
Security Engineering Team Lead
Posted Aug 25

Posted Aug 25
This is a fully remote position, open to applicants in Canada.
• Oversee the Security Engineers team, facilitating decision-making and solution evaluation.
• Empower Security Engineers to provide security consulting services to the broader organization.
• Offer advanced support and direction to the Product & Technology divisions.
• Provide recommendations on platform development, application functionality, user security, and Internet connectivity.
• Contribute to application architecture and guide system deployment.
• Implement defense in depth, threat modeling, zero trust, and security by design principles, along with standards and frameworks in a multi-cloud setting.
• Utilize the STRIDE model to assess threats and ensure the implementation of appropriate safeguards and controls.
• Address vulnerabilities across various systems.
• Assist developers in generating secure code.
• Assess next-generation security technologies.
• Address security and compliance issues identified through analysis or automated tools.
• Collaborate across teams to disseminate security knowledge throughout the organization.
• Work closely with technology teams on specific security concerns.
• Minimum of 5 years’ experience in securing software or infrastructure on cloud platforms (e.g., Microsoft Azure, AWS, GCP).
• Experience in securing systems according to Well Architected Frameworks, such as the Azure Well Architected Framework.
• Network design, building, management, or troubleshooting experience, with a strong understanding of networking principles.
• Proven experience applying security measures across networks, hosts, web applications, and cloud-native environments.
• Familiarity with one or more toolsets, including asset management, vulnerability management, firewalls, SIEM, PAM, IDS/IPS, EDR/XDR, DLP, SWG, WAF, CSPM, and CNAPP.
• Strong grasp, and ideally hands-on experience, in the design, implementation, or operation of SAST / DAST / IAST / RASP.
• Knowledge of Continuous Integration / Continuous Deployment best practices and securing pipelines.
• Awareness of current attack tactics, techniques, and procedures, along with the MITRE ATT&CK framework and related MITRE security research.
• Familiarity with Infrastructure as Code and Azure native technologies is a plus.
• Experience with threat modeling, NIST, and CIS frameworks is preferred.
• Understanding of application security standards like OWASP Top 10 and SANS / CWE 25 is preferred.
• Full authorization to work in Canada; ESO does not provide visa sponsorship.
• A successful background check is required for job offers.
• Competitive health plan, including medical, dental, and vision insurance.
• RRSP with company matching contributions.
• Telemedicine services provided by ESO.
• Front-loaded vacation and sick leave.
• Employee Assistance Program (EAP).
• Life insurance coverage.
• Disability insurance.
Tempo Software
Uptech
Parallel Domain
ECOMMERCE ONE
Get handpicked remote jobs straight to your inbox weekly.