Security Engineer safeguarding AWS environments for Genesys Cloud mission. Handling advanced threats and collaborating with SecDev, PenTest, DevOps, and SRE teams.
Responsibilities
Protecting the trust our customers place in Genesys Cloud requires constant vigilance, technical depth, and proactive defense
Safeguard a global SaaS platform by identifying advanced threats, strengthening identity controls, and driving resilient cloud security architecture
Conduct proactive threat hunting across AWS environments using SIEM, EDR, and cloud-native telemetry to identify and disrupt sophisticated threat activity
Investigate AWS GuardDuty findings and lead root cause analysis of security events, translating threat actor tactics, techniques, and procedures into actionable containment strategies
Develop and maintain threat intelligence feeds and indicators of compromise to strengthen detection capabilities and reduce dwell time
Execute quarterly vulnerability assessments and network segmentation scans, driving remediation to measurable risk reduction outcomes
Identify cloud misconfigurations and implement structured ticketing workflows to ensure timely and traceable remediation
Audit AWS IAM policies, service roles, and trust relationships to enforce least privilege and reduce identity-based attack surfaces
Utilize Identity Security Posture Management practices to detect over-privileged accounts, dormant identities, and authentication misconfigurations
Enhance detection tooling configurations across EDR and SIEM platforms to improve signal quality and operational efficiency
Monitor cloud security services for regression or control gaps and implement persistent validation mechanisms
Support incident containment, eradication, and recovery efforts using IAM-centric response methods such as credential rotation and session revocation
Collaborate with SecDev, PenTest, DevOps, and SRE teams to embed automation and strengthen secure-by-design practices
Requirements
Demonstrate mid-level experience securing AWS cloud environments within a SaaS or enterprise setting
Apply strong knowledge of Linux systems administration and foundational security principles including OWASP Top 10
Utilize EDR platforms such as CrowdStrike, SentinelOne, or Rapid7 and cloud SIEM technologies such as Splunk, Datadog, or Sumo Logic
Analyze threat actor behavior and perform structured root cause analysis to drive lasting remediation
Operate independently while managing security initiatives with minimal oversight
Communicate technical findings clearly to both technical and non-technical stakeholders
Work effectively within regulated environments and adhere to defined architectural and security standards
Benefits
Comprehensive extended group health coverage
Generous paid time off, including vacation and personal leave
Retirement savings program with employer RRSP matching up to a prescribed maximum amount
Family-friendly benefits, including parental leave top-up and adoption assistance
Growth and development opportunities through access to learning resources and internal mobility programs
Security Operations Center Specialist responsible for managing cybersecurity incidents at an international iGaming company. Engaging in threat analyses, security assessments, and incident response operations.
Junior Cyber Defender (SOC Analyst) work on detection and response at Ontinue, an AI - powered security company. Collaborating with teams on investigations and internal process improvements in Canada.
Senior Security Operations Engineer managing security for cloud - native environments at an AI research company. Focus on automation, compliance, and operationalizing security tools across platforms.
Security Operations Manager managing cloud security and identity governance at Cohere. Leading a high - performing security team and executing on strategic business goals.
Senior SOC Analyst at Absolute Security responsible for threat monitoring, hunting, and incident response. Utilizing CrowdStrike Falcon and Microsoft Sentinel to secure enterprise assets against advanced threats.
Corporate Security Operations Lead managing security operations for Carbon60 in a hybrid environment. Involves monitoring, incident response, and security controls across cloud and internal systems.
Product Security Incident Response Manager at Autodesk responsible for external security assessments, penetration testing, and team leadership. Balancing technical work with mentorship to improve security posture.
Senior Security Operations Specialist protecting Relay's digital banking platform from security threats. Implementing advanced threat detection and incident response protocols for optimal business security.