Staff Information Security Engineer - Threat Detection & Response

Visier Inc.

Vancouver

Hybrid

CAD 130,000 - 170,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid work model
Health benefits
Bonus eligibility

Job summary

Visier Inc. seeks a senior security engineer to own threat detection and response across our multi-cloud platform, safeguarding customer data and identities. The role emphasizes engineering-first security, incident command, and mentoring peers, with a focus on scaling detections and automated responses.

You will lead detection development, incident playbooks, and cross-functional security initiatives, leveraging AI workflows to accelerate defense while maintaining calm under pressure.

Qualifications

  • 8+ years of hands-on information security experience with threat detection architectures or major incident response programs.
  • Expert-level detection engineering skills utilizing modern SIEM environments with mapping to the MITRE ATT&CK framework.
  • Extensive experience across multi-cloud environments (AWS, Azure, or GCP) and with core identity providers and EDR telemetry.
  • Proven Incident Commander experience leading cross-functional technical teams during high-visibility security incidents.
  • Strong coding proficiency (Python, Go, or Bash) to build resilient automation pipelines and playbooks.
  • Ability to translate indicators of compromise and risks into clear business insights for executives.

Responsibilities

  • Design and operate an end-to-end detection pipeline across multi-cloud and SaaS environments to close logging gaps.
  • Build, test, and tune high-fidelity detections mapped to MITRE ATT&CK; minimize false positives.
  • Author robust incident playbooks, runbooks, and escalation criteria for swift containment.
  • Lead post-incident reviews and translate findings into detections and hardening requirements.
  • Partner with developers, SREs, and offensive security to convert risks into targeted defenses.
  • Securely integrate AI tools to accelerate detection development and automated responses.

Skills

Threat detection
Incident response
SIEM
Cloud security
Automation
MITRE ATT&CK

Tools

Splunk Enterprise Security

Job description

Visier is the global leader in Workforce Intelligence that powers every people decision. We bring Workforce AI to life for HR departments through our award-winning, agentic AI technology by surfacing the insights leaders need to plan, decide, and act with confidence in the moments that matter most. As the market leader in people analytics, workforce planning, organizational design, and manager effectiveness solutions, we fuel smarter decision-making for organizations across the globe. Our mission is to help businesses lead with insight at scale as they continuously transform.

Founded in 2010 by the pioneers of business intelligence, we have over 85,000 customers in 75 countries—including enterprises like BASF, Panasonic, Domino’s Pizza, Experian, Amgen, eBay, and Ford Motor Company.

Position Overview

This senior technical IC role owns Visier’s threat detection and response capabilities end-to-end—driving the overarching strategy, tooling engineering, detection content, and incident response processes. Operating within a high-leverage team, you will scale our security capabilities through advanced engineering and AI, directly safeguarding our multi-cloud platform, corporate identity, and sensitive customer data from sophisticated global threats. Your work will ensure our defensive posture continuously evolves ahead of the threat landscape.

Bring your 8+ years of deep information security expertise, mastery of modern SIEM architectures, and calm incident command experience to a team where you will operate with high autonomy. You will leverage your technical depth to champion engineering-first security practices, safely adopt generative AI workflows, and mentor peers to elevate our collective defense.

What you’ll deliver
  • End-to-End Pipeline Resilience: Design and operate a cohesive detection pipeline spanning multi-cloud, SaaS, identity, and endpoint telemetry to eliminate visibility gaps and ensure comprehensive logging infrastructure.
  • Proactive Detection Engineering: Build, test, and tune high-fidelity detections using a modern detection-as-code framework mapped to the MITRE ATT&CK matrix, drastically minimizing false positives while prioritizing critical threat coverage.
  • Incident Lifecycle Ownership: Author robust playbooks, runbooks, and escalation criteria that define how Visier handles security incidents, ensuring immediate containment during major events.
  • Continuous Defensive Evolution: Lead blameless post-incident reviews and seamlessly translate post-mortem findings into automated detections and architectural hardening requirements.
  • Cross-Functional Security Integration: Partner closely with software developers, SREs, and offensive security functions to convert emerging vulnerabilities and organization-specific risks into highly targeted defensive rules.
  • AI-Accelerated Operations: Securely integrate and pioneer the use of Generative AI tools to accelerate detection development, alert triage, telemetry enrichment, and automated responses.
What you’ll bring to the table
  • Education & Experience: 8+ years of hands‑on experience in information security, with a proven track record of designing, owning, and scaling threat detection architectures or major incident response programs.
  • Detection-as-Code Mastery: Expert-level detection engineering skills utilizing modern SIEM environments (Splunk Enterprise Security preferred) alongside fluent structural mapping to the MITRE ATT&CK framework.
  • Cloud & Infrastructure Fluency: Deep technical experience analyzing and building threat coverages across enterprise multi-cloud environments (AWS, Azure, or GCP), core identity providers, and endpoint/EDR telemetry.
  • Incident Command Presence: Proven experience acting as an Incident Commander, successfully steering cross-functional technical teams through high-pressure, complex, and high-visibility security incidents.
  • Security Automation & Scripting: Strong hands‑on coding proficiency (Python, Go, or Bash) to build resilient automation pipelines, data enrichments, and automated response playbooks.
  • Strategic Communication: Exceptional ability to translate deeply technical indicators of compromise and complex security risks into clear, high-level business insights for executive stakeholders.
Values
  • You roll up your sleeves
  • You make it easy
  • You are proud
  • You never stop learning
  • You play to win
How We Work & What We Offer
  • Fixed hybrid work model: 3 days a week in office (Tuesday, Wednesday, Thursday)
  • Modern, pet-friendly downtown office spaces with collaborative areas and an on-site gym
  • Annual company All Hands in Vancouver, our entire organization travels to our Vancouver HQ for a week of team building, learning and breakout sessions
  • Competitive salary, and top-tier health and wellness benefits
  • Stock options and/or bonus based on your role, location, and employment type
  • Generous paid time off, including volunteering days and extra days over the December holidays
Compensation

The base pay range for this position in the 130,000 - 170,000 /year + bonus.

Benefits and working arrangements may vary depending on your seniority, location and employment type. The compensation offered will be determined by factors such as relevant qualifications, experience, knowledge and skills. Many of our positions are eligible for additional types of compensation (e.g., commission plans, bonus, etc.) which our Talent Acquisition team will share with you if you interview for the role.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Staff Information Security Engineer (Threat Detection & Response)
Staff Information Security Engineer (Threat Detection & Response)

Visier • Vancouver

On-site
CAD 140,000 - 190,000
Staff DevOps Developer
Staff DevOps Developer

Visie • Vancouver

Hybrid
CAD 130,000 - 180,000
Hybrid work model
Downtown Vancouver office
All Hands in Vancouver
+4
Senior Product Manager – Platform
Senior Product Manager – Platform

Visier Inc. • Vancouver

Hybrid
CAD 140,000 - 170,000
Hybrid work model
Downtown office
All-Hands in Vancouver
+3
Senior Data Developer
Senior Data Developer

Visier Inc. • Vancouver

Hybrid
CAD 110,000 - 140,000
Hybrid work model
Office in Vancouver
Health benefits
+2
Senior Security Engineer
Senior Security Engineer

fispan • Vancouver

On-site
CAD 130,000 - 160,000
Extended health and dental benefits
Paid time off
Savings and retirement plan matching
+5
Head of Workforce Planning & Go-to-Market Strategy
Head of Workforce Planning & Go-to-Market Strategy

Visier Inc. • Vancouver

On-site
CAD 180,000 - 240,000
VP, Threat Research - Security Intelligence
VP, Threat Research - Security Intelligence

Elasticsearch B.V. • Canada

On-site
CAD 300,000 - 476,000
Health coverage
Flexible locations & schedules
Generous vacation days
+2
Incident Response Senior Consultant
Incident Response Senior Consultant

Jobgether • Canada

Remote
CAD 100,000 - 165,000
Remote work opportunity
Equity opportunities
Professional development
Chief Services and Delivery Officer
Chief Services and Delivery Officer

Athena by Versaterm • Ottawa

On-site
CAD 180,000 - 240,000
Project and Release Manager - Canada
Project and Release Manager - Canada

DataVisor • Toronto

Remote
CAD 100,000 - 150,000
Work remotely
Paid Time Off
Health Benefits
+1