Skip to content

Open nowPosted 11 hours ago

Senior Security Engineer, Detection and Response

Jobgether3,739 open roles

Where
Canada
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Security Engineer, Detection and ResponseJobgether · Canada
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Jobgether's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market. Jobgether postings stay open a median of 6 days.

Share of postings closed within
  1. 1.7%1 day
  2. 3.6%3 days
  3. 8.1%7 days
  4. 15.1%14 days
  5. 34.0%30 days
This job: posted 11 hours ago

Jobgether median: 6 days open

The posting

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Security Engineer, Detection and Response based in Canada.

Join a Security Operations and Response team focused on strengthening enterprise security through advanced detection and incident response capabilities. You will lead complex security investigations across North American time zones and serve as a senior technical responder during critical incidents. The role combines detection engineering, threat hunting, incident response, and security automation in a cloud-native environment. You will help shape next-generation security operations by developing AI-driven tools and automated response workflows. Your work will directly improve threat visibility, reduce response times, and strengthen the organization’s overall security posture. You will also mentor junior engineers and collaborate closely with security, infrastructure, and engineering stakeholders. This is a fully remote opportunity available to professionals located in Ontario or British Columbia.

Accountabilities

  • Act as the lead security responder for North American time zones, triaging and investigating complex alerts and supporting the Cybersecurity Incident Response Team.
  • Participate in a 24x7x365 on-call rotation, providing senior-level expertise and escalation support during security events and incidents.
  • Engineer, maintain, and continuously optimize detection logic across multiple security data sources using threat modeling and current threat intelligence.
  • Design and maintain detection coverage maps to identify capabilities, visibility gaps, and areas requiring additional monitoring.
  • Develop and track security KPIs with leadership, including detection effectiveness, false-positive rates, and mean time to detect, respond, and recover.
  • Create and maintain incident response runbooks, standard operating procedures, and technical documentation to promote consistent response practices.
  • Build automation workflows and orchestration playbooks that improve detection engineering, threat hunting, and incident response efficiency.
  • Develop and leverage AI-driven tools to accelerate security investigations and strengthen Security Operations and Incident Response capabilities.
  • Conduct proactive, hypothesis-driven threat hunts across corporate and production environments.
  • Support the logging and monitoring infrastructure required for effective threat detection and investigation.
  • Mentor junior team members in security operations, detection engineering, and incident response methodologies.
  • 5+ years of hands-on experience in security operations, with a strong focus on incident response and detection engineering.
  • Additional experience in threat hunting, cyber threat intelligence, and digital forensics is highly valued.
  • Strong investigative instincts and intellectual curiosity, with the ability to analyze anomalies, follow evidence trails, and reconstruct complex security incidents from fragmented data.
  • Solid technical expertise across enterprise security technologies, including EDR, NDR, CSPM, EASM, SIEM, SOAR, and cloud security platforms such as AWS GuardDuty.
  • Strong knowledge of threat intelligence frameworks, particularly MITRE ATT&CK, and experience applying them to assess detection capabilities and coverage gaps.
  • Demonstrated ability to develop threat detection use cases based on telemetry analysis, environment baselining, actionable threat intelligence, and incident response findings.
  • Experience identifying detection and visibility gaps across infrastructure and collaborating with stakeholders to improve logging and detection content.
  • Strong understanding of AWS cloud services and containerization technologies.
  • Industry certifications in incident response or related disciplines, such as GCIH, GCFA, GIME, OSIR, or GEIR, are strongly preferred.
  • Programming experience with Python, JavaScript, or Go is an asset.
  • Familiarity with infrastructure-as-code tools such as Terraform is an asset.
  • Experience with forensic tools such as KAPE, EnCase, FTK, or Volatility is a plus.
  • Experience with Detection-as-Code technologies such as Sigma or YARA is a plus.
  • Experience conducting Purple Team exercises, validating vulnerabilities or reported bugs, and working with observability or SRE tools and processes is beneficial.
  • Competitive base salary of CAD 136,800–171,000, depending on location, skills, and experience.
  • Annual bonus opportunities based on individual and organizational performance.
  • Multiple health insurance options.
  • Flexible vacation time plus additional floating holidays.
  • Retirement savings program with company contributions.
  • Equity in a publicly traded company.
  • Monthly stipend to support remote work.
  • Annual professional development stipend.
  • Family-forming benefits.
  • Generous parental leave with base salary top-up.
  • Fully remote work within Ontario or British Columbia, Canada.

How Jobgether works:

We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.

We appreciate your interest and wish you the best!

Why Apply Through Jobgether?

Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.

#LI-CL1

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Jobgether's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Jobgether's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Jobgether's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.