CareerPlanSign in

Senior Security Operations Engineer (Talent pool building)

Toronto💼 Full-time🗓 2026-09-07 → 2026-09-26

Core

Senior Security Operations Engineer responsible for detection, response, tuning, and refinement of security incidents, managing security tooling, and leading incident response efforts.

Role type

Senior IC security operations engineer (incident response & tooling)

Builds

Security monitoring pipelines, automated response workflows, and incident response playbooks

Domain

Healthcare technology / Cybersecurity

Deliverable

production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work

Required skills

Incident response leadership, SIEM/EDR/SASE management, GCP services (Cloud Functions, Cloud Run, Pub/Sub, Dataflow, BigQuery), Terraform, Python/Go scripting, threat intelligence, root cause analysis, compliance reporting

Preferred skills

SOAR platforms, digital forensics, cloud security (AWS/Azure/GCP), networking protocols, security community contributions

Technologies

SIEM, EDR, SASE, GCP (Cloud Functions, Cloud Run, Pub/Sub, Dataflow, BigQuery, Cloud Storage), Terraform, Python, Go

Responsibilities

Monitor and analyze security events from SIEM/EDR/SASE sources; lead incident response (investigation, containment, eradication, recovery); develop and maintain incident response plans and playbooks; manage and maintain security tools and automation scripts; conduct threat research and implement detection rules; contribute to security system architecture design; mentor junior security analysts; ensure compliance with security standards (HITRUST, NIST, GDPR)

Seniority

Senior, hands-on IC

Sourced via greenhouse · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.