Junior Security Engineer
1 week ago
Junior Security Engineer
MCAP at a Glance
Joining
MCAP means you will be a part of our diverse workforce of highly talented
individuals who are recognized for their expertise and success At MCAP, your
professional expertise, commitment to teamwork and passion for service
excellence are recognized and rewarded with competitive total rewards offering,
a career with continuous learning and development (formal & informal
training), and exciting opportunities in a dynamic, entrepreneurial
environment.
The Role
This entry-level position is responsible for supporting and assisting the Security Engineering team conduct incident detection, security incident response, threat hunting, information security operations and vulnerability management.
The role also involves identifying areas of security non-compliance and escalating findings to ensure effective operation of security controls.
The individual will collaborate closely with internal and external parties during incident response and contribute to cyber security and governance activities and initiatives.
- Contribute to MCAP's capability to detect, investigate, respond to, and recover from information security incidents to minimize business impact.
- Participate in the management of corporate security tools and appliances to ensure effective operations (SOC, SIEM, Vulnerability Scanning).
- Review and analyze security logs and reports from a variety of sources including security tools, servers, network devices and recommend and implement improvements for an improved security posture.
- Stay updated with the latest security trends, threats, and technology solutions.
- Contribute to the architecture, selection and design of security strategies to identify, protect, detect, respond to and recover from security threats.
- Assist with the testing and implementing of best-of-breed security products and services.
- Create, participate and execute regular exercises (e.g. red/blue, pen testing).
- Analyze and prioritize vulnerabilities based on their severity and potential impact.
- Conduct regular vulnerability assessments and scans to identify potential security risks.
- Monitor security tools and systems for signs of vulnerabilities and threats.
- Prepare and present reports on vulnerability findings and remediation efforts.
- Collaborate with IT and development teams to remediate identified vulnerabilities.
- Support incident response activities related to security vulnerabilities.
- Perform system access reviews, audits and security administration activities.
- Contribute and participate in the development of security policies, standards, operating procedures and playbooks.
- Contribute to the remediation of information security issues related to audit responses and risk management activities.
- Participate in vulnerability assessments, security audits, and penetration tests and the resolution and management of any findings.
What You Bring To The Team
- 1-2 years in information security
- Formal Security accreditations (CYSA+, Security+)
- Working towards (CISSP, CISM)
- General knowledge and awareness with security incident investigations, system hardening, vulnerability management and security assessments
- General knowledge and awareness with SIEM's and SOC
- General knowledge and awareness with security tools and technology (e.g. forensics, PAM, DNS, DKIM, DMARC, firewalls, IDS/IPS, WAF, encryption, network zoning, endpoint protection, email protection, DLP, CASB, NAC)
- General knowledge and awareness with incident, change and problem management procedures.
- General knowledge and awareness with application security tools and technology (e.g. secure coding, code analysis, OWASP)
- General knowledge and awareness with information security governance frameworks (e.g. CIS, NIST, ISO)
- Familiar with risk management and risk discipline methodologies
- General knowledge and awareness with security tools (e.g. SIEM, IDS/IPS, NAC, AV, DLP, EDR, WAF, email security, web technology security, application security)
- General knowledge and awareness with of networking security (e.g. firewalls, TCP, SSL/TLS, SSO, MFA, hardening, CIS)
- General knowledge and awareness with enterprise server platforms, virtualized technology and cloud operations
- SIEM technology
- MDR, MSSP or SOC Services
- General knowledge and awareness with security technologies & protocols (e.g. IDS, IPS, NAC, DLP, EDR, WAF, CASB, AES, WPA2)
- General knowledge and awareness with network security protocols (e.g TCP, SSL, TLS, IPSec, VPN, Kerberos)
- Basic coding or script abilities
- General knowledge and awareness with enterprise network and server platforms, virtualized technology and cloud operations
- General knowledge and awareness with application security best practices (e.g. OWASP, secure coding)
- Scripting knowledge in Powershell, Bash, Python, PowerShell are an asset
- Programming knowledge in SQL, Excel Power Query are an asset
- A degree or diploma in a relevant area of study with preference for information & cyber security or computer science/engineering.
- Working towards or certified in CISSP, CISM or similar certifications
If this sounds like you and you are looking to be a part of one of Canada's largest independent mortgage finance companies, then we want to hear from you
Be A Part Of Something Great
MCAP
is Canada's largest independent Mortgage
Finance company with
over $150 billion in assets under management providing mortgage solutions for
residential and commercial properties. For over 35 years,
MCAP originates, trades, securitizes and services mortgages in offices across
Canada. MCAP originates residential mortgages exclusively through the mortgage
broker channel as we believe that a professional mortgage broker is a
consumer's best option and MCAP actively promotes the services of mortgage
brokers across the country. MCAP is also a leader in the Canadian residential
construction lending market with over 25 years in the business. Our teams of
dedicated professionals serve a variety of developer, construction and lender
clients across Canada.
Position #: req2105
Employment Status: Permanent Full Time
Location: Waterloo; Ontario
Number Of Openings: 1
Department: Information Technology
Internal Job Title: Junior Security Engineer
The above information in this description has been designed to indicate the general nature and level of work performed by employees in the position. It is not designated to contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees assigned to this job.
MCAP provides equal opportunities for all applicants and is committed to fostering an inclusive, accessible environment, where all employees feel valued, respected and supported throughout the recruitment and employment process. If you require accommodation, we will work with you to meet your needs.
-
Junior Backend Engineer
3 weeks ago
, , Canada Brim Financial Full timeJoin to apply for the Junior Backend Engineer role at Brim Financial . Get AI-powered advice on this job and more exclusive features. Company Overview Brim Financial is one of the fastest growing enterprise technology companies, according to Deloitte’s Technology Fast 50 in North America. Brim's Credit-Card-as-a-Service has been recognized as best-in-class...
-
Senior Blockchain Security Engineer
2 days ago
, , Canada Omaze Full timePosition: Senior Blockchain Security Engineer Location: Remote – Canada Type: Full-time Pay: $191,100 CAD + bonus + equity + benefits The Mission This role sits in Coinbase’s Protocol Security team — responsible for ensuring users interact safely with blockchain technologies. You’ll help secure L1s, L2s, DeFi protocols, staking mechanisms , and...
-
Senior Security Automation Engineer
2 weeks ago
, , Canada Samsara Full timeA leader in IoT solutions is seeking a Senior Security Engineer to enhance security automation and build solid security practices. This remote role based in Canada focuses on developing integrations, managing security systems, and mentoring junior engineers. The ideal candidate has significant experience with automation platforms like Tines and strong...
-
Engineering Manager, Security
2 days ago
, , Canada Anchorage Digital Full timeReady to be pushed beyond what you think you’re capable of? At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, every day, as we build the emerging onchain platform — and with it, the future global financial system. To achieve our mission, we’re seeking a very...
-
System Engineer, Junior
3 weeks ago
, , Canada General Dynamics Corporation Full timeResponsibilities for this Position Location: 1941 Robertson Rd, Nepean, ON K2H 5B7, Canada Employment Type: Fulltime-Regular Company Description At General Dynamics Mission Systems Canada, our focus extends beyond engineering technology solutions we are dedicated to cultivating careers. If you seek a purpose-driven career solving some of the world’s most...
-
Senior Backend Engineer
2 weeks ago
, , Canada DataRobot, Inc. Full timeA leading AI company in Canada is looking for a Senior Backend Engineer to join their Security and Access team. The role requires expertise in software development, particularly in Python or Go, and a deep understanding of IAM concepts. You will lead projects, mentor junior engineers, and work on scalable backend systems crucial for AI initiatives. This...
-
Senior Cybersecurity Engineer: Network Security
3 weeks ago
, , Canada NielsenIQ Full timeA leading market analytics firm in Canada is seeking a Cybersecurity expert to lead the design and implementation of secure infrastructure solutions. This role involves collaboration with cross-functional teams, mentoring junior engineers, and enhancing security posture through innovative solutions. The ideal candidate has 5-8 years of experience in...
-
, , Canada Abnormal Security Full timeA leading cybersecurity firm in Canada is seeking a Staff Machine Learning Engineer to enhance its Attack Detection team's capabilities. This role involves architecting advanced ML systems, driving technical roadmaps, and mentorship. The ideal candidate has extensive experience in machine learning applications and a solid understanding of deep learning...
-
Senior Security Engineer
1 day ago
Remote - Canada Samsara Full time $120,000 - $180,000 per yearAbout the role:The Senior Security Engineer - Enterprise Security Automation engineer is responsible for building, operating, and maintaining Samsara's core security infrastructure and the automations that power it. You will collaborate with and mentor a global team of engineers to help build a world-class security engineering program utilizing modern...
-
Cyber Security Engineer
5 days ago
Vancouver, British Columbia, VCG, Canada D3 Security Management Systems Full time $65,000 - $100,000 per yearCyber Security EngineerLocation: Greater Vancouver area candidates onlyThe Opportunity:D3 Security is transforming SecOps with Morpheus, our AI-driven Autonomous Security Operations Center (ASOC) platform. Morpheus automates Tier 1–3 analyst work with unmatched precision, processing millions of alerts in real time and empowering security teams to respond...