17 Sep
|
Portage Ventures GP
|
Toronto
17 Sep
Portage Ventures GP
Toronto
League is one of the fastest-growing technology companies in Canada and the leading healthcare experience platform. That gap costs health plans and health systems money, and it costs people their health. Health plans and health systems trust us to do this at scale.
League’s Security Engineering teams are responsible for scaling security in the development lifecycle and managing security incident management. We believe in security by design and follow a paved road philosophy by building or buying tools that we can integrate into our platform to ultimately make it easier for our engineers to do the right thing. As a Senior SecOps Engineer you will care deeply about “what goes bump in the night”.
You have peers in Security Engineering who care about “build it secure” at League, your role is to ensure both validation and response occurs when inevitable challenges arise.
Security
Engineers and Analysts on our SecOps team take pride in response. We also accept and encourage applicants who have existing software engineering experience and want to explore security and applicants who may have done a security program in a post‑secondary institution. There are people across the engineering organization who are ready to help grow technical skills and who want to learn more about security.
Security Monitoring and Incident Response: Monitors security events and alerts from various sources (SIEM, endpoint detection, SASE, etc.) and analyzes them to identify potential security incidents. Leads security incident response efforts, including investigation, containment, eradication, and recovery. Coordinates with cross-functional teams (IT, Engineering, Legal, etc.) during security incidents.
Perform root cause analysis of security incidents and recommend preventive measures. Independently analyzes complex security incidents, identifying root causes and developing solutions and drives them to completion. Participate in an on‑call rotation.
Security Tooling and Automation: Manage and maintain security tools and technologies, such as SIEM, EDR, and SASE platforms. Develop and implement automation scripts and workflows to improve security operations efficiency and effectiveness.
Cloud
Functions, Cloud Run) to host and automate security scripts and tools for event enrichment and response. Proficiency in utilizing GCP services like Pub/Sub, Dataflow, BigQuery, and Cloud Storage for data processing, analysis, and enrichment. Evaluate and recommend new security tools and technologies to enhance our security posture. Conduct threat research and analysis to identify emerging threats and vulnerabilities.
Security Engineering and Architecture: Contribute to the design and implementation of security systems architectures and solutions. Evaluate and recommend security controls for recent and existing systems.
Ensure security best practices are followed in system development and implementation.
Collaborate with other teams to ensure security is integrated into all aspects of the organization's operations. Communicate security risks and issues to technical and non‑technical audiences, including leadership. Mentors and provides guidance to junior security analysts and engineers to develop their technical growth.
Ensure compliance with relevant security standards and regulations (e.g., Prepare and present security reports to management. Bachelor of Science degree (BS) in Computer Science (or a related field) Minimum of 7 years in Cybersecurity with a strong focus on Incident Response, or Minimum of 3 years in Security Operations with hands‑on experience in SOAR and other automation tools. Deep and broad technical understanding of security concepts, principles, and technologies.
Experience with security monitoring tools (e.g., SIEM, EDR), including configuration and administration of these tools. Proficiency in scripting languages (e.g., Python, Go).
Experience with threat intelligence platforms and implementing these in security operations. Security certifications (e.g., Experience with digital forensics Experience with cloud security (AWS, Azure, GCP).
Experience with Security Orchestration,Automation and Response (SOAR). Knowledge of networking protocols and security. Contributions to the security community at League, and more broadly (eg. AI Fluency & Ways of Working At League, we are an AI‑native organization.
We expect all employees regardless of role or level to thoughtfully leverage AI to improve the quality, speed, and impact of their work. Use AI tools as part of your daily workflow to enhance productivity, problem‑solving, and decision‑making (e.g., drafting, analysis, coding, research, or process automation) Apply judgment and accountability when using AI by reviewing outputs for accuracy, bias, and quality before use Continuously learn and adapt as new AI tools and capabilities emerge, incorporating them into your ways of working Identify opportunities to improve how work gets done from personal productivity to team‑level workflows by leveraging AI effectively Operate with strong data responsibility and security awareness , especially when working with sensitive or regulated information Individual Contributors:
Use AI to improve personal productivity and quality of output Senior ICs / Managers: Integrate AI into team workflows and improve processes Drive AI adoption at the organizational level and shape how work is done across teams Demonstrated experience using AI tools in a practical, responsible way Ability to balance efficiency with quality and sound judgment AI Fluency & Ways of Working At League, we are an AI‑native organization. We expect all employees regardless of role or level to thoughtfully leverage AI to improve the quality, speed, and impact of their work.
Use AI tools as part of your daily workflow to enhance productivity, problem‑solving, and decision‑making (e.g., drafting, analysis, coding, research, or process automation) Apply judgment and accountability when using AI by reviewing outputs for accuracy, bias, and quality before use Continuously learn and adapt as new AI tools and capabilities emerge, incorporating them into your ways of working Identify opportunities to improve how work gets done from personal productivity to team‑level workflows by leveraging AI effectively Operate with strong data responsibility and security awareness , especially when working with sensitive or regulated information Individual Contributors: Use AI to improve personal productivity and quality of output Senior ICs / Managers: Integrate AI into team workflows and improve processes Drive AI adoption at the organizational level and shape how work is done across teams Demonstrated experience using AI tools in a practical, responsible way Ability to balance efficiency with quality and sound judgment We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status.
Highmark
Health, Google Cloud, League: new digital front door to seamless care Former Providence President and Workday EVP of Corporate Strategy join League Board of Directors League raises $95 million USD in Series C to build world’s leading healthcare CX platform Forbes x League: The Platformization Of Healthcare Is Here Fast Company x League: If we want better innovations in healthtech, we need more competition We have a mix of office‑centric roles based in our vibrant Toronto office, and remote‑eligible roles based anywhere in Canada or US. Each job posting will indicate where the role will be based. Regardless of the role’s posted location, all Toronto‑area Leaguers (living within 65 km of our downtown HQ) collaborate in‑office Monday through Thursday.
Depending on your distance to the office, you’ll enjoy 10 or 20 Flexible Remote Days each quarter for focus and deep‑work time. Use of AI Notice League may use Artificial Intelligence (AI) tools to assist in the #
📌 Senior Security Operations Engineer (Talent pool building) (Toronto)
🏢 Portage Ventures GP
📍 Toronto