wellness programs
+5
Engineer III, Cloud - Platform (Hybrid)
Engineer III, Cloud - Platform (Hybrid)

Socket.dev • Toronto

Hybrid
CAD 115,000 - 165,000
Equity awards
Wellness programs
Generous vacation
Cybersecurity Engineer
Cybersecurity Engineer

Xanadu • Toronto

On-site
CAD 80,000 - 100,000
Equity
Standard benefits