Staff Information Security Engineer (Threat Detection & Response)

Visier

Vancouver

On-site

CAD 140,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Visier in Vancouver is seeking a senior security engineer to own threat detection, response, and incident management end-to-end across multi-cloud, identity, and data services.

You will advance detection engineering, architect SIEM deployments (Splunk ES preferred), and mentor peers while integrating AI tools to accelerate defenses and reduce false positives.

Qualifications

  • 8+ years of hands-on information security experience designing and scaling threat detection architectures.
  • Proven incident response leadership with clear playbooks and runbooks.
  • Expertise in SIEM architectures and modern detection techniques.

Responsibilities

  • Own end‑to‑end threat detection and incident response across multi‑cloud and on‑prem environments.
  • Design, test, and tune detections using a Detection-as-Code framework mapped to MITRE ATT&CK.
  • Lead post‑incident reviews, translate findings into automated defenses, and mentor peers.

Skills

Incident Command
Threat detection
Incident response
Generative AI in security
Team mentoring

Tools

Splunk Enterprise Security
Detection-as-Code
MITRE ATT&CK

Job description

  • This senior technical IC role owns Visier’s threat detection and response capabilities end-to-end—driving the overarching strategy, tooling engineering, detection content, and incident response processes
  • Operating within a high-leverage team, you will scale our security capabilities through advanced engineering and AI, directly safeguarding our multi-cloud platform, corporate identity, and sensitive customer data from sophisticated global threats
  • Your work will ensure our defensive posture continuously evolves ahead of the threat landscape
  • Bring your 8+ years of deep information security expertise, mastery of modern SIEM architectures, and calm incident command experience to a team where you will operate with high autonomy
  • You will leverage your technical depth to champion engineering-first security practices, safely adopt generative AI workflows, and mentor peers to elevate our collective defense
  • End-to-End Pipeline Resilience: Design and operate a cohesive detection pipeline spanning multi-cloud, SaaS, identity, and endpoint telemetry to eliminate visibility gaps and ensure comprehensive logging infrastructure
  • Proactive Detection Engineering: Build, test, and tune high-fidelity detections using a modern detection-as-code framework mapped to the MITRE ATT&CK matrix, drastically minimizing false positives while prioritizing critical threat coverage
  • Incident Lifecycle Ownership: Author robust playbooks, runbooks, and escalation criteria that define how Visier handles security incidents, ensuring immediate containment during major events
  • Continuous Defensive Evolution: Lead blameless post-incident reviews and seamlessly translate post-mortem findings into automated detections and architectural hardening requirements
  • Cross-Functional Security Integration: Partner closely with software developers, SREs, and offensive security functions to convert emerging vulnerabilities and organization-specific risks into highly targeted defensive rules
  • AI-Accelerated Operations: Securely integrate and pioneer the use of Generative AI tools to accelerate detection development, alert triage, telemetry enrichment, and automated responses

Incident Command Presence: Proven experience acting as an Incident Commander, successfully steering cross-functional technical teams through high-pressure, complex, and high-visibility security incidents

Education & Experience: 8+ years of hands-on experience in information security, with a proven track record of designing, owning, and scaling threat detection architectures or major incident response programs

Cloud & Infrastructure Fluency: Deep technical experience analyzing and building threat coverages across enterprise multi-cloud environments (AWS, Azure, or GCP), core identity providers, and endpoint/EDR telemetry

Detection-as-Code Mastery: Expert-level detection engineering skills utilizing modern SIEM environments (Splunk Enterprise Security preferred) alongside fluent structural mapping to the MITRE ATT&CK framework

Security Automation & Scripting: Strong hands-on coding proficiency (Python, Go, or Bash) to build resilient automation pipelines, data enrichments, and automated response playbooks

Strategic Communication: Exceptional ability to translate deeply technical indicators of compromise and complex security risks into clear, high-level business insights for executive stakeholders

You make it easyYou roll up your sleevesYou never stop learningYou are proudYou play to win

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Information Security Engineer - Threat Detection & Response
Staff Information Security Engineer - Threat Detection & Response

Visier Inc. • Vancouver

Hybrid
CAD 130,000 - 170,000
Hybrid work model
Health benefits
Bonus eligibility
Vice President of Threat Research (Security Intelligence)
Vice President of Threat Research (Security Intelligence)

Elastic • Ottawa

Hybrid
CAD 240,000 - 340,000
Health coverage
Flexible location
Generous vacation days
+3
Manager, Security Incident Response
Manager, Security Incident Response

TechAlliance of Southwestern Ontario, London Economic Development Corporation • Toronto

On-site
CAD 80,000 - 120,000
Information Security Specialist – Attack Surface Reduction
Information Security Specialist – Attack Surface Reduction

Jobtailor • Toronto

On-site
CAD 120,000 - 160,000
Cyber Use Case Developer
Cyber Use Case Developer

Jobtailor • Toronto

On-site
CAD 90,000 - 130,000
Information Security Operations Lead
Information Security Operations Lead

Jobtailor • Toronto

On-site
CAD 110,000 - 150,000
Senior Cybersecurity Analyst
Senior Cybersecurity Analyst

Jobtailor • Boisbriand

On-site
CAD 90,000 - 130,000
Senior Software Developer
Senior Software Developer

Jobtailor • Ottawa

On-site
CAD 120,000 - 180,000
Senior Associate, Information Security
Senior Associate, Information Security

Publicis Groupe Holdings B.V • Toronto

On-site
CAD 100,000 - 120,000
Cyber Security Analyst
Cyber Security Analyst

koundinyasa Technology Services • Montreal (administrative region)

On-site
CAD 70,000 - 100,000