Design anything. Publish anywhere.
Senior Threat Detection Engineer – Tooling and Automation
Location
Australia
Posted
144 days ago
Salary
0
Seniority
Senior
Job Description
Senior Threat Detection Engineer – Tooling and Automation
Canva
• Join the team redefining how the world experiences design • As a Senior Threat Detection Engineer, you will be a technical expert delivering high-impact security engineering solutions across our detection and platform engineering service streams • You will design and implement enterprise-grade detection capabilities, automate security workflows, and enhance our security platform infrastructure • Your work will directly strengthen Canva's security posture by enabling faster threat detection, reducing analyst toil through automation, and scaling our security operations capabilities • Lead detection engineering initiatives end-to-end, from threat research and design documentation through implementation, testing, and production deployment, developing high-fidelity detection logic covering threat vectors of interest to Canva • Participate in rotations and on-call schedules to support incident response and alert triage activities • Partner with Application Security, CTI, and Red Team to conduct threat modelling, translate threat intelligence into actionable detections, and validate detection effectiveness through threat simulation scenarios • Implement detection-as-code practices using version control, CI/CD pipelines, and automated testing frameworks to enable scalable, version-controlled detection deployment • Design and build sophisticated SOAR workflows that automate detection triage, investigation, and response activities, developing custom integrations with security tools and cloud platforms • Create automation and enrichment pipelines that reduce manual context-switching and cognitive load for analysts, improving mean-time-to-detect, analyse, and respond to security events • Architect and maintain security platform infrastructure supporting detection, investigation, and response capabilities using infrastructure-as-code (Terraform/Ansible) and establish service-level objectives for platform services • Establish monitoring and alerting for platform health, detection coverage, and operational metrics to ensure reliability and visibility • Collaborate across security and engineering teams including D&R Operations, DFIR, Application Security, and cloud infrastructure teams to define and integrate telemetry requirements, deploy security sensors, and ensure comprehensive visibility • Provide technical consultation and mentorship, advising stakeholders on detection strategy, automation capabilities, and platform limitations while developing junior engineers in detection engineering and platform operations.
Job Requirements
- 5+ years of hands-on experience in security engineering, threat hunting, detection engineering, or security operations (SOC), with proven ability to design and implement detection capabilities at scale
- Experience in SOC and alert triage
- Proven track record in threat hunting or designing, implementing, and tuning detection logic for enterprise security platforms (SIEM, EDR, SOAR)
- Experience with detection engineering lifecycle: threat research, detection development (KQL, SPL, ESQL, SQL-style languages), testing, deployment, tuning, and lifecycle management
- Proficient in at least one programming language (Python or Go preferred) for automation development and custom tool creation
- Hands-on experience with enterprise security platforms including: SIEM platforms (Elastic Security, Splunk, or similar), EDR solutions (SentinelOne, CrowdStrike, Microsoft Defender, or similar), SOAR platforms (Tines, Splunk SOAR, Cortex XSOAR, or similar)
- Experience building SOAR workflows or automation playbooks (with or without code)
- Infrastructure-as-code experience using Terraform/Ansible or similar tools to deploy and manage security infrastructure
- Hands-on experience with cloud platforms (AWS, GCP, or Azure)
- Understanding of CI/CD pipelines and DevOps practices applied to security engineering workflows
- Understanding of containerisation, Kubernetes, and cloud-native application architectures from a security perspective
- Knowledge of networking concepts, protocols, and security controls relevant to detection and monitoring.
Benefits
- Equity packages - we want our success to be yours too
- Inclusive parental leave policy that supports all parents & carers
- An annual Vibe & Thrive allowance to support your wellbeing, social connection, office setup & more
- Flexible leave options that empower you to be a force for good, take time to recharge and supports you personally
Related Guides
Related Categories
Related Job Pages
More Engineer Jobs
Wafer Metrology Development Engineer
Western DigitalWe create data storage solutions that power the technology of today and inspire the innovations of tomorrow.
• Provide technical leadership and hands-on metrology support for magnetic recording wafer process development, with a focus on overlay, AFM, and CDSEM measurements for critical dimension (CD), profile, and topography characterization • Partner closely with magnetic recording head process R&D engineers to define, develop, and deploy advanced metrology solutions, including new measurement methodologies and algorithms • Lead metrology strategy for development programs while ensuring robust day-to-day measurement execution across multiple projects • Serve as a core technical contributor within the R&D metrology organization, driving best practices and knowledge transfer while working in close alignment with the manufacturing metrology team to ensure consistency from development through production
• Identify Improvement Opportunities • Assist process owners in identifying improvement opportunities. • Manage Operational Information • Work with business teams, leveraging technology as needed. • Conduct meetings, collect data, analyze information, and document processes. • Lead process redesign workshops. • Support executives responsible for strategic client relationships on process optimization initiatives.
Fire Prevention and Protection Expert Level 5B/14
Ministère des armées. Liberté, égalité, fraternité.Personnes à contacter : dcsca-arcueil.gestionnaire.fct@intradef.gouv.fr stephanie.porcher@intradef.gouv.fr
Role Description Le CMP a pour mission : - Au niveau AFM : - Intervient prioritairement au profit de l'OGZDS pour les organismes interarmées (OIA). - Apporte son expertise technique et réalise des études pour les organismes interarmées qui lui sont rattachées et au profit de tout autre organisme ou établissement relevant du MINARM sur sollicitation de l'EMA. - Réalise des missions d'expertise en incendie, planifie et organise la tenue des commissions de proximité de sécurité et d'accessibilité. - Organise et anime en fonction des besoins identifiés au niveau national, une journée d'information et d'échange portant sur les sujets d'actualité, en liaison avec le CCP de l'EMA. - Au niveau opérationnel : - Assume la charge d’adjoint interarmées de prévention de théâtre pour l’opération sentinelle en Ile-de-France. - Est adjoint du chef J-PREV et le supplée en son absence. Qualifications - Avoir occupé les fonctions de chargé de prévention des risques professionnels. - Disposer de solides connaissances dans les autres domaines composant la prévention et maîtrise des risques. - Disposer de compétences de formateur. - Niveau de qualification PRV2 ou AP2. - Formation dans le domaine de l'accessibilité du cadre bâti aux personnes handicapées. Requirements - Documents à transmettre : l'envoi du CV et d'une lettre de motivation est obligatoire. Company Description - Personnes à contacter : - emzd-paris-pcc.coordonnateur.fct@intradef.gouv.fr - bertrand.leduc@intradef.gouv.fr
• Develop and maintain endpoint management and configuration systems for macOS, Windows, and iOS devices • Collaborate with security to enforce secure configurations and remediate vulnerabilities • Write custom scripts (e.g. Python, Powershell, Bash) to automate IT and security tasks • Provide Tier I/Tier II technical support on complex user issues • Research and evaluate new technologies to satisfy evolving organizational requirements • Support knowledge management by creating and maintaining technical documentation



