SIEM Detection Engineer
2 weeks ago
L3Harris is dedicated to recruiting and developing high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers' mission and quest for professional growth. L3Harris provides an inclusive, engaging environment designed to empower employees and promote work-life success. Fundamental to our culture is an unwavering focus on values, dedication to our communities, and commitment to excellence in everything we do.
L3Harris Technologies is the Trusted Disruptor in the defense industry. With customers' mission-critical needs always in mind, our employees deliver end-to-end technology solutions connecting the space, air, land, sea and cyber domains in the interest of national security.
About your next Challenge as a SIEM Detection Engineer:
We are seeking an experienced Security Information and Event Management(SIEM) Detection Engineer to join our team. In this role, you will design, implement, and optimize advanced detection capabilities across open-source SIEM platforms, with a focus on Wazuh, Shuffle, and other telemetry sources. You will play a pivotal role in developing our threat detection, response, and hunting capabilities, ensuring the security posture remains resilient against evolving threats. Your expertise will directly contribute to the development of scalable, reusable detection logic and the continuous improvement of our security operations.
What will you do:
Detection Development:
- Design, implement, and optimize scalable and reusable detection use cases across open-source SIEM platforms, extending beyond vendor-built detections (e.g., Wazuh), to address both current and emerging threats.
- Develop, tune, and maintain detection rules for SIEM, EDR, and other telemetry sources, ensuring alignment with the latest threat intelligence.
- Build and maintain detection-as-code pipelines using technologies such as Wazuh, Shuffle, and ClamAV.
- Correlate threat intelligence with internal telemetry to enrich detection logic and improve accuracy.
- Create detailed runbooks for adversary emulation and control validation, leveraging open-source software technologies.
Threat Simulation & Collaboration:
- Collaborate with the Senior Cyber Specialist to simulate relevant and emergent threat actor tactics, techniques, and procedures (TTPs).
- Utilize frameworks such as MITRE ATT&CK and D3FEND to assess, track, and enhance detection coverage.
Reporting & Communication:
- Prepare clear, concise situation reports and activity summaries for customers and senior leadership.
- Develop and deliver technical walkthroughs, proof-of-concept (PoC) demonstrations, presentations, and articles to stakeholders.
Research & Development:
- Conduct research and development to innovate defensive tactics, techniques, and procedures (TTPs).
- Develop custom applications, utilities, and automation scripts to enhance detection and response capabilities.
- Advance threat hunting capabilities aligned with MITRE ATT&CK and emerging offensive TTPs.
- Contribute to the evolution of digital forensics and incident response (DFIR) tools, techniques, and methodologies
Required Skills and Experiences:
- Bachelors degree in engineering or computer science or technical college diploma
- 5–7 years of consecutive experience deploying, administering, and optimizing open-source SIEM platforms, with a focus on Wazuh, Shuffle, or similar technologies.
- Proven expertise in detection engineering, including rule development, tuning, and threat intelligence integration.
- Strong background in threat hunting, adversary emulation, and DFIR.
- Experience with MITRE ATT&CK, D3FEND, and other cybersecurity frameworks.
- Excellent communication and presentation skills, with the ability to convey complex technical concepts to diverse audiences.
- Demonstrated ability to mentor team members and contribute to a culture of continuous improvement.
Eligibility Criteria (Mandatory):
- Must be eligible for registration with the Controlled Goods Program;
- Must be eligible to obtain and maintain a government of Canada "Reliability" status and Level 2 (Secret) security clearance.
- Must be eligible to meet the requirements for U.S. International Traffic in Arms Regulations (ITAR).
At L3Harris, we foster an inclusive and equitable workplace. L3Harris is committed to treating all employees and applicants for employment with respect and dignity and maintaining a workplace that is free from unlawful discrimination. For applicants with disabilities, we will provide you with accommodation so that you have what you need in order to be at your best.
L3Harris performs background checks prior to employment as all applicants must be eligible for registration with the Controlled Goods Program and obtain and maintain a positive security assessment. Some positions may require a government of Canada "Reliability" status and/or Level 2 (Secret) security clearance. In addition, L3Harris performs pre-employment substance abuse testing where required.
-
Sales Engineer
1 week ago
Ottawa, Ontario, Canada N-able Full time $90,000 - $120,000 per yearWhy N-ableAt N-able, we're not just helping businesses be secure —we're redefining what it means to be cyber resilient. Our end-to-end platform blends AI-powered capabilities and flexible tech stacks, so customers can manage, secure, and recover with confidence. But the real power behind it all? Our people. We're a global crew of N-ablites, who love...
-
Threat Detection
1 week ago
Ottawa, Ontario, Canada Altis Technology Full time $80,000 - $120,000 per yearWe are seeking a highly skilledThreat Detection & Incident Response Specialistto support national-level security initiatives involving protected and classified IT environments. The role focuses on enhancing monitoring capabilities, improving incident handling processes, and supporting the development and evaluation of cross-domain solution (CDS)...
-
Senior Cybersecurity Engineer
1 week ago
Ottawa, Ontario, Canada Sectigo Full time $120,000 - $180,000 per yearCompany Description At Sectigo, we align around our mission and pride ourselves in helping thousands of customers sleep better at night.Sectigo is the most innovative provider of certificate lifecycle management (CLM), delivering comprehensive solutions that secure human and machine identities for the world's largest brands. Sectigo's automated, cloud-native...
-
Senior Cybersecurity Engineer
1 week ago
Ottawa, Ontario, Canada Sectigo Full time $120,000 - $180,000 per yearCompany DescriptionAt Sectigo, we align around our mission and pride ourselves in helping thousands of customers sleep better at night.Sectigo is the most innovative provider of certificate lifecycle management (CLM), delivering comprehensive solutions that secure human and machine identities for the world's largest brands. Sectigo's automated, cloud-native...
-
Solutions Engineer
8 hours ago
Ottawa, Ontario, Canada Trend Micro Full time US$80,000 - US$120,000 per yearTrend Micro, a global cybersecurity leader, helps make the world safe for exchanging digital information across enterprises, governments, and consumers.Fueled by decades of security expertise, global threat research, and continuous innovation, Trend harnesses AI to protect organizations and individuals across clouds, networks, devices, and endpoints.The...
-
Sales Director
1 week ago
Ottawa, Ontario, Canada Work in Ottawa Full time $110,000 - $140,000Tech companies are hiring in Ottawa If you're looking for your next opportunity in tech, Work in Ottawa can help you build a thriving career in the fast-growing technology industry in Canada's capital.As an initiative of the city's economic development agency, Invest Ottawa, Work in Ottawa helps tech firms fill open positions quickly so they can grow and...
-
IT Cyber Implementation Specialist
3 days ago
Ottawa, Ontario, Canada CAE Full time US$100,000 - US$120,000 per yearAbout This RolePosition SummaryCAE Defence & Security Canada is seeking a Cyber Implementation Specialist to lead the design, integration, and operationalization of cybersecurity solutions across all CAE D&S Canada programs. This role will be embedded within the D&S Canada architecture team, supporting project delivery and in-service sustainment.Key...
-
Infrastructure Security Engineer
1 week ago
Ottawa, Ontario, Canada Carleton University Full time $75,000 - $125,000 per yearDuties and Responsibilities:Responsible to support the operational design, performance, and integrity of enterprise-wide information security systems and infrastructure.Qualifications:The incumbent must possess the following qualifications: Knowledge of information security systems policies, procedures, and processesKnowledge of information systems, Oracle,...
-
IT Cyber Implementation Specialist
11 hours ago
Ottawa, Ontario, Canada CAE Full time $80,000 - $120,000 per yearÀ propos de ce postePosition SummaryCAE Defence & Security Canada is seeking a Cyber Implementation Specialist to lead the design, integration, and operationalization of cybersecurity solutions across all CAE D&S Canada programs. This role will be embedded within the D&S Canada architecture team, supporting project delivery and in-service sustainment.Key...
-
IT Risk
1 week ago
Ottawa, Ontario, Canada REALTOR Full time $80,000 - $120,000 per yearReports To:Team Lead, IT Risk & SecurityDuration:12-month contractEffective:ASAPAbout Us is a cornerstone of Canada's real estate market, dedicated to helping millions of Canadians find attainable housing across the country. As the leading real estate platform in Canada, we offer the most comprehensive listings and resources to assist consumers in finding...