Current jobs related to SIEM Detection Engineer - Ottawa, Ontario - L3Harris Technologies
-
Senior Cloud Security Operations Engineer
4 days ago
Ottawa, Ontario, Canada Thales Full timeLocation: Ottawa, CanadaThales people architect identity management and data protection solutions at the heart of digital security. Business and governments rely on us to bring trust to the billons of digital interactions they have with people. Our technologies and services help banks exchange funds, people cross borders, energy become smarter and much more....
-
Senior Cloud Security Operations Engineer
3 days ago
Ottawa, Ontario, Canada Thales Full time $89,968 - $182,564Location: Ottawa, CanadaThales people architect identity management and data protection solutions at the heart of digital security. Business and governments rely on us to bring trust to the billons of digital interactions they have with people. Our technologies and services help banks exchange funds, people cross borders, energy become smarter and much more....
-
Senior IT Security Systems Operator
3 days ago
Ottawa, Ontario, Canada ADGA Group Full timeJob DescriptionADGA is hiring multiple Senior IT Security Systems Operators to work in a Security Operations Centre for our client. The Security Operations Centre (SOC) cyber defence services include monitoring, analysis andresponse to cyber threat activity, as well as engineering, integration and operation of a variety of cybersecurity technologies.The...
-
Solutions Engineer
1 week ago
Ottawa, Ontario, Canada Trend Micro Full timeTrend Micro, a global cybersecurity leader, helps make the world safe for exchanging digital information across enterprises, governments, and consumers.Fueled by decades of security expertise, global threat research, and continuous innovation, Trend harnesses AI to protect organizations and individuals across clouds, networks, devices, and endpoints.The...
-
IT Cyber Implementation Specialist
2 weeks ago
Ottawa, Ontario, Canada CAE Full timeAbout This RolePosition SummaryCAE Defence & Security Canada is seeking a Cyber Implementation Specialist to lead the design, integration, and operationalization of cybersecurity solutions across all CAE D&S Canada programs. This role will be embedded within the D&S Canada architecture team, supporting project delivery and in-service sustainment.Key...
-
IT Cyber Implementation Specialist
2 weeks ago
Ottawa, Ontario, Canada CAE Full timeAbout This RolePosition SummaryCAE Defence & Security Canada is seeking a Cyber Implementation Specialist to lead the design, integration, and operationalization of cybersecurity solutions across all CAE D&S Canada programs. This role will be embedded within the D&S Canada architecture team, supporting project delivery and in-service sustainment.This...
-
Sales Director
3 days ago
Ottawa, Ontario, Canada Work in Ottawa Full timeOttawa's tech sector is growing, and so are the opportunities If you're exploring your next role in tech,Work in Ottawacan help you learn about leading employers and exciting careers in Canada's capital.Led by Invest Ottawa, the city's lead economic development agency, this initiative works alongside tech companies, recruiters and search firms, and community...
-
IT Cyber Implementation Specialist
1 week ago
Ottawa, Ontario, Canada CAE Full timeÀ propos de ce postePosition SummaryCAE Defence & Security Canada is seeking a Cyber Implementation Specialist to lead the design, integration, and operationalization of cybersecurity solutions across all CAE D&S Canada programs. This role will be embedded within the D&S Canada architecture team, supporting project delivery and in-service sustainment.Key...
-
Senior SerDes System/DSP Design Engineer
5 days ago
Ottawa, Ontario, Canada Ciena Full timeAs the global leader in high-speed connectivity, Ciena is committed to a people-first approach. Our teams enjoy a culture focused on prioritizing a flexible work environment that empowers individual growth, well-being, and belonging. We're a technology company that leads with our humanity—driving our business priorities alongside meaningful social,...
-
Platform Engineer
1 week ago
Ottawa, Ontario, Canada Nanometrics Inc. Full timeJob TitlePlatform Engineer (Cloud Reliability Engineer)Reports ToDirector, Global OperationsBased InOttawa, ONTermFull TimeAbout NanometricsWith 40 years of seismic technology and industry application experience, we are a global, award-winning company providing monitoring solutions and equipment for studying artificial and natural seismicity. From...
SIEM Detection Engineer
3 weeks ago
L3Harris is dedicated to recruiting and developing high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers' mission and quest for professional growth. L3Harris provides an inclusive, engaging environment designed to empower employees and promote work-life success. Fundamental to our culture is an unwavering focus on values, dedication to our communities, and commitment to excellence in everything we do.
L3Harris Technologies is the Trusted Disruptor in the defense industry. With customers' mission-critical needs always in mind, our employees deliver end-to-end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security.
About your next
Challenge as a SIEM Detection Engineer
:
We are seeking an experienced Security Information and Event Management(SIEM) Detection Engineer to join our team. In this role, you will design, implement, and optimize advanced detection capabilities across open-source SIEM platforms, with a focus on Wazuh, Shuffle, and other telemetry sources. You will play a pivotal role in developing our threat detection, response, and hunting capabilities, ensuring the security posture remains resilient against evolving threats. Your expertise will directly contribute to the development of scalable, reusable detection logic and the continuous improvement of our security operations.
What will you do:
Detection Development:
- Design, implement, and optimize scalable and reusable detection use cases across open-source SIEM platforms, extending beyond vendor-built detections (e.g., Wazuh), to address both current and emerging threats.
- Develop, tune, and maintain detection rules for SIEM, EDR, and other telemetry sources, ensuring alignment with the latest threat intelligence.
- Build and maintain detection-as-code pipelines using technologies such as Wazuh, Shuffle, and ClamAV.
- Correlate threat intelligence with internal telemetry to enrich detection logic and improve accuracy.
- Create detailed runbooks for adversary emulation and control validation, leveraging open-source software technologies.
Threat Simulation & Collaboration:
- Collaborate with the Senior Cyber Specialist to simulate relevant and emergent threat actor tactics, techniques, and procedures (TTPs).
- Utilize frameworks such as MITRE ATT&CK and D3FEND to assess, track, and enhance detection coverage.
Reporting & Communication:
- Prepare clear, concise situation reports and activity summaries for customers and senior leadership.
- Develop and deliver technical walkthroughs, proof-of-concept (PoC) demonstrations, presentations, and articles to stakeholders.
Research & Development:
- Conduct research and development to innovate defensive tactics, techniques, and procedures (TTPs).
- Develop custom applications, utilities, and automation scripts to enhance detection and response capabilities.
- Advance threat hunting capabilities aligned with MITRE ATT&CK and emerging offensive TTPs.
- Contribute to the evolution of digital forensics and incident response (DFIR) tools, techniques, and methodologies
Required Skills and Experiences:
- Bachelors degree in engineering or computer science or technical college diploma
- 5–7 years of consecutive experience deploying, administering, and optimizing open-source SIEM platforms, with a focus on Wazuh, Shuffle, or similar technologies.
- Proven expertise in detection engineering, including rule development, tuning, and threat intelligence integration.
- Strong background in threat hunting, adversary emulation, and DFIR.
- Experience with MITRE ATT&CK, D3FEND, and other cybersecurity frameworks.
- Excellent communication and presentation skills, with the ability to convey complex technical concepts to diverse audiences.
- Demonstrated ability to mentor team members and contribute to a culture of continuous improvement.
Eligibility Criteria (Mandatory):
- Must be eligible for registration with the Controlled Goods Program;
- Must be eligible to obtain and maintain a government of Canada "Reliability" status and Level 2 (Secret) security clearance.
- Must be eligible to meet the requirements for U.S. International Traffic in Arms Regulations (ITAR).
At L3Harris, we foster an inclusive and equitable workplace. L3Harris is committed to treating all employees and applicants for employment with respect and dignity and maintaining a workplace that is free from unlawful discrimination. For applicants with disabilities, we will provide you with accommodation so that you have what you need in order to be at your best.
L3Harris performs background checks prior to employment as all applicants must be eligible for registration with the Controlled Goods Program and obtain and maintain a positive security assessment. Some positions may require a government of Canada "Reliability" status and/or Level 2 (Secret) security clearance. In addition, L3Harris performs pre-employment substance abuse testing where required.