Cloud Security Engineer

1 week ago


Calgary AB TP H, Canada Trafigura Full time $100,000 - $140,000 per year

Main Purpose:

Serve as a senior technical expert within the IT Security Operations Centre, leading complex security incident investigations and advanced threat hunting activities. Drive continuous improvement of security monitoring capabilities through custom detection development, automation, and forensic analysis. Act as technical escalation point for SOC analysts while coordinating cross-functional response efforts during critical security events. Enhance organizational security posture through proactive threat identification, root cause analysis, and development of advanced security tools and procedures.

Knowledge Skills and Abilities, Key Responsibilities:

Core Competencies

Security Monitoring & Detection

  • Advanced Infrastructure Security Knowledge: Demonstrated expertise in network security architecture, endpoint protection, and cloud security principles
  • Security Information and Event Management (SIEM): Proficiency with Splunk Enterprise Security or similar platforms for advanced correlation, threat hunting, and analytics
  • Endpoint Detection & Response (EDR): Expert-level experience with Microsoft Defender for Endpoint (or equivalent), including configuration management, alert triage, and response automation
  • Threat Intelligence Integration: Ability to incorporate threat feeds into detection systems and develop custom detection rules based on emerging threats
  • Advanced Analytics: Experience with behavioural analytics, anomaly detection, and machine learning-based security monitoring techniques

Incident Response & Forensics

  • Incident Management Leadership: Ability to take ownership of complex security incidents from initial detection through complete remediation
  • Digital Forensics: Expertise in memory forensics and network forensics to establish incident timeline and scope
  • Malware Analysis: Advanced skills in static and dynamic malware analysis, including disassembly, debugging, unpacking, and sandbox analysis
  • Threat Hunting: Proactive identification of threats that have evaded existing security controls through hypothesis-driven investigations
  • Incident Coordination: Experience leading cross-functional response teams and communicating effectively with stakeholders during security incidents

Technical Expertise

  • Scripting & Automation: Strong programming skills in PowerShell, Python, and other relevant languages for security automation and custom tool development
  • Active Directory & Identity Management: Deep understanding of AD architecture, LDAP queries, and common attack vectors against identity infrastructure
  • Operating System Security: Comprehensive knowledge of Windows, Linux, and macOS security mechanisms and hardening techniques
  • Network Security: Expertise in network protocols, traffic analysis, and network-based detection techniques
  • Cloud Security: It would be advantageous (but not required) if the candidate had experience securing assets across major cloud platforms (AWS, Azure) and understanding cloud-specific security controls

Key Responsibilities

Security Operations

  • Lead complex security investigations requiring advanced forensic techniques and cross-platform analysis
  • Develop and maintain custom detection rules, playbooks, and response procedures
  • Perform regular threat hunting exercises to identify potential compromises
  • Analyze and validate security alerts escalated from Tier 1 analysts
  • Conduct root cause analysis for security incidents and develop mitigation strategies

Engineering & Development

  • Design and implement security monitoring improvements and automation workflows
  • Develop custom scripts and tools to enhance detection and response capabilities
  • Maintain and optimize security tooling, including SIEM content, EDR policies, and detection rules
  • Collaborate with security architecture teams to improve defensive posture
  • Contribute to continuous improvement of security monitoring and response processes

Leadership & Knowledge Transfer

  • Serve as technical escalation point for Tier 1 SOC analysts
  • Document findings, methodologies, and lessons learned from security incidents
  • Collaborate with threat intelligence teams to enhance detection capabilities

Qualifications

Required Experience

  • 5+ years of experience in cybersecurity with at least 3 years in a SOC or incident response role
  • Demonstrated expertise with SIEM platforms, preferably Splunk Enterprise Security
  • Advanced knowledge of Microsoft Defender for Endpoint or similar EDR solutions
  • Experience with memory forensics tools (e.g., Volatility) and malware analysis techniques
  • Proficiency in at least one scripting language (PowerShell, Python, Perl)

Relevant Certifications (not required)

  • GIAC Certified Incident Handler (GCIH)
  • GIAC Reverse Engineering Malware (GREM)
  • GIAC Certified Forensic Analyst (GCFA)
  • Certified Information Systems Security Professional (CISSP)
  • Offensive Security Certified Professional (OSCP)

Personal Attributes

  • Exceptional analytical and problem-solving abilities
  • Strong communication skills with ability to explain technical concepts to various audiences
  • Self-motivated with ability to work under pressure during security incidents
  • Detail-oriented with strong documentation habits
  • Collaborative mindset and team-oriented approach to security operations

This role requires a security professional who can handle complex security incidents, perform advanced technical analysis, and provide leadership during critical security events. The successful candidate will combine technical depth with operational excellence to strengthen our security posture and respond effectively to emerging threats.

Key Relationships and Department Overview:

IT Security, Trading IT, Middle Office teams.



  • Toronto, ON MH H, Canada Scotiabank Full time $120,000 - $180,000 per year

    Requisition ID: Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.The role:We are committed to investing in our employees and helping you continue your career at Scotiabank.The Developer, Cloud and Application Security Engineering, will be responsible for providing technical leadership within a diverse team...


  • Calgary, AB, Canada InSync Systems Full time

    We are looking for a Cloud Security Architect for a 4-month contract position, with possible extensions in Calgary, Alberta. Must be legally entitled to work in Canada. This position is on-site in downtown Calgary, 40 hours per week. Role Description Our client is undertaking a strategic initiative to address architectural and operational limitations in its...


  • Calgary, AB, Canada InSync Systems Full time

    We are looking for a Cloud Security Architect for a 4-month contract position, with possible extensions in Calgary, Alberta. Must be legally entitled to work in Canada. This position is on-site in downtown Calgary, 40 hours per week. Role Description Our client is undertaking a strategic initiative to address architectural and operational limitations in its...


  • Calgary, AB, Canada InSync Systems Full time

    We are looking for a Cloud Security Architect for a 4-month contract position, with possible extensions in Calgary, Alberta. Must be legally entitled to work in Canada. This position is on-site in downtown Calgary, 40 hours per week. Role Description Our client is undertaking a strategic initiative to address architectural and operational limitations in its...


  • Calgary, AB, Canada InSync Systems Full time

    We are looking for a Cloud Security Architect for a 4-month contract position, with possible extensions in Calgary, Alberta. Must be legally entitled to work in Canada. This position is on-site in downtown Calgary, 40 hours per week. Role Description Our client is undertaking a strategic initiative to address architectural and operational limitations in its...


  • Toronto, ON MH H, Canada Scotiabank Full time $120,000 - $180,000 per year

    Requisition ID: Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.The Principal, Cloud Security Engineering will be a core member of the Cloud Security Architecture Team, responsible for leading the design, development, and formalization of cloud security patterns and capabilities into foundational and...


  • Halifax, Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Saskatoon, Burnaby, Hamilton, Surrey, Victoria, London, Halton Hills, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada AXIS Capital Full time

    This is your opportunity to join AXIS Capital – a trusted global provider of specialty lines insurance and reinsurance. We stand apart for our outstanding client service, intelligent risk taking and superior risk adjusted returns for our shareholders. We also proudly maintain an entrepreneurial, disciplined and ethical corporate culture. As a member of...


  • Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Halifax, Saskatoon, Burnaby, Hamilton, Surrey, Victoria, London, Halton Hills, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada Webflow Full time

    Senior Security Engineer, Cloud Security Argentina Remote At Webflow, our mission is to bring development superpowers to everyone. As the pioneer of the Website Experience Platform (WXP), we’re redefining how teams Build, Manage, and Optimize for the web — combining visual development, powerful CMS, AI-driven personalization, and seamless hosting in a...


  • Toronto, Montreal, Calgary, Vancouver, Edmonton, Old Toronto, Ottawa, Mississauga, Quebec, Winnipeg, Halifax, Saskatoon, Burnaby, Hamilton, Victoria, Surrey, Halton Hills, London, Regina, Markham, Brampton, Vaughan, Kelowna, Laval, Southwestern Ontario, R, Canada Twilio Full time

    A leading communications platform is looking for a Senior Cloud Security Engineer to enhance their Cloud Security capabilities. This remote role requires 5+ years of experience in Cloud Security Engineering. The candidate will lead Cloud Security initiatives, implement security best practices, and investigate vulnerabilities. This position offers a...


  • , AB, Canada AMTRA Solutions Full time

    Overview We are seeking a highly skilled and versatile Microsoft Cybersecurity Architect to join AMTRA Solutions. This hybrid role combines deep operational expertise in security threat detection and response with advanced architectural design for cloud environments. It involves immediate, hands-on management of security incidents and the strategic...