Athena is a community mental health clinic serving clients from all walks of life throughout New York State.
Information Security Engineer
Location
Canada
Posted
11 days ago
Salary
0
Seniority
Mid Level
Job Description
Information Security Engineer
Athena
Role Description We are looking for an Information Security Engineer to help scale and mature our corporate security program in a fast-moving, high-growth environment. This role will focus on identity and access management, endpoint security, SaaS security, corporate infrastructure security, and security operations enablement. The ideal candidate is hands-on, automation-minded, and comfortable partnering across IT, Engineering, Infrastructure, HR, and Compliance teams to improve security controls while maintaining a strong employee experience. You will help design and operate security systems that protect corporate assets, secure employee access, improve visibility, and reduce organizational risk across cloud-first and SaaS-heavy environments. Responsibilities - Identity & Access Management - Design, implement, and improve identity and access management controls across enterprise applications and infrastructure. - Manage and optimize SSO, MFA, lifecycle management, conditional access, RBAC, and privileged access workflows. - Partner with IT and business stakeholders to implement least-privilege access models. - Support onboarding, offboarding, and automated provisioning/deprovisioning workflows. - Conduct periodic access reviews and help drive remediation efforts. - Improve authentication security and identity posture across corporate systems. - Corporate Security Engineering - Secure and manage corporate endpoints across macOS, Windows, and cloud-managed environments. - Improve endpoint visibility, hardening, monitoring, and response capabilities. - Help implement and tune modern endpoint protection, browser security, device trust, and web/data protection controls. - Partner with Infrastructure and IT teams on secure configuration standards and operational improvements. - Support security initiatives related to enterprise SaaS applications and collaboration platforms. - Assist with vendor and third-party security evaluations related to enterprise tooling. - Security Operations & Monitoring - Assist with security monitoring, detection engineering, and incident response activities. - Improve log visibility and telemetry coverage across identity, endpoint, and SaaS platforms. - Build and maintain detections, alerts, and operational playbooks. - Participate in incident investigations and post-incident remediation efforts. - Help operationalize security metrics and reporting. - Automation & Engineering - Build automations and integrations that improve security operations efficiency. - Develop scripts and workflows to reduce manual processes. - Partner with Engineering and Infrastructure teams to improve security guardrails and operational maturity. - Contribute to infrastructure-as-code and policy-as-code initiatives where applicable. - Compliance & Security Programs - Support security compliance initiatives such as SOC 2, ISO 27001, or similar frameworks. - Help document technical controls, processes, and operational procedures. - Participate in risk assessments and remediation tracking. - Contribute to security awareness and internal enablement efforts. Qualifications - 4+ years of experience in information security, security engineering, IT security, or related fields. - Experience administering enterprise identity providers and access management systems. - Experience with endpoint management and endpoint security tooling. - Familiarity with security monitoring, logging, and incident response workflows. - Strong understanding of authentication protocols and identity security concepts, including SAML, OIDC, OAuth, SCIM, MFA, conditional access, and RBAC. - Experience working in cloud-first environments using modern SaaS platforms. - Strong scripting or automation experience using Python, Bash, PowerShell, or similar. - Ability to balance security requirements with operational usability and business needs. - Strong communication and cross-functional collaboration skills. Preferred - Experience securing macOS environments at scale. - Experience with modern browser security and data protection technologies. - Experience with cloud-native security monitoring or SIEM platforms. - Familiarity with MDM/UEM platforms, EDR solutions, identity governance, and SaaS security tools. - Experience implementing automation around identity lifecycle management. - Familiarity with infrastructure-as-code or cloud security practices. - Experience in high-growth startup or enterprise environments. - Security certifications such as Security+, CISSP, GIAC, identity provider certifications, endpoint management certifications, or equivalent.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Bilingual Security Director
International SOSInternational SOS is the world's leading health and security risk services company. Worldwide Reach, Human Touch.
• Support and drive commercial growth strategies as Security Partner in Canada • Support Business Development Managers and Account Managers to retain and strengthen current partnerships with clients • Act as the subject matter expert during complex new business opportunities (including bids, tenders and RFPs) • Provide input to Security Consulting and Managed Services solution design and innovation • Develop professional security expertise to drive consulting opportunities in Canada • Collaborate with the regional Consulting & Solutions Practice identifying and scoping opportunities • Co-develop and co-own go to market and expansion plans to drive new business and retention • Represent International SOS in professional forums and in the media in Canada
Senior Security Engineer
NEAR FoundationEnabling community-driven innovation to benefit people around the world
• Lead the information security program across NEAR Foundation • Drive SOC II Type 2 and ISO 27001 readiness and ongoing compliance at NEAR AI • Support the needs and operation of the NEAR Security Committee (NSC) • Run logging, monitoring, and alerting; lead investigation and response for security incidents • Run vulnerability management, third-party risk reviews, and security awareness across the organization • Own the security architecture and hardening of our identity, access, and endpoint stack • Engineer security and compliance automation across our SaaS estate • Be the senior technical escalation point for complex security issues • Lead security tooling rollouts and security vendor selection • Help maintain a secure cloud footprint (AWS / GCP) and maintain the security policy library
• Build and enforce security controls, systems, and policies for cluster infrastructure of new NVIDIA hardware. • Identify, assess, and reduce cybersecurity risks; report major risks clearly to leadership. • Develop and lead incident response and disaster recovery plans. • Investigate security incidents and drive root-cause analysis. • Ensure systems meet IT, legal, regulatory, and information security standards. • Improve security governance, documentation, and audit readiness. • Train peers and users on practical security standard methodologies. • Work with infrastructure, networking, storage, OS, firmware, and application teams to harden systems.
• Coach and mentor project teams in a collaborative, empathetic environment • Guide teams on best practices while allowing autonomy in implementation approaches • Create and manage project schedules from high-level phases to detailed tasks, including dependencies • Collaborate with worldwide business units to coordinate project involvement, goals, and expectations • Track project status and ensure schedules and priorities are met • Identify, track, and escalate critical issues through resolution • Manage project communication and status reporting cadences • Lead Scrum meetings and maintain action item follow-through • Drive continuous improvement through automation, AI, and process efficiencies • Flex engagement level across multiple projects—from hands-on execution on critical initiatives to high-level coaching and issue resolution across broader portfolios




