
Security Defense Engineer
- Canada
- Permanent
- Temps-plein
- Platform Management & Optimization
- Administer and maintain security configurations across Microsoft Azure, Zscaler, Microsoft Sentinel, and Microsoft Defender.
- Ensure seamless integration and interoperability between platforms to support a unified security posture.
- Monitor platform performance, conduct health checks, and implement improvements.
- Threat Detection & Response
- Develop and fine-tune detection rules, alerts, and playbooks in Microsoft Sentinel.
- Investigate and respond to security incidents using Microsoft Defender XDR and Sentinel.
- Collaborate with SOC teams to ensure timely and effective incident response.
- Security Policy & Compliance
- Implement and enforce security policies using Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA).
- Ensure compliance with internal and external security standards and frameworks (e.g., ISO 27001, NIST, GDPR).
- Automation & Scripting
- Automate repetitive tasks and workflows using PowerShell, KQL, or other scripting languages.
- Develop custom dashboards and reports for visibility and compliance tracking.
- Collaboration & Support
- Work closely with IT, Security Engineering, Development and Business functions, and Risk teams to align security controls with business needs.
- Provide technical guidance and training to team members and stakeholders.
- Bachelor's degree in computer science, Information Security, or related field (or equivalent experience).
- 3+ years of experience in cybersecurity engineering or security operations.
- Hands-on experience with:
- Microsoft Azure Security Center & Azure AD
- Microsoft Sentinel (SIEM/SOAR)
- Microsoft Defender for Endpoint, Identity, Cloud Apps
- Zscaler ZIA/ZPA
- Strong understanding of network security, identity and access management, and cloud security principles.
- Proficiency in KQL, PowerShell, or Python for automation and analysis.
- Relevant certifications such as AZ-500, SC-200, Zscaler Certified Professional, or CISSP.
- Experience with Zero Trust architecture and secure cloud transformation.
- Familiarity with MITRE ATT&CK framework and threat intelligence integration.