
Senior Security Engineer – Insider Threat, Investigations
Posted Jul 14

Posted Jul 14
This is a fully remote position, open to applicants in Australia.
• Oversee complex investigations utilizing advanced techniques while considering potential legal or regulatory issues.
• Collaborate closely with Legal, People, and Security teams to define investigation scope, manage evidence, address privacy concerns, and coordinate response efforts.
• Compose comprehensive investigation reports that detail findings, evidence, impacts, and recommendations for both technical and non-technical audiences.
• Address security incidents from detection to containment, remediation, and final resolution.
• Develop and enhance detection logic, correlation rules, and alerts across SIEM and EDR platforms.
• Actively conduct threat hunting and anomaly detection exercises within Canva’s environment.
• Design and refine scalable tools, workflows, and operational processes that enhance Canva’s incident detection, investigation, and response capabilities.
• Serve as a point of escalation and coordinate incidents during active investigations and security breaches.
• Engage in a collaborative on-call rotation to support critical security investigations and incident response initiatives.
• Mentor and facilitate the development of team members through knowledge sharing, operational advice, and best practices in investigations.
• Proven experience in leading or coordinating security investigations, digital forensics, or incident response in complex environments.
• Ability to work cross-functionally with Legal, People, and Security teams, effectively communicating during high-pressure scenarios.
• Capable of conveying complex technical ideas to diverse audiences, including those who are not technically inclined.
• Experience in building or enhancing detection, automation, case management, or response workflows on a large scale.
• Practical experience investigating macOS environments, as well as Linux and Windows systems.
• Proficient in designing, constructing, and refining security tools and operational workflows.
• Confident in utilizing SIEM, EDR, endpoint telemetry, and security investigation tools.
• Enjoy tackling ambiguous challenges and proactively enhancing systems, processes, and operational maturity.
• Bring empathy, sound judgment, humility, and a collaborative attitude to sensitive investigations and incident coordination.
• Familiarity with programming or scripting languages such as Python, Golang, or Java.
• Equity packages - we want our success to be yours too.
• Inclusive parental leave policy that supports all parents and caregivers.
• An annual Vibe & Thrive allowance to enhance your wellbeing, social connections, office setup, and more.
• Flexible leave options that empower you to contribute positively, take time to recharge, and support your personal needs.
Lime
Threatscape
GFT Technologies
BeyondTrust
Get handpicked remote jobs straight to your inbox weekly.