Senior Security Engineer:
On behalf of our Technology client, Procom is searching for a Senior Security Engineer for a contract-to-hire role. This position is a hybrid position with 3 days onsite at our client’s Toronto office.
Senior Security Engineer - Job Description:
This role is part of a policy-as-code team focused on automating security controls and governance across public cloud environments, specifically Azure and GCP. The team uses Wiz as the primary platform and operates in agile pods to enhance cloud security posture, including container security and Kubernetes scanning.
Senior Security Engineer - Responsibilities:
- Design, implement, and maintain cloud-native container security controls across Kubernetes platforms (AKS, GKE, and EKS).
- Develop, tune, and maintain container threat detection rules for identifying malicious activities.
- Monitor runtime security events and lead triage and incident response for container and Kubernetes workloads.
- Deploy, configure, and optimize Wiz Defend/CWPP capabilities.
- Build and automate security guardrails and preventative controls using Infrastructure as Code.
- Secure the container software supply chain through image scanning and registry security.
- Identify, prioritize, and remediate container vulnerabilities and misconfigurations.
- Develop and maintain Compliance-as-Code policies aligned with security benchmarks.
- Integrate security findings into ServiceNow and enterprise vulnerability management workflows.
- Partner with various teams to strengthen detection coverage and incident response.
- Conduct threat hunting and proactive analysis to identify emerging threats.
- Support post-incident reviews through root cause analysis and corrective-action recommendations.
Senior Security Engineer - Mandatory Skills:
- Strong cloud security knowledge spanning AI/ML platforms and networking.
- Hands-on Wiz CNAPP expertise, including experience with AI workloads.
- Experience designing security controls and architecture at various levels.
- Compliance-as-Code fluency and mapping Wiz findings to security frameworks.
- Ability to interpret Wiz risk graphs for risk-based exposure analysis.
- Kubernetes experience across AKS, GKE, and EKS.
- Working knowledge of Terraform, Helm, and GitOps-based pipelines.
Senior Security Engineer – Nice-to-Have Skills:
- Direct, hands-on Wiz platform experience.
- Container image/repository scanning experience.
- Deeper Terraform or IaC pipeline background.
Senior Security Engineer – Assignment Length:
This is a contract-to-hire position with a 6-month initial term and strong intent to convert to full-time.
Senior Security Engineer - Start Date:
ASAP.
Senior Security Engineer - Assignment Location:
Toronto, Ontario, Canada. Hybrid work arrangement with approximately 3 days per week onsite.