
Cloud Security Engineer (HYBRID)
- Mississauga, ON
- Permanent
- Temps-plein
- Manage and fine-tune Cloud EDR, Security center and other native security tools - making sure we're protected and compliant.
- Monitor our cloud environment for misconfigurations, over-permissioned identities, and non-compliant resources-and work with teams to fix them.
- Apply secure configuration baselines to cloud assets, including storage, virtual machines, networking, and identity services.
- Help maintain strong governance in the cloud through Policy, tagging enforcement, and access reviews.
- Review and update NSGs, ASGs, firewalls, and other cloud-native controls to ensure proper segmentation and protection.
- Keep track of cloud security tool coverage and work to ensure all assets are onboarded and monitored.
- Assist in Investigation and resolution of alerts from Cloud EDR, SIEM, and other cloud tools -helping security operations team to implement corrective measures.
- Identify risks both operational and security during day-to-day activities and during specific, targeted efforts. Make recommendations and/or take action to mitigate these issues as appropriate.
- Implements automation to reduce alert fatigue and improve signal-to-noise ratio in cloud alerts.
- Collaborate with cloud infrastructure, service providers, DevOps, and application teams to ensure secure deployment pipelines and environment hardening.
- Support vulnerability management in cloud environments -flag outdated configurations, missing patches, or identity risks.
- Stay current with evolving cloud threats and platform capabilities-bringing fresh ideas to how we improve our security posture.
- Contribute to sizing and budget estimation processes to align with application and solution life cycle/renewal schedules.
- Document configurations, exceptions, and workflows clearly so others can follow and maintain them.
- Participate in security projects, audits, and cloud-related compliance reviews.
- Provide guidance during the rollout of new services or migrations to make sure security is baked in from the start.
- Evaluates and integrates tools for CSPM, CIEM, and workload protection and drives improvements in governance and automation.
- Participate in internal workshops and architecture review boards for cloud platforms.
- Maintains certifications and hands on experience in evolving cloud technologies.
- Bachelor's degree in information technology, Computer Science or relevant field.
- Two or More of: GIAC Certified, CCSK, OCSP, CISSP (Certified Information Systems Security Professional), Cloud Certified (AWS (Amazon Web Services), GCP, Azure), CEH, ITIL, CCNS, CISC, CPFA, RHCE, Microsoft Certification, Security+, or other related security certification
- 3-6 years of experience in endpoint/cloud security, systems administration, or security engineering broad and in-depth knowledge of cyber security technologies
- Strong experience with Microsoft OS platforms, Linux and cloud security technologies.
- Proficiency in secure baseline configuration and security architecture design
- Hands-on experience with core endpoint/cloud security tools and platforms
- Knowledge of control frameworks such as NIST CSF, CIS, ISO 27001
- Proficiency in scripting (e.g., PowerShell, Python) and automation tools
- Proven ability to drive security processes, remediation, and standards within a complex business environment while maintaining continuity of business operations.
- Comprehensive technical knowledge of all areas within IT plus a comprehensive understanding of all business functions and how their processes and resources interact is required.
- Must be able to multi-task and set priorities
- Must have experience leading and working in a collaborative, multi-disciplined, globally diverse team environment.
- Effective communication skills and the ability to communicate appropriately at all levels of the organization; this includes written and verbal communications as well as visualizations
- Positive approach to customer service with demonstrated ability to handle high pressure support needs in a calm, respectful, and efficient manner
- Must be able to provide sound, convincing arguments based on qualitative data.
- Can explain cloud risks and configurations to a range of stakeholders
- Attention to detail and follow through.
- Demonstrated ability to manage both technical and business relationships and liaise on the information needs of the business to IT and system constraints back to the business.
- Ability to maintain confidential and personal information.
- Demonstrated leader of continuous improvement ideas and implementations
- Ability to operate a multi-cultural and multi-lingual environment both with team members and internal customers (critical)
- Ability to discuss technical information with non-technical individuals across multiple cultures in multiple countries. (critical)
- English fluency (critical)