Security Engineering Team Lead

Posted Aug 25

This is a fully remote position, open to applicants in Canada.

📋 Description

• Oversee the Security Engineers team, facilitating decision-making and solution evaluation.

• Empower Security Engineers to provide security consulting services to the broader organization.

• Offer advanced support and direction to the Product & Technology divisions.

• Provide recommendations on platform development, application functionality, user security, and Internet connectivity.

• Contribute to application architecture and guide system deployment.

• Implement defense in depth, threat modeling, zero trust, and security by design principles, along with standards and frameworks in a multi-cloud setting.

• Utilize the STRIDE model to assess threats and ensure the implementation of appropriate safeguards and controls.

• Address vulnerabilities across various systems.

• Assist developers in generating secure code.

• Assess next-generation security technologies.

• Address security and compliance issues identified through analysis or automated tools.

• Collaborate across teams to disseminate security knowledge throughout the organization.

• Work closely with technology teams on specific security concerns.


⛳️ Requirements

• Minimum of 5 years’ experience in securing software or infrastructure on cloud platforms (e.g., Microsoft Azure, AWS, GCP).

• Experience in securing systems according to Well Architected Frameworks, such as the Azure Well Architected Framework.

• Network design, building, management, or troubleshooting experience, with a strong understanding of networking principles.

• Proven experience applying security measures across networks, hosts, web applications, and cloud-native environments.

• Familiarity with one or more toolsets, including asset management, vulnerability management, firewalls, SIEM, PAM, IDS/IPS, EDR/XDR, DLP, SWG, WAF, CSPM, and CNAPP.

• Strong grasp, and ideally hands-on experience, in the design, implementation, or operation of SAST / DAST / IAST / RASP.

• Knowledge of Continuous Integration / Continuous Deployment best practices and securing pipelines.

• Awareness of current attack tactics, techniques, and procedures, along with the MITRE ATT&CK framework and related MITRE security research.

• Familiarity with Infrastructure as Code and Azure native technologies is a plus.

• Experience with threat modeling, NIST, and CIS frameworks is preferred.

• Understanding of application security standards like OWASP Top 10 and SANS / CWE 25 is preferred.

• Full authorization to work in Canada; ESO does not provide visa sponsorship.

• A successful background check is required for job offers.


🏝️ Benefits

• Competitive health plan, including medical, dental, and vision insurance.

• RRSP with company matching contributions.

• Telemedicine services provided by ESO.

• Front-loaded vacation and sick leave.

• Employee Assistance Program (EAP).

• Life insurance coverage.

• Disability insurance.

People also viewed

Tempo Software22 hours ago

Full Stack Developer

PL flagPoland, +6 more countriesFull-timeFull-stack Engineer
ApplyView job
Uptech23 hours ago

Senior Full-stack Engineer, Next.js, TypeScript

UA flagUkraine OnlyFull-timeFull-stack Engineer
ApplyView job
Parallel Domain23 hours ago

Product Engineer

US flagUnited States, +1 more countryFull-timeFull-stack Engineer$100k – $200k/year
ApplyView job
ECOMMERCE ONE23 hours ago

Full-Stack Developer, .NET/Angular

DE flagGermany OnlyFull-timeFull-stack Engineer
ApplyView job
Grafana Labs23 hours ago

Senior Software Engineer – Session Replay

US flagUnited States OnlyFull-timeFull-stack Engineer$154.4k – $185.3k/year
ApplyView job
Mozilla23 hours ago

Senior Software Engineer

CA flagCanada OnlyFull-timeFull-stack EngineerC$95k – C$139k/year
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers