
Detection Engineer
- Brampton, ON
- Permanent
- Full-time
- Lead the creation and evolution of advanced detection content across multi-cloud environments, ensuring dynamic coverage for the rapidly evolving threat landscape, including automated attacks, AI-driven threats, and next-generation adversary techniques. Achieve 90% detection coverage while eliminating blind spots in critical cloud infrastructures.
- Design and implement cutting-edge detection strategies tailored to combat sophisticated attack methods, continuously refining detection rules to reduce false positives by 50%, and leveraging deep expertise in threat intelligence to address emerging, highly evasive threats.
- Develop and deploy complex detection use cases driven by real-time intelligence feeds, behavioral analytics, and historical data, enabling proactive identification of advanced persistent threats (APTs), automated attack patterns, and zero-day exploits, ultimately improving the Mean Time to Detect (MTTD).
- Collaborate directly with incident response teams to ensure detection content is highly optimized for the swift identification, escalation, and mitigation of next-gen threats, including AI-driven attacks, ensuring a rapid and coordinated response to high-severity incidents.
- Continuously assess and refine detection performance metrics, focusing on precision, recall, and false positive reduction, to enhance detection accuracy and adapt to the increasing sophistication and automation of cyber threats across cloud and hybrid environments.
- Curious security mindset with the ability to craft innovative solutions to complex challenges, leveraging advanced technologies and threat intelligence to stay ahead of evolving attack tactics. Familiarity with SOAR platforms and Automation to be able to leverage advanced detection & response methodology.
- Extensive experience in creating and fine-tuning detection content and strategies to identify and mitigate emerging threats, with a deep understanding of the evolving threat landscape in cloud environments. Expertise in recognizing attack patterns, leveraging threat intelligence, and adapting detection methodologies to address new and sophisticated tactics, techniques, and procedures (TTPs) used by advanced adversaries.
- Deep understanding of multi-cloud architectures and the unique security challenges that come with protecting cloud environments, including misconfigurations, data breaches, insecure APIs, and the complexities of managing identity and access across multiple cloud platforms.
- Proven ability to work closely with cross-functional teams, including incident response, to ensure detection content is optimized for rapid threat identification and mitigation.
- Ability to quickly adapt and innovate in response to the constantly changing security landscape, proactively identifying new attack vectors and methods for detection.
- Work Perks Program
- On-site GoodLife Fitness, Basketball & Volleyball courts, Ice Rink, Dry Cleaning services (1PCC Office)
- Tuition Reimbursement & Online Learning
- Pension & Benefits
- Paid Vacation
Candidates who are 18 years or older are required to complete a criminal background check. Details will be provided through the application process.#EN #SS #LTnA #ON