Senior DevSecOps Engineer at Clearco improving cloud security, implementing CI/CD security, and ensuring compliance.
Responsibilities
Own platform security and reliability improvements across our GCP environment.
Harden identity and network controls in GCP (IAM patterns, service accounts and workload identity, organization policies, and network segmentation controls).
Build security into CI/CD by implementing and enforcing scanning and policy controls (SAST, SCA, secret detection, and container/image scanning).
Drive vulnerability management and supply chain risk reduction across services, dependencies, container images, and build pipelines.
Lead threat modeling and security design reviews for new features and material architecture changes.
Improve security observability and detection quality by tuning telemetry, reducing noise, and building high-signal detections and dashboards.
Lead investigations and coordinate incident response for security alerts and incidents, and drive follow-ups from post-mortems into preventative improvements.
Champion secure SDLC practices through standards, documentation, guardrails, and coaching for product engineering teams.
Define and maintain end-user device security standards, including requirements for security agents such as EDR and remote access tooling, and partner with stakeholders for operational execution.
Support compliance and audit readiness by conducting internal security reviews and helping align practices with frameworks and regulations (SOC 2, GDPR, NIST), including evidence support where needed.
Requirements
5+ years of relevant experience spanning cloud infrastructure and security (DevSecOps, platform security, security engineering, SRE with strong security focus).
Deep hands-on experience with GCP (preferred) or AWS, including strong fundamentals in cloud networking and identity.
Strong hands-on experience with Kubernetes and service networking.
Strong Infrastructure-as-Code skills (for example Terraform) and the ability to build reusable, maintainable automation.
Practical experience integrating security into CI/CD and engineering workflows, including scanners and policy enforcement.
Experience with incident response: investigation, coordination, post-incident follow-through, and continuous improvement.
Experience with vulnerability management and software supply chain risk.
Comfortable partnering cross-functionally and driving work end-to-end in ambiguous areas.
Benefits
Competitive salaries with RRSP/401k matching and comprehensive medical, dental, and health insurance.
A flexible time-off policy and the choice to work remote, hybrid, or from our Toronto HQ.
Stipends for your home office setup and continuous professional learning.
The opportunity to do high-impact work at a mission-driven organization.
DevOps Engineer intern at Sun Life focusing on Java applications and working with Docker and Kubernetes. Engage in collaborative, agile practices with the DevOps team.
Senior Developer, DevOps responsible for Azure infrastructure and automation at Radio - Canada. Collaborating with development teams to ensure optimal performance, availability, and security for digital media services.
Senior Analyst on Data Platform DevOps at AIMCo, responsible for building data operations and collaborating with teams on innovative solutions. Focused on ensuring data quality and integrity across technologies.
Site Reliability Engineer ensuring reliability, availability, and performance of Hiive's platform. Collaborating with cross - functional teams to build scalable and resilient infrastructure while supporting AI systems.
AI Security Control Developer/Site Reliability Engineer for RBC's enterprise AI ecosystem. Design, implement, and validate security controls to protect AI systems with 24/7 reliability.
DevOps Engineering Manager leading a team to improve SDLC at Vancity, Canada's largest Living Wage Employer. Collaborating across teams for reliable delivery of mission - critical systems.
Site Reliability Engineer managing scalable, self - healing systems at Yelp. Collaborating with global teams and ensuring platform reliability across thousands of users.