Cohere logo
Cohere

At Cohere, our mission is to build machines that understand the world, and to make them safely accessible to all.

Senior Security Operations Engineer

Security OperationsSecurity OperationsFull TimeRemoteSeniorTeam 11-50H1B SponsorCompany SiteLinkedIn

Location

Canada

Posted

86 days ago

Salary

0

Seniority

Senior

Job Description

Senior Security Operations Engineer

Cohere

• Serve as trusted advisor to team’s leadership and partner teams by clearly articulating business risks associated with security issues • Harden our cloud-native environments (AWS, OCI, GCP) by introducing secure by default designs and features into network, tooling, and processes • Own and drive resolutions for enabling engineers to design, build, and use infrastructure securely at scale by deploying secure architectures using infrastructure-as-code and reusable code libraries • Manage IAM / RBAC for cloud infrastructure, and partner with IT on streamling authentication/authorization to ensure unified access control across the board • Deploy and operationalize some of the security services and tools (eg: SIEM, SOAR, domain monitoring, endpoint tooling, cloud security tooling) • Respond to security incidents and harden environments post-incidents • Support control monitoring and remediation for compliance initiatives • Gather and analyze security metrics to address security issues with cross-team dependencies • Be a problem solver who is empathetic to developer concerns and will employ constructive and flexible approach to building innovative solutions.

Job Requirements

  • 5+ years previous experience in SecOps, DevSecOps, Cloud Security, Threat Detection & Response or software development with a strong focus on security tool onboarding and optimization
  • You’re a hands-on security engineer interested in automating controls
  • You have experience in managing cloud platforms (GCP, AWS, Azure, OCI) and Kubernetes environments
  • Familiiarty with CI/CD systems and SecOps workflows (Git, Terraform) in cloud environments (GCP, AWS, Azure, OCI)
  • You have experience with one or more of : infrastructure automation, network segmentation, system hardening, container and cloud security concepts, and security observability
  • You have experience with multiple languages such as Golang and/or Python
  • You are comfortable with ambiguity and are able to make informed decisions with little data
  • You employ a flexible and constructive approach when solving problems
  • You are able to make trade-offs between build vs. buy decisions - help build solutions and able to review what tools are available
  • You understand secure engineering best practices, can articulate problem statements and propose solutions to both technically savvy and non-technical audiences.

Benefits

  • An open and inclusive culture and work environment
  • Work closely with a team on the cutting edge of AI research
  • Weekly lunch stipend, in-office lunches & snacks
  • Full health and dental benefits, including a separate budget to take care of your mental health
  • 100% Parental Leave top-up for up to 6 months
  • Personal enrichment benefits towards arts and culture, fitness and well-being, quality time, and workspace improvement
  • Remote-flexible, offices in Toronto, New York, San Francisco, London and Paris, as well as a co-working stipend
  • 6 weeks of vacation (30 working days!)

Related Categories

Related Job Pages

More Security Operations Jobs

OtherRemoteTeam 11-50

cFocus Software seeks a Security Operations / Firewall Analyst to join our program supporting the National Institutes of Health (NIH). This position is remote. This position requires a Public Trust clearance. Qualifications: - Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related discipline. - Minimum 3–5 years of experience supporting security operations, network security monitoring, or firewall administration. - Experience with SIEM platforms and cybersecurity monitoring tools. - Familiarity with IDS/IPS systems, endpoint security solutions, and network security technologies. - Experience supporting firewall administration and rule management. - Understanding of federal cybersecurity frameworks such as NIST RMF and FISMA. - Strong analytical, troubleshooting, and documentation skills. Duties: - Monitor cybersecurity tools and alerts to detect and respond to potential security incidents. - Support Security Operations Center (SOC) activities including threat monitoring and alert analysis. - Assist with firewall configuration, rule management, and network segmentation enforcement. - Analyze system and network logs to identify suspicious or unauthorized activities. - Coordinate with cybersecurity teams to respond to incidents and mitigate vulnerabilities. - Monitor SIEM platforms, IDS/IPS systems, endpoint protection tools, and other security monitoring systems. - Investigate security alerts and escalate incidents based on severity and impact. - Perform analysis of network traffic and endpoint telemetry to identify indicators of compromise. - Track and document incident investigations and response activities. - Provide operational monitoring support during high-volume security events or incidents. - Manage firewall rules to enforce least privilege and default-deny access policies. - Support configuration management and change control processes for firewall rule updates. - Conduct routine firewall rule reviews to identify obsolete or unnecessary access rules. - Validate firewall configurations and ensure compliance with HHS and NIH security standards. - Support network segmentation and security zone management to protect sensitive systems. - Validate and monitor logs generated by network and security devices. - Ensure logging configurations comply with federal cybersecurity guidance including OMB M-21-31. - Analyze log data to identify anomalies, policy violations, or indicators of malicious activity. - Assist with cybersecurity compliance activities and audit preparation.

United States
Job Closed
Aon Corporation logo

Cyber Investigations and Response Lead

Aon Corporation

Aon is in the business of better decisions. At Aon, we shape decisions for the better to protect and enrich the lives of people around the world. As an organization, we are united through trust as one inclusive team and we are passionate about helping our colleagues and clients succeed. Aon values an innovative and inclusive workplace where all colleagues feel empowered to be their authentic selves. Aon is proud to be an equal opportunity workplace. Aon provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, creed, sex, sexual orientation, gender identity, national origin, age, disability, veteran, marital, domestic partner status, or other legally protected status. We are committed to providing equal employment opportunities and fostering an inclusive workplace. If you require accommodations during the application or interview process, please let us know.

OtherRemoteTeam 10,001

The Cybersecurity Investigations & Response (CIR) team within AC3 (Aon’s Global Cybersecurity Operations) is responsible for leading and coordinating incident response, conducting in‑depth investigations, and continuously improving how Aon detects, responds to, and recovers from cyber events. This role can be virtual near one of our US office locations. Aon is in the business of better decisions At Aon, we shape decisions for the better to protect and enrich the lives of people around the world. As an organization, we are united through trust as one inclusive team, and we are passionate about helping our colleagues and clients succeed. What the day will look like This role focuses on deep investigation, coordination, and response leadership—ensuring incidents are executed according to defined processes, evidence is preserved, risks are clearly understood, and lessons learned to drive measurable improvements across Aon’s cybersecurity program. Incident Response & Investigations - Lead or support end-to-end investigations for security incidents, from initial triage through containment, eradication, and recovery. - Perform detailed analysis of alerts, logs, and telemetry across multiple domains (SIEM, endpoint, identity, network, cloud, email, and third-party sources) to determine scope, root cause, and business impact. - Partner closely with AC3 Threat Detection & Response (TDR) teams to validate true positives, refine investigative hypotheses, and improve the quality and reliability of detection signals. - Develop clear incident timelines, findings, and technical assessments, ensuring accurate and complete case documentation. - Maintain high-quality incident records and evidence within Aon’s case management and response tooling. Crisis & Stakeholder Coordination - Support crisis execution during major or high-severity incidents, collaborating with GEOC, Legal, Risk, Audit, Communications, and business leadership as required. - Translate technical findings into clear, risk-based insights for both technical and non-technical audiences. - Follow and reinforce consistent escalation and communication patterns—ensuring the right stakeholders are informed at the right time with the right level of detail. - Contribute to calm, structured, and disciplined response execution during high-pressure events. Playbooks, Procedures & Readiness - Help develop, maintain, and improve incident response runbooks, playbooks, and standard operating procedures for common and high-impact scenarios (e.g., ransomware, BEC, insider threat, data ex-filtration, cloud compromise). - Participate in, and help design, tabletop exercises and simulations to test technical response and crisis readiness. - Support audit, regulatory, and internal assurance activities by clearly documenting response processes, decisions, and evidence of execution. Continuous Improvement & Threat‑Informed Defense - Lead or contribute to lessons‑learned activities following incidents and near misses; track improvement actions through to completion. - Partner with vulnerability management, identity, infrastructure, cloud, and application security teams to ensure investigation insights drive real risk reduction. - Identify detection and visibility gaps and work with TDR to enhance telemetry, tune detections, and improve signal-to-noise ratios across AC3. - Strengthen Aon’s threat‑informed defense by feeding investigative insights back into controls, detections, and processes. Collaboration & Global Alignment - Operate within a follow‑the‑sun global model, coordinating with CIR and TDR peers across North America, EMEA, and APAC. - Support alignment of tools, telemetry, processes, and reporting across regions to enable consistent, scalable operations. - Contribute to a culture of collaboration, shared ownership, and continuous improvement across AC3 and Global Cybersecurity Solutions. How this opportunity is different As a CIR Analyst, you will play a critical role in investigating and responding to security incidents across Aon’s North America region. You will work closely with TDR, Global Security Operations, IT, Legal, Risk, Audit, and business stakeholders to ensure incidents are handled effectively and consistently. Skills and experience that will lead to success Required - Professional experience in cybersecurity operations, incident response, digital forensics, threat hunting, or a closely related discipline. - Strong understanding of core security domains, including: Network security; Endpoint security; Identity and access management; Cloud security fundamentals; Common attack techniques (MITRE ATT&CK familiarity preferred); - Hands-on experience with multiple security technologies, such as: SIEM platforms (log analysis, investigation, correlation); EDR/EPP tools; Network security tools (firewalls, proxies, IDS/IPS); Email security and identity platforms; Cloud security and logging solutions - Demonstrated ability to analyze telemetry, develop investigative hypotheses, and methodically work incidents through to resolution. - Strong written and verbal communication skills, including the ability to produce clear technical documentation and concise executive-level summaries. - Familiarity with structured incident response frameworks (e.g., NIST, SANS, ISO) is preferred. Preferred - Experience in a large, complex, or global enterprise environment. - Prior work experience in a SOC, DFIR function, or Cyber Incident Response Team. - Familiarity with automation or scripting (e.g., Python, PowerShell, KQL, or SOAR platforms) to accelerate investigations and response. - Experience working with SOAR or case management platforms in an operational environment. - Relevant industry certifications (e.g., GCIA, GCFA, GNFA, GCIH, CISSP, CISM) are a plus but not required. Education: Bachelor’s degree or equivalent years of industry experience. How we support our colleagues In addition to our comprehensive benefits package, we encourage an inclusive workforce. Plus, our agile environment allows you to manage your wellbeing and work/life balance, ensuring you can be your best self at Aon. Furthermore, all colleagues enjoy two “Global Wellbeing Days” each year, encouraging you to take time to focus on yourself. We offer a variety of working style solutions for our colleagues as well. Our continuous learning culture inspires and equips you to learn, share and grow, helping you achieve your fullest potential. As a result, at Aon, you are more connected, more relevant, and more valued. Aon values an innovative and inclusive workplace where all colleagues feel empowered to be their authentic selves. Aon is proud to be an equal opportunity workplace. Aon provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, creed, sex, sexual orientation, gender identity, national origin, age, disability, veteran, marital, domestic partner status, or other legally protected status. People with criminal histories are encouraged to apply. We are committed to providing equal employment opportunities and fostering an inclusive workplace. If you require accommodations during the application or interview process, please let us know. You can request accommodations by emailing us at ReasonableAccommodations@Aon.com or your recruiter. We will work with you to meet your needs and ensure a fair and equitable experience. For positions in San Francisco and Los Angeles, we will consider for employment qualified applicants with arrest and conviction record in accordance with local Fair Chance ordinances. Aon is not accepting unsolicited resumes from search firms for this position. If you are a search firm, you will not be compensated in any way for your submission of a candidate, even if Aon hires that candidate. Nothing in this job description restricts management's right to assign or reassign duties and responsibilities to this job at any time. Pay Transparency Laws: The salary range for this position (intended for U.S. applicants) is $150,000 - $175,000 USD annually. The actual salary will vary based on applicant’s education, experience, skills, and abilities, as well as internal equity and alignment with market data. The salary may also be adjusted based on applicant’s geographic location. This position is eligible to participate in one of Aon’s annual incentive plans to receive an annual discretionary bonus in addition to base salary. The amount of any bonus varies and is subject to the terms and conditions of the applicable incentive plan. Aon offers a comprehensive package of benefits for full-time and regular part-time colleagues, including, but not limited to: a 401(k) savings plan with employer contributions; an employee stock purchase plan; consideration for long-term incentive awards at Aon’s discretion; medical, dental and vision insurance, various types of leaves of absence, paid time off, including 12 paid holidays throughout the calendar year, 15 days of paid vacation per year, paid sick leave as provided under state and local paid sick leave laws, short-term disability and optional long-term disability, health savings account, health care and dependent care reimbursement accounts, employee and dependent life insurance and supplemental life and AD&D insurance; optional personal insurance policies, adoption assistance, tuition assistance, commuter benefits, and an employee assistance program that includes free counseling sessions. Eligibility for benefits is governed by the applicable plan documents and policies. #LI-RB1 #LI-VIRTUAL 2026-99204

United States
$150K - $175K / year
Job Closed
UNDP logo

Investigations Specialist (Home-Based) (Open to Tier 1 and 2)

UNDP

UN Women works for the elimination of discrimination against women and girls; the empowerment of women; and the achievement of equality between women and men as partners and beneficiaries of development, human rights, humanitarian action and peace and security.

OtherRemoteTeam 10,001

Please note the appropriate Tier indicated in the vacancy title and ensure that you hold the applicable contract as defined below. · Tier 1: UNDP/ UNCDF/ UNV staff holding permanent (PA) and fixed term (FTA) appointments (defined as “internal” candidates) · Tier 2: UNDP/ UNCDF/ UNV staff holding temporary appointments (TA), personnel on regular PSA contracts, and Expert and Specialist UN Volunteers Background The Office of Audit and Investigations (OAI) reports to the Administrator and is responsible for internal audit and investigations services to UNDP and its affiliated entities. OAI provides independent, objective assurance on the effectiveness of risk management and the effectiveness and adequacy of internal controls. OAI also responds to allegations of misconduct by conducting and reporting on investigations. The Investigations Section of OAI is responsible for conducting investigations into allegations of misconduct, such as mismanagement, fraud, corruption, retaliation on whistle-blowers, workplace harassment, sexual harassment, abuse of authority, violation or willful disregard of UNDP regulations, rules, and administrative instructions, that involve UNDP staff, contractors and other applicable persons. OAI conducts investigations in accordance with the Uniform Principles and Guidelines for Investigations, the UNDP Legal Framework for Addressing Non-Compliance with UN Standards of Conduct, and the OAI Investigation Guidelines. OAI seeks to engage a French-speaking Investigations Specialist under the International Personnel Services Agreement (IPSA) to support the Central and West Africa (CWA) team of Unit 2 – Regional Investigations (Africa) and Sexual Misconduct Team. Scope of Work The Investigations Specialist is required to conduct highly complex investigations into allegations of fraud, abuse and misconduct in a timely and efficient manner, and ensure that the investigative actions are consistent with UNDP Rules and Regulations and internationally accepted standards. The specific tasks that will be required are: 1. Ensure the effective planning and conduct of complex investigations - Ensure planning and conducting investigations in accordance with UNDP policies and procedures and the OAI Investigation Guidelines. - Plan investigations to ensure that all appropriate lines of inquiry are identified, and investigation resources are used effectively and efficiently to factually determine the issues relevant to an investigation. - Lead in identifying, collecting and analyzing information software, internal data, and open-source information relevant to investigations, demonstrating an understanding of information security and confidentiality issues relevant to an investigation. - Collect, record, and handle evidence appropriately, ensuring chain of custody and demonstrating knowledge of handling considerations for different types of evidence. - Use specialist investigation services as and when appropriate (for example, document examination and computer forensics). - Conduct interviews with complainants, witnesses, subjects and suspects showing effective communication across diverse backgrounds and ensure precise recording and verification of testimony as needed. - Interview subjects/suspects in accordance with generally accepted best practice procedures (in order to obtain reliable information, while affording due process). - Assist the Intelligence, Analysis and Research Team by assessing complaints when needed. - Plan and undertake frequent, and at times, extended missions to UNDP offices worldwide, including areas with hazardous working conditions. 2. Ensure all investigation reports are updated. - Keep the Investigations Section’s database and case files up to date on cases under investigation. - Prepare high-quality investigation reports and documents that objectively summarize findings, with evidence-based conclusions and recommendations. 3. Build strategic partnerships - Liaise with the Office of Legal Services (OLS), Country Office management, the Vendor Review Committee (VRC), Office of Human Resources (OHR), Ethics Office, and other relevant UNDP business units. - Liaise with the investigation sections of other international organizations and with national anti-corruption and law enforcement agencies as appropriate. 4. Facilitate capacity building and knowledge sharing - Participate in outreach session to train UNDP personnel worldwide as required. - Contribute to the ongoing development of professional practices within OAI. The incumbent performs other duties within their functional profile as deemed necessary for the efficient functioning of the Office and the Organization. Institutional Arrangement The Investigations Specialist will be tasked by the Investigations Specialist – Team Lead (CWA) or by the Chief, Regional Investigations (Africa) and Sexual Misconduct Team (SMT). The work produced by the Investigations Specialist will be submitted to the Team Lead, CWA under the overall supervision of the Chief, Regional Investigations (Africa) and SMT. Competencies Core - Achieve Results: LEVEL 3: Set and align challenging, achievable objectives for multiple projects, have lasting impact - Think Innovatively: LEVEL 3: Proactively mitigate potential risks, develop new ideas to solve complex problems - Learn Continuously LEVEL 3: Create and act on opportunities to expand horizons, diversify experiences - Adapt with Agility LEVEL 3: Proactively initiate and champion change, manage multiple competing demands - Act with Determination LEVEL 3: Think beyond immediate task/barriers and take action to achieve greater results - Engage and Partner LEVEL 3: Political savvy, navigate complex landscape, champion inter-agency collaboration - Enable Diversity and Inclusion LEVEL 3: Appreciate benefits of diverse workforce and champion inclusivity Cross-Functional & Technical competencies Audit & Investigation - Investigation management and investigative techniques: The ability to manage an investigation, choose avenues of inquiry and apply different techniques during an investigation, including investigative interviewing; seizure of documentary and electronic evidence; identification, collection, review and analysis of all types of evidence, including project, procurement and commercial business documentation and electronic communications; forensic analysis; verification site visits; open-source research. - Evidence Handling procedures: Ability to acquire, compile and safeguard information in a forensically sound manner to keep evidence integrity and chain of custody. - Investigative Interviewing: Ability to conduct investigative interviews with all types of investigation participants, including witness and subjects, using an approach tailored to the interviewee and the investigation. - Collection and analysis of evidence: Ability to extract and analyse all relevant types of evidence and be able to draw reasonable inferences and conclusions. - Technology tools and applications for investigations: Ability to understand key application and system software, IT infrastructure, IT Control frameworks and the use of forensic investigation software. Business Management - Communication: Communicate in a clear, concise and unambiguous manner both through written and verbal communication; to tailor messages and choose communication methods depending on the audience. Ability to manage communications internally and externally, through media, social media and other appropriate channels Business Direction & Strategy - System Thinking: Ability to use objective problem analysis and judgement to understand how interrelated elements coexist within an overall process or system, and to consider how altering one element can impact on other parts of the system. Required Skills and Experience Min. Academic Education - Advanced university degree (master’s degree or equivalent) in Investigations, Development Studies, Law, Conflict, International Affairs, Social Sciences or related field is required. Or - A first level university degree (bachelor’s degree) in the areas mentioned above, in combination with additional 2 years of qualifying experience, will be given due consideration in lieu of an advanced university degree. Min. years of relevant Work experience and skills - A minimum of 5 years (with master’s degree) or 7 years (with bachelor’s degree) of progressively responsible experience in complex criminal, civil and/or administrative investigations, law enforcement, or equivalent experience in a research capacity. Required Skills and competencies - At least one year of experience working within an international investigation role is required. - Demonstrated ability to use the following tools: Microsoft office suite; presentation software applications; and forensic software (such as Intella) - Proven track record of demonstrated strong understanding of information security and confidentiality issues relevant to investigations Desired additional skills and competencies - Experience working with UNDP or the UN System is desirable. - Familiarity with investigative procedures applicable to OAI/UNDP is an advantage. - Experience conducting sexual misconduct investigations or experience with victim support is desirable. Required Language(s) - Fluency in French and English is required. Equal opportunity As an equal opportunity employer, UNDP values diversity as an expression of the multiplicity of nations and cultures where we operate and, as such, we encourage qualified applicants from all backgrounds to apply for roles in the organization. Our employment decisions are based on merit and suitability for the role, without discrimination. UNDP is also committed to creating an inclusive workplace where all personnel are empowered to contribute to our mission, are valued, can thrive, and benefit from career opportunities that are open to all. Sexual harassment, exploitation, and abuse of authority UNDP does not tolerate harassment, sexual harassment, exploitation, discrimination and abuse of authority. All selected candidates, therefore, undergo relevant checks and are expected to adhere to the respective standards and principles. Right to select multiple candidates UNDP reserves the right to select one or more candidates from this vacancy announcement. We may also retain applications and consider candidates applying to this post for other similar positions with UNDP at the same grade level and with similar job description, experience and educational requirements. Scam alert UNDP does not charge a fee at any stage of its recruitment process. For further information, please see www.undp.org/scam-alert. #LI-DNI

United States
Job Closed
Cohere logo

Security Operations Manager

Cohere

At Cohere, our mission is to build machines that understand the world, and to make them safely accessible to all.

Full TimeRemoteTeam 11-50H1B Sponsor

• Serve as trusted advisor to team’s leadership and partner teams by clearly articulating business risks associated with security issues • Execute the long-term vision for the Security team in alignment with Cohere’s product and business goals. • Collaborate closely with leadership to prioritize high-impact initiatives and strategic customer engagements. • Secure cloud infrastructure, platform, and data through architecture reviews, automation, and continuous monitoring to mitigate cloud-specific risks (Cloud Security) • Own identify and access management across Cohere systems and data ensuring robust identity governance, authentication and authorization mechanisms to applications and infrastructure (IAM) • Detect, analyze, and respond to security threats in real time while maintaining visibility across the enterprise • Minimize business impact from security incidents through rapid containment, eradication, and recovery (D&R) • Lead and grow a high-performing team of Security engineers through hiring, coaching, and mentorship • Foster a culture of ownership, innovation, and continuous learning. • Establish and evolve team processes to maximize productivity and execution speed.

Canada