Current jobs related to SEIM/SOAR Engineer - Montreal Quebec HY S Canada - Arctiq
-
SEIM/SOAR Engineer
3 weeks ago
Montreal, Canada Arctiq Full timeOverviewAs a Bilingual SIEM/SOAR Engineer in our Managed Security Services team, you will play a critical role in the deployment, configuration, and optimization of security monitoring and automation tools for our diverse client base. You will be responsible for building detection use cases, automating response playbooks, and ensuring log source visibility...
-
SOAR Engineer
1 week ago
Quebec, Canada CyberGate Defense Full timeAbu Dhabi, United Arab Emirates | Posted on 08/13/2024Design and Implement SOAR Solutions: Deploy SOAR solutions to automate and enhance security operations workflows, focusing on increasing efficiency and operational effectiveness.Develop and Maintain Scripts: Create, refine, and maintain custom scripts to automate routine tasks and enhance incident...
-
Canada Hitachi Cyber Full timeJoin Hitachi Cyber as a SOAR Engineering Specialist! Are you passionate about security automation and eager to make a global impact? At Hitachi Cyber, we’re redefining cybersecurity operations through innovation, automation, and collaboration. As a SOAR Engineering Specialist within our Solution Engineering Team, you’ll lead the design and deployment of...
-
Senior Software Engineer, Integrations
3 weeks ago
, , Canada Censys Full timeJoin to apply for the Senior Software Engineer, Integrations role at Censys Company Background Censys’ mission is to be the one place to understand everything on the internet. Frustrated by the lack of trustworthy Internet intelligence, we set out to create the industry’s most comprehensive, accurate, and up-to-date map of the Internet. Today, Censys...
-
Senior Security Engineer
24 hours ago
, , Canada WSP in Canada Full timeSenior Security Engineer Get AI-powered advice on this job and more exclusive features. Opportunity We are seeking a highly skilled and advanced technical cybersecurity professional, preferably a Microsoft MVP, to join our Global Security Operations and Engineering team. The successful candidate will lead technical security initiatives focused on Microsoft...
-
Senior Software Engineer, Integrations
3 weeks ago
, , Canada Censys Full timeSenior Software Engineer, Integrations About the Company Censys’ mission is to be the one place to understand everything on the internet. Frustrated by the lack of trustworthy Internet intelligence, we set out to create the industry’s most comprehensive, accurate, and up-to-date map of the Internet. Today, Censys delivers real-time Internet intelligence...
-
Senior Automation Developer
2 days ago
(s): Canada : Ontario : Toronto Scotiabank Global Site Full time $80,000 - $120,000 per yearRequisition ID: 237126Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.We are looking for a Senior Automation Developer and Data Specialist with a unique blend of security automation and graph data engineering expertise. In this role, you will spend roughly half your time building and maintaining python...
-
MÉCANICIEN MACHINES INDUSTRIELLES
6 days ago
Canada Hitachi Cyber Full timeJoin Hitachi Cyber as a SOAR Engineering Specialist! Are you passionate about security automation and eager to make a global impact? At Hitachi Cyber, we’re redefining cybersecurity operations through innovation, automation, and collaboration. As a SOAR Engineering Specialist within our Solution Engineering Team, you’ll lead the design and deployment...
-
Senior Software Engineer, Integrations
4 weeks ago
, , Canada Censys Full timeOverview Censys’ mission is to be the one place to understand everything on the internet. Frustrated by the lack of trustworthy Internet intelligence, we set out to create the industry’s most comprehensive, accurate, and up-to-date map of the Internet. Today, Censys delivers real-time Internet intelligence and actionable threat insights to global...
-
Montreal, Canada Shearwater Full timeMontreal Summary Join our team at Shearwater Aerospace, where you will collaborate with leading experts in autonomous soaring research and shape the future of flight technology. Inspired by birds that can fly for days or even months, our co-founders envisioned a world where drones could emulate this capability. This vision extends across various domains,...
SEIM/SOAR Engineer
2 weeks ago
Position Overview:
As a Bilingual SIEM/SOAR Engineer in our Managed Security Services team, you will play a critical role in the deployment, configuration, and optimization of security monitoring and automation tools for our diverse client base. You will be responsible for building detection use cases, automating response playbooks, and ensuring log source visibility across customer environments. This role requires strong technical expertise, a security-first mindset, and a passion for helping clients improve their threat detection and response capabilities.
Core Responsibilities:
- Deploy, configure, and maintain SIEM platforms (e.g., Palo Alto XSIAM, Splunk, Sentinel) for MSSP clients.
- Onboard new log sources and ensure full visibility across cloud, endpoint, network, and application layers.
- Develop custom parsers, normalization rules, and enrichment workflows.
- Build and maintain automated playbooks for incident triage, enrichment, and response using platforms like Cortex XSOAR, SecOps SOAR or Splunk SOAR.
- Integrate SOAR with threat intelligence, ticketing systems, firewalls, EDRs, and other customer tools.
- Continuously improve automation coverage to reduce analyst workload and response times.
- Collaborate with SOC analysts and threat hunters to design and implement detection use cases based on MITRE ATT&CK, threat intel, and client risk profiles.
- Tune detection rules to reduce false positives and ensure actionable alerts.
- Serve as a technical expert for MSSP clients during onboarding, tuning sessions, and ongoing support.
- Provide recommendations for SIEM/SOAR improvements, architecture changes, and operational efficiencies.
- Assist with incident response investigations where tooling configuration or custom queries are required.
- Maintain detailed documentation of configurations, playbooks, and processes.
- Train internal SOC teams and client stakeholders on SIEM/SOAR workflows and usage.
- Stay abreast of advancements in SIEM and SOAR technologies, incorporating new capabilities into hunting and detection workflows.
Qualifications:
- Fully bilingual English and French
- 3+ years of experience working with SIEM and/or SOAR platforms in a security operations or MSSP setting.
- Hands-on experience with at least one major SIEM (e.g., Palo Alto XSIAM, Splunk, Sentinel).
- Experience with SOAR platforms and playbook development (e.g., Cortex XSOAR, SecOps SOAR, Splunk SOAR)
- Strong scripting and automation skills (e.g., Python, PowerShell, Bash, REST APIs)
- Proficiency with log formats and parsing (Syslog, JSON, Windows Events, CEF, etc.)
- Knowledge of detection logic development using query languages (e.g., SPL, KQL, regex, Sigma)
- Solid understanding of cybersecurity concepts, frameworks, and methodologies (MITRE ATT&CK, cyber kill chain)
- Experience integrating threat intelligence into SIEM/SOAR platforms
- Strong documentation and communication skills, especially with client stakeholders
- Ability to manage multiple clients and projects in a fast-paced, service-oriented environment
- Experience in an MSSP or MDR environment is a plus.
- Certifications such as Palo Alto XSOAR Engineer, Splunk Certified Admin, Azure SC-200, GCIH, Security+, or CISSP preferred
- Experience with cloud logging (AWS CloudTrail, Azure Monitor, Google Chronicle) is a plus.
Arctiq is an equal opportunity employer. If you need any accommodations or adjustments throughout the interview process and beyond, please let us know. We celebrate our inclusive work environment and welcome members of all backgrounds and perspectives to apply.
We thank you for your interest in joining the Arctiq team While we welcome all applicants, only those who are selected for an interview will be contacted.