Numeris logo
Numeris

Canada's most trusted and authoritative source for broadcast measurement and consumer behavior data.

Information Security Engineer – Cloud Security Engineer

Security EngineerSecurity EngineerContractRemoteSeniorTeam 201-500H1B No SponsorCompany SiteLinkedIn

Location

Canada

Posted

10 days ago

Salary

$85K - $90K / year

Seniority

Senior

Postgraduate Degree5 yrs expEnglishAWSAzureCloudCyber SecurityPython

Job Description

Information Security Engineer – Cloud Security Engineer

Numeris

• Multi-Cloud Engineering and Perimeter Hardening**Identity and Access: Design and maintain Microsoft Entra ID Conditional Access policies and cloud IAM boundaries.** • Endpoints and Intune: Configure endpoint security baselines and automated deployment workflows via Microsoft Intune.** • Data Protection: Implement and tune Microsoft Purview Data Loss Prevention (DLP) policies and compliance toolsets.** • Cloud Posture: Deploy technical security controls natively within AWS and Azure to continuously drive up our Secure Score.** • Automation, Vulnerability Management and SecOps.** • Sentinel and SOAR: Architect Microsoft Sentinel, building KQL queries and automated response playbooks to eliminate manual triage overhead.** • Vulnerability Lifecycle: Administer scanning tools, automate continuous asset discovery, and technically validate remediation efforts with IT infrastructure teams.** • Operations: Participate in a weekly on-call operational rotation with two team members to investigate and remediate technical escalations.** • Vendor Engineering: Partner directly with vendors to ensure our security tools are integrated and utilized to their maximum potential.** • Security Approvals and Operational Support.** • Access and Exceptions: Review, triage, and technically validate security exceptions, identity exclusions, and access requests.** • Technical Assessments: Evaluate third-party vendor software architectures to identify infrastructure risks.** • Awareness Training: Manage the KnowBe4 platform to deploy automated phishing simulations and training tracks.

Job Requirements

  • Education: Graduate degree (Master's) in Computer Science, Cybersecurity, IT, or a related technical field.
  • Experience: Minimum of 5 years of hands-on experience in security engineering, multi-cloud security, or a technical SecOps environment.
  • Tech Stack Expertise: Practical experience configuring technical security boundaries within AWS, Microsoft Azure, Microsoft Entra ID, Intune, and Microsoft Purview.
  • Automation Skills: Proven track record managing Microsoft Sentinel, writing KQL queries, and creating automated workflows using PowerShell or Python.
  • Certifications (Preferred): CISSP (Certified Information Systems Security Professional), AWS Certified Security - Specialty, or Microsoft SC-200.

Benefits

  • Competitive salary and benefits package (Health, Dental, Vision and Personal Spending Account - employer paid premiums).
  • Flexible Work location (on-site offices in Toronto and Montreal, remote – work from home, hybrid as required per role).
  • Continuous learning and development via Percipio, our Learning Management System.
  • Be part of additional programs such as MentorMe, which helps our employee’s network, and grow within the organization.
  • Leadership Training offerings for new and emerging leaders.
  • Culture of great teams, coworkers and supportive leadership.
  • Perkopolis: Participation in a program that provides exclusive discounts on products and services to employees.

Related Categories

Related Job Pages

More Security Engineer Jobs

ZeroTier, Inc. logo

Product Copywriter – Cybersecurity, Networking

ZeroTier, Inc.

Use the easiest to manage, and most widely supported network virtualization platform, to connect all your devices.

Full TimeRemoteTeam 11-50Since 2015H1B No Sponsor

• Partner with product and technical teams to refine product positioning and develop high-impact narratives that differentiate ZeroTier in a crowded market. • Write and optimize copy across all channels, including high-converting website pages, thought leadership articles, sales enablement assets, and technical playbooks. • Manage and direct a suite of AI writing agents and LLM-based tools to scale content output without sacrificing brand voice or technical accuracy - you are the human-in-the-loop; editing, and governing AI-generated drafts across campaigns, SEO/AEO plays, and enablement assets. • Tailor messaging for specific ICPs, including IT Directors, CISOs, and network security pros across industries like Defense, Healthcare, and Enterprise IT. • Contribute to the strategy and execution of integrated marketing campaigns, ensuring a consistent and authoritative brand voice across all touchpoints. • Move beyond simple blogging to develop substantial evergreen assets such as migration guides, configuration templates, and "build vs. buy" whitepapers.

United States
eTelligent Group LLC logo

Cloud Security and Zero Trust Lead

eTelligent Group LLC

Over the past 15 years, eTel has delivered essential solutions for the federal government by securing and managing data, providing scalable identity access, modernizing legacy systems, and building high-performance platforms. By integrating new technologies and ensuring reliable operations we help agencies stay prepared for future challenges. eTel offers integrated CMMI Level 3 processes, tools, and techniques with innovative, cost-efficient, and secure solutions to address complex challenges. eTel holds ISO 9001:2015, ISO/IEC 27001:2013, and ISO/IEC 20000-1:2018 certifications. Offers dedicated subject matter experts (SMEs) and thought leaders that possess a deep understanding of customers’ environments and challenges.

Full TimeRemoteTeam 51-200

Role Description The Cloud Security and Zero Trust Lead provides leadership for cybersecurity engineering, compliance automation, continuous monitoring, authorization activities, and Zero Trust implementation across the EDP environment. The Security Lead ensures AWS and Databricks platforms operate securely while maintaining compliance with IRS, Treasury, and federal cybersecurity requirements. Key Responsibilities - Lead cloud security architecture and security engineering activities. - Implement Zero Trust security controls and least privilege access models. - Develop and maintain cloud security baselines, security standards, and compliance automation frameworks. - Support ATO development, authorization packages, continuous monitoring, and audit activities. - Manage identity and access management, secrets management, encryption, logging, and monitoring capabilities. - Support Databricks Unity Catalog security controls, data governance, and data protection initiatives. - Coordinate vulnerability management, remediation tracking, and security reporting activities. Qualifications - Minimum 10 years of cybersecurity experience. - Minimum 5 years securing AWS cloud environments. - Experience supporting NIST 800-53, FISMA, FedRAMP, and federal security frameworks. - Experience supporting cloud authorization and compliance efforts. Preferred Certifications - CISSP - AWS Certified Security Specialty - Certified Cloud Security Professional (CCSP) - Certified Information Security Manager (CISM) Commitment to Diversity eTelligent Group provides equal employment opportunities (EEO) to all applicants without regard to race, color, religion, gender, sexual orientation, gender identity, nations origin, age, disability, genetic information, marital status, amnesty, status as a covered veteran, and any other characteristic provided in accordance with applicable, federal, state and local laws.

United States
Job Closed
Automox logo

Senior Manager, Security & IT Operations

Automox

All your endpoints. Always configured. Always secured. Cloud-native IT operations for modern organizations.

Full TimeRemoteTeam 201-500Since 2015H1B Sponsor

• Lead Automox's Security and IT Operations functions. • Run both teams day to day, set and execute a 6-12 month roadmap, and report directly to the CTO. • Manage the IT and Security budget, assist with on-call, and lead incident response. • Turn security priorities into a concrete roadmap with clear milestones, owners, and metrics. • Own the GRC program, treating SOC 2 as an ongoing discipline rather than a periodic event. • Own the ProdSec program, partnering with Engineering and Product to embed security into the development lifecycle. • Lead incident response: runbooks, escalation paths, and post-incident reviews that improve response over time. • Set and execute the strategy for endpoints, identity, and SaaS at scale. • Oversee MDM, patch compliance via Automox, hardware lifecycle, and zero-touch provisioning across macOS and Windows. • Administer core SaaS across collaboration, source control, secrets management, and cloud, including ongoing license rationalization. • Automate repetitive work with AI coding tools and keep it documented, measured, and maintained. • Track KPIs across ticket responsiveness, patch and MDM coverage, access reviews, and IT spend, using them to drive improvement. • Develop engineers and helpdesk staff, with clear career paths and succession depth. • Build a culture of clarity, ownership, and psychological safety across both teams.

Colorado + 2 moreAll locations: Colorado | Florida | Texas
$160K - $190K / year
BeyondTrust logo

Technical Program Manager, Product Security

BeyondTrust

BeyondTrust is a company that offers security solutions and provides context-aware security intelligence that helps clients gain the controls and visibility the

• Own the end-to-end remediation process from validated finding through fix verification. Define and enforce SLAs by severity, track progress across engineering teams, escalate aging findings, and drive blockers to resolution. • Organize third-party penetration tests: scoping, scheduling, vendor coordination, finding intake, and tracking through remediation. Own the operational side of the bug bounty program, ensuring researcher submissions are acknowledged, triaged, validated, and resolved within committed timelines. • Build and maintain security kanban boards that give the entire organization visibility into vulnerability status: internal findings, pen test results, bug bounty submissions, and security exceptions. These boards are the single source of truth. Engineering knows what's on their plate, security leadership knows the posture, and Customer Trust has what they need for customer conversations. • Use Claude and LLM platforms to automate finding intake and routing, generate status reports, flag at-risk SLAs, draft stakeholder communications, and surface patterns that indicate systemic issues. Focus your time on judgment and coordination by letting AI handle the repetitive tracking. • Own the security exception process: intake, risk documentation, approval routing, time-bound tracking, and expiration enforcement. When an engineering team requests an exception, you ensure it's documented with clear risk context, reviewed by the right people, and actively tracked to expiration. • Own Product Security metrics: mean time to remediate, SLA compliance, finding aging, exception counts, recurrence rates, coverage by product. Build reporting that serves the VP (portfolio posture), engineering leaders (their team's queue), and Customer Trust (defensible data for customer security reviews). • Coordinate with Engineering and Product Management on remediation prioritization and release planning. Work with Customer Support and Customer Trust on vulnerability status for customer inquiries and security questionnaires. Partner with Cyber Defense on findings that cross product and infrastructure boundaries. Keep Security Architects and Product Security Engineers aligned on remediation status.

Canada