Security Engineering Team Lead

4 hours, 44 minutes ago
Full-time
Lead
DevOps and Infrastructure
ESO

ESO

ESO provides emergency management software designed to enhance the efficiency and effectiveness of emergency medical services and disaster preparedness teams through reliable data management and real-time information sharing.

Family Services
251-1K
Founded 2004

Description

  • Lead Security Engineers by supporting decisions, analyzing solutions, and enabling security consulting across the business.
  • Provide escalated security guidance to Product and Technology teams on platform design, application behavior, and Internet connectivity.
  • Contribute to application architecture and steer secure system implementation across a multi-cloud environment.
  • Apply defence-in-depth, threat modeling, zero-trust, security-by-design principles, and security standards across ESO’s product portfolio.
  • Use STRIDE threat modeling to evaluate new designs and ensure appropriate controls are implemented.
  • Mitigate vulnerabilities, support developers in producing secure code, and evaluate emerging security technologies.
  • Respond to security and compliance issues identified through analysis and automated tools.
  • Collaborate across teams and provide hands-on expertise to technology teams.
  • Help secure systems and applications used by thousands of emergency responders and hospitals worldwide.

Requirements

  • At least 5 years of experience securing software or infrastructure in cloud platforms such as Microsoft Azure, AWS, or GCP.
  • Experience securing systems according to Well-Architected Frameworks, such as the Azure Well-Architected Framework.
  • Strong networking knowledge, including experience designing, building, managing, or troubleshooting networks.
  • Experience applying security to networks, hosts, web applications, and cloud-native deployments.
  • Experience with security toolsets such as vulnerability management, firewalls, SIEM, PAM, IDS/IPS, EDR/XDR, DLP, SWG, WAF, CSPM, or CNAPP.
  • Understanding or experience with SAST, DAST, IAST, or RASP technologies.
  • Knowledge of CI/CD security practices and securing deployment pipelines.
  • Understanding of current attack tactics, techniques, and procedures, including the MITRE ATT&CK framework.
  • Must be based in Canada and fully authorized to work in Canada; visa sponsorship is not provided.
  • Preferred: experience with Infrastructure as Code, Azure-native technologies, threat modeling, NIST, CIS, OWASP Top 10, or SANS/CWE Top 25.

Benefits

  • Competitive medical, dental, and vision insurance.
  • RRSP with company match.
  • ESO-provided telemedicine service.
  • Front-loaded vacation and sick time.
  • Employee Assistance Program.
  • Life insurance and disability insurance.
  • Remote work arrangement for candidates based in Canada.
  • Training opportunities and mentoring.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Security & Trust Engineer

AssetWatch® 51-250 Construction & Engineering

AssetWatch is hiring a remote Security Engineer to operate its security program, support customer-facing security reviews, maintain SOC 2 compliance, and strengthen cloud, endpoint, identity, and risk-management practices.

AWS JIRA macOS Notion
4 hours, 14 minutes ago

Senior Cloud Network Security Engineer

GoDaddy 5001-10000 Technology, Information and Internet

GoDaddy is hiring a Senior Cloud Network Security Engineer in India to design, build, and secure large-scale AWS environments while embedding automated security controls across cloud services and internal platforms.

AWS AWS CDK CI/CD CloudFormation EC2 Encryption Go Java Network Security Python Secrets Management Terraform
4 hours, 29 minutes ago

IT Director

Gursey 251-1K Diversified Financial Services

Gursey Schneider LLP is seeking an IT Director to lead technology operations, infrastructure, cybersecurity, service delivery, and IT teams while aligning technology capabilities with the needs of its growing professional services organization.

Active Directory Azure Cybersecurity Penetration Testing Windows Server
4 hours, 59 minutes ago

Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Security Engineer for its Cyber Resiliency team to strengthen company-wide information security, support compliance, and enable low-friction protection against cyber threats.

Go Linux macOS Python Shell Scripting
2 days, 4 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers