Security Platform Engineer, SIEM

Posted yesterday

Apply Now

Resume Score

Check how well your resume matches this job before you apply.

Sign in to check score

About the role

  • Security Platform Engineer managing Splunk SIEM and enterprise cybersecurity technologies for Sun Life’s financial services business. Investigating incidents, implementing controls, and supporting security transformation.

Responsibilities

  • Support and manage the SIEM (Splunk Enterprise Security) within the Security Visibility squad
  • Analyze information systems using cybersecurity techniques and lead security initiatives and enterprise-level projects
  • Implement security solutions and perform POC/POV for new technologies
  • Support and maintain security technologies deployed within Sun Life and owned by Security Visibility
  • Implement risk-driven security controls and provide subject matter expertise during audits
  • Investigate and respond to security incidents within defined SLAs
  • Participate in 24x7 on-call support and major incident management calls
  • Identify business risks and recommend strategies to address them
  • Manage capacity and resiliency of security systems protecting internal and client data
  • Collaborate with security peers, vendors, and Sun Life teams to enhance security posture and best practices
  • Support digital transformation using JIRA and Confluence, including estimating stories, defining completion criteria, and tracking assignments
  • Transition and operationalize projects and products, including RACI development, documentation, and team education
  • Document and maintain cybersecurity playbooks, policies, and knowledge-base articles for Incident Management and CSIRT processes
  • Continuously improve operational and security platform processes

Requirements

  • Information Technology university degree/college diploma in a related discipline or equivalent work experience
  • Minimum 2–5 years of information security and engineering experience with enterprise-level security technologies
  • Experience in one or more areas: Perimeter, Endpoints, Crypto, Cloud, Email Security, Security Visibility, and Automation and Orchestration
  • Experience with infrastructure visibility technologies such as SIEM (QRadar or Splunk ES), IDS/NDR, or threat simulation tools
  • Broad exposure to multiple security disciplines and in-depth exposure to Incident Response or Detection Engineering
  • Knowledge of security controls and risk management frameworks, including NIST and ISO 2700x standards
  • Experience with endpoint detection and response, intrusion detection, certificate management, email security, and web content filtering technologies
  • Experience planning, researching, and developing security policies, standards, and procedures
  • Experience deploying enterprise-level technology through managed projects using Scrum and Kanban methodologies
  • Knowledge of networking technologies, firewalls, web application firewalls, and intrusion detection and prevention systems
  • Knowledge of AWS cloud technologies and strong practical knowledge of AWS and Microsoft Azure cloud technologies and services
  • Knowledge of disaster recovery technologies and methods
  • Ability to work independently with ambiguity and deliver expected outcomes
  • Strong oral and written communication skills
  • Exceptional troubleshooting, analytical, critical-thinking, investigative, and problem-solving skills
  • Must satisfactorily complete applicable background checks
  • Must obtain Reliability Status Clearance as a condition of starting employment, including a law enforcement inquiry, credit check, and accounting for activities outside Canada during the specified period

Benefits

  • Wellness programs supporting mental, physical, and financial health
  • Career paths with networking potential
  • Hybrid work flexibility between home and office
  • Incentive plans for eligible employees, subject to individual and company performance
  • Supportive, flexible, and inclusive work environment
  • Accommodation in the application process for persons with disabilities

Job type

Full Time

Experience level

JuniorMid level

Salary

CA$65,000 - CA$105,000 per year

Degree requirement

Associate's Degree

Tech skills

AWSAzureCloudCyber SecurityFirewallsSplunk

Location requirements

HybridTorontoCanada

Report this job

Found something wrong with the page? Please let us know by submitting a report below.