25 Sep
|
League
|
Toronto
Who you are
- As always, if this is your skillset we encourage you to apply. We also accept and encourage applicants who have existing software engineering experience and want to explore security and applicants who may have done a security program in a post-secondary institution
- Bachelor of Science degree (BS) in Computer Science (or a related field)
- Minimum of 7 years in Cybersecurity with a solid focus on Incident Response
- Minimum of 3 years in Security Operations with hands-on experience in SOAR and other automation tools
- Deep and broad technical understanding of security concepts, principles, and technologies
- Advanced knowledge of Security Operations tools (e.g., CrowdStrike NG SIEM, EDR, Falcon Complete, Netskope, Wiz Defend), including configuration and administration of these tools
- Proven leading and coordinating incident response processes and methodologies
- Proficiency in scripting languages (e.g., Python, Go)
- Experience building or integrating LLM-based agents/copilots into SIEM, SOAR, or EDR workflows (e.g., incident summarization, IOC enrichment, case triage)
- Experience with threat intelligence platforms and implementing these in security operations
- Strong analytical and problem-solving skills
- You are a collaborator at your core
- Excellent communication and interpersonal skills
- Security certifications (e.g., OffSec Certifications, GIAC Certifications)
- Experience with digital forensics
- Experience with cloud security (AWS, Azure, GCP)
- Experience with Security Orchestration,Automation and Response (SOAR)
- Knowledge of networking protocols and security
- Contributions to the security community at League, and more broadly (eg. blog posts, conference presentations, etc.)
- Demonstrated experience using AI tools in a practical, responsible way
- Curiosity and openness to experimenting with new technologies
- Ability to balance efficiency with quality and sound judgment
What the job involves
- League’s Security Engineering teams are responsible for scaling security in the development lifecycle and managing security incident management
- We believe in security by design and follow a paved road philosophy by building or buying tools that we can integrate into our platform to ultimately make it easier for our engineers to do the right thing. As a Senior SecOps Engineer you will care deeply about “what goes bump in the night”
- You have peers in Security Engineering who care about “build it secure” at League, your role is to ensure both validation and response occurs when inevitable challenges arise
- This role will focus on detection, response, tuning, and refinement.
Security
Engineers and Analysts on our SecOps team take pride in response
- There are people across the engineering organization who are ready to help grow technical skills and who want to learn more about security
- Manage and maintain security tools and technologies, such as CrowdStrike NG SIEM, EDR, Falcon Complete, Wiz Defend and Netskope SASE
- Develop and implement automation scripts and workflows to improve security operations efficiency and effectiveness
- Demonstrated ability to leverage GCP services (e.g., Cloud Functions, Cloud Run) to host and automate security scripts and tools for event enrichment and response
- Proficiency in utilizing GCP services like Pub/Sub, Dataflow, BigQuery, and Cloud Storage for data processing, analysis, and enrichment
- Evaluate and recommend recent security tools and technologies to enhance our security posture
- Direct hands-on experience integrating Claude or OpenAI models into security workflows (e.g., incident summarization, IOC enrichment, case triage)
- Manage and maintain security tools and technologies, such as SIEM, EDR, and SASE platforms
- Manage and maintain infrastructure through Terraform
- Conduct threat research and analysis to identify emerging threats and vulnerabilities
- Develop and implement threat detection rules and use cases
- Contribute to the design and implementation of security systems architectures and solutions
- Evaluate and recommend security controls for new and existing systems
- Ensure security best practices are followed in system development and implementation
- Collaborate with other teams to ensure security is integrated into all aspects of the organization's operations
- Communicate security risks and issues to technical and non-technical audiences, including leadership
- Mentors and provides guidance to junior security analysts and engineers to develop their technical growth
- Ensure compliance with relevant security standards and regulations (e.g., HITRUST, NIST, GDPR)
- Prepare and present security reports to management
- Participate in routine audits within the organization
- What this means in practice:
- Use AI tools as part of your daily workflow to enhance productivity, problem-solving, and decision-making (e.g., drafting, analysis, coding, research, or process automation)
- Apply judgment and accountability when using AI by reviewing outputs for accuracy, bias, and quality before use
- Continuously learn and adapt as new AI tools and capabilities emerge, incorporating them into your ways of working
- Identify opportunities to improve how work gets done from personal productivity to team-level workflows by leveraging AI effectively
- Operate with strong data responsibility and security awareness, especially when working with sensitive or regulated information
- How this scales by level:
- Individual Contributors: Use AI to improve personal productivity and quality of output
- Senior ICs / Managers: Integrate AI into team workflows and improve processes
- Leaders: Drive AI adoption at the organizational level and shape how work is done across teams
- Security-Related Responsibilities:
- Compliance with Information Security Policies
- Compliance with League’s secure coding practice
- Responsibility and accountability for executing League's policies and procedures
- Notification of HR, Legal, Compliance & Security of any incidents, breaches or policy violations
Benefits
- Flexible medical and dental plans
- 401(k) and RRSP matching programs
- Health, lifestyle, learning and family spending accounts
- Employee stock option program (ESOP)
- Generous leaves (including parental and sabbatical)
- Flexible time off
📌 Senior Security Operations Engineer (Toronto)
🏢 League
📍 Toronto