Senior Security Engineer, Detection and Response

Jobgether SRL

Canada

Remote

CAD 137,000 - 171,000

Full time

18 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Annual bonus
Health insurance
Remote work stipend
Professional development stipend
Equity in a publicly traded company
Parental leave
Floating holidays
Retirement savings plan

Job summary

Jobgether SRL is partnered to hire a Senior Security Engineer, Detection and Response based in Canada. You will lead investigations, drive detection engineering, and mentor junior engineers in a fully remote role across Ontario or British Columbia.

You will develop AI-driven tools, automation, and playbooks to strengthen incident response and threat detection. You will collaborate with security, infra, and engineering teams, manage on-call rotations, and shape operational metrics to improve

Qualifications

  • 5+ years in security operations focused on incident response and detection engineering.
  • Experience in threat hunting, cyber threat intel, and digital forensics is valued.
  • Solid knowledge of EDR, NDR, CSPM, EASM, SIEM, SOAR, and cloud security (AWS).

Responsibilities

  • Lead security investigations across North American time zones.
  • Maintain and optimize detection logic across security data sources.
  • Design detection coverage maps and monitor gaps.
  • Develop and track security KPIs with leadership.
  • Create incident response runbooks and automation playbooks.

Skills

Security operations
Incident response
Threat hunting
Threat intelligence
Digital forensics
Cloud security

Education

Industry certifications in incident response (GCIH GCFA GIME OSIR GEIR)

Tools

EDR
NDR
SIEM
SOAR
CSPM
EASM
KAPE
EnCase
FTK
Volatility
Sigma
YARA
Terraform
AWS GuardDuty

Job description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Security Engineer, Detection and Response based in Canada.

Join a Security Operations and Response team focused on strengthening enterprise security through advanced detection and incident response capabilities.

You will lead complex security investigations across North American time zones and serve as a senior technical responder during critical incidents.

The role combines detection engineering, threat hunting, incident response, and security automation in a cloud-native environment.

You will help shape next-generation security operations by developing AI-driven tools and automated response workflows.

Your work will directly improve threat visibility, reduce response times, and strengthen the organization’s overall security posture.

You will also mentor junior engineers and collaborate closely with security, infrastructure, and engineering stakeholders.

This is a fully remote opportunity available to professionals located in Ontario or British Columbia.

Accountabilities
  • Act as the lead security responder for North American time zones, triaging and investigating complex alerts and supporting the Cybersecurity Incident Response Team.
  • Participate in a 24x7x365 on-call rotation, providing senior-level expertise and escalation support during security events and incidents.
  • Engineer, maintain, and continuously optimize detection logic across multiple security data sources using threat modeling and current threat intelligence.
  • Design and maintain detection coverage maps to identify capabilities, visibility gaps, and areas requiring additional monitoring.
  • Develop and track security KPIs with leadership, including detection effectiveness, false-positive rates, and mean time to detect, respond, and recover.
  • Create and maintain incident response runbooks, standard operating procedures, and technical documentation to promote consistent response practices.
  • Build automation workflows and orchestration playbooks that improve detection engineering, threat hunting, and incident response efficiency.
  • Develop and leverage AI-driven tools to accelerate security investigations and strengthen Security Operations and Incident Response capabilities.
  • Conduct proactive, hypothesis-driven threat hunts across corporate and production environments.
  • Support the logging and monitoring infrastructure required for effective threat detection and investigation.
  • Mentor junior team members in security operations, detection engineering, and incident response methodologies.
Requirements
  • 5+ years of hands-on experience in security operations, with a strong focus on incident response and detection engineering.
  • Additional experience in threat hunting, cyber threat intelligence, and digital forensics is highly valued.
  • Strong investigative instincts and intellectual curiosity, with the ability to analyze anomalies, follow evidence trails, and reconstruct complex security incidents from fragmented data.
  • Solid technical expertise across enterprise security technologies, including EDR, NDR, CSPM, EASM, SIEM, SOAR, and cloud security platforms such as AWS GuardDuty.
  • Strong knowledge of threat intelligence frameworks, particularly MITRE ATT&CK, and experience applying them to assess detection capabilities and coverage gaps.
  • Demonstrated ability to develop threat detection use cases based on telemetry analysis, environment baselining, actionable threat intelligence, and incident response findings.
  • Experience identifying detection and visibility gaps across infrastructure and collaborating with stakeholders to improve logging and detection content.
  • Strong understanding of AWS cloud services and containerization technologies.
  • Industry certifications in incident response or related disciplines, such as GCIH, GCFA, GIME, OSIR, or GEIR, are strongly preferred.
  • Programming experience with Python, JavaScript, or Go is an asset.
  • Familiarity with infrastructure-as-code tools such as Terraform is an asset.
  • Experience with forensic tools such as KAPE, EnCase, FTK, or Volatility is a plus.
  • Experience with Detection-as-Code technologies such as Sigma or YARA is a plus.
  • Experience conducting Purple Team exercises, validating vulnerabilities or reported bugs, and working with observability or SRE tools and processes is beneficial.
Benefits
  • Competitive base salary of CAD 136,800–171,000, depending on location, skills, and experience.
  • Annual bonus opportunities based on individual and organizational performance.
  • Multiple health insurance options.
  • Flexible vacation time plus additional floating holidays.
  • Retirement savings program with company contributions.
  • Equity in a publicly traded company.
  • Monthly stipend to support remote work.
  • Annual professional development stipend.
  • Family-forming benefits.
  • Generous parental leave with base salary top-up.
  • Fully remote work within Ontario or British Columbia, Canada.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Sr. Cyber Security Analyst
Sr. Cyber Security Analyst

10 Percent Recruiting Ltd. • Canada

Hybrid
CAD 110,000 - 140,000
Senior Security Engineer
Senior Security Engineer

fispan • Vancouver

On-site
CAD 130,000 - 160,000
Extended health and dental benefits
Paid time off
Savings and retirement plan matching
+5
Staff AI Developer
Staff AI Developer

Jobgether SRL • Canada

Remote
CAD 75,000 - 246,000
Remote work from Canada
RRSP matching
Private health coverage
+2
Remote Senior Incident Response Analyst, MDR
Remote Senior Incident Response Analyst, MDR

Sophos • Milton

Remote
CAD 131,000 - 219,000
Bonus eligibility
Comprehensive benefits
Senior Security Operations Analyst, Detection & Response
Senior Security Operations Analyst, Detection & Response

Financeit • Toronto

On-site
CAD 110,000 - 125,000
Hybrid workplace options
Competitive pay and bonus
RRSP matching
+3
Senior Cybersecurity Specialist - Incident Response
Senior Cybersecurity Specialist - Incident Response

Colonial Group • Toronto

On-site
CAD 90,000 - 120,000
Senior Cloud Security Engineer, Information Security
Senior Cloud Security Engineer, Information Security

Peoples Group • Calgary

On-site
CAD 140,000 - 190,000
Hybrid work environment
Profit sharing
RRSP matching
+2
Cybersecurity Analyst / Incident Response (IR) →
Cybersecurity Analyst / Incident Response (IR) →

Cyberwall Inc • Vaughan

Hybrid
CAD 85,000 - 120,000
Diverse client exposure
Growth opportunities
Collaborative team
Security Engineer II - Identity and Access Management
Security Engineer II - Identity and Access Management

Jobgether SRL • British Columbia

Hybrid
CAD 104,000 - 130,000
Health insurance
Annual bonus opportunities
Remote stipend
+5
Security Operations Analyst - Copperleaf
Security Operations Analyst - Copperleaf

IFS • Toronto

On-site
CAD 70,000 - 80,000
Flexible paid time off
Medical, dental, & vision insurance
RRSP with company contribution
+1