Canva

Senior Security Engineer - Incident Response (Open to remote across ANZ)

Remote Sydney, Australia
GCP AWS
Search for More Jobs Talk to a recruiter now 💪
Description

Company Description

Job Description

Join the team redefining how the world experiences design.

Hey, g'day, mabuhay, kia ora, 你好, hallo, vítejte!

Thanks for stopping by. We know job hunting can be a little time consuming and you're probably keen to find out what's on offer, so we'll get straight to the point.

Where and how you can work

Our flagship campus is in Sydney. We also have a campus in Melbourne and co-working spaces in Brisbane, Perth and Adelaide. But you have choice in where and how you work. That means if you want to do your thing in the office (if you're near one), at home or a bit of both, it's up to you.

What you’d be doing in this role

As Canva scales change continues to be part of our DNA. But we like to think that's all part of the fun. So this will give you the flavour of the type of things you'll be working on when you start, but this will likely evolve.

About the Security Group

The Security Group is responsible for protecting Canva systems and data from information security threats. Our teams work together, and with other groups, to deliver preventive and detective controls and processes that reduce security risk.

The group runs programs across Identity and Access Management, Application Security, Risk Management, and Threat Detection and Response domains.  

About the role

Canva’s goal is to create the world's most trusted platform, which makes security a top priority. The Incident Response team plays a critical role in safeguarding Canva’s systems, data, and the information our users entrust to us.


The Incident Response team comprises nearly 20 responders, spread across four sub-teams (called "Pods") in the APAC and EMEA regions. We engage in both proactive and reactive activities to prevent, detect, and respond to security threats.


Right now, we are seeking a Senior Security Engineer to lead a Pod within the team, succeeding the current Pod Lead who is transitioning to a new role internally. In addition to the technical aspects of the role, you will play a pivotal part in shaping the future of our Incident Response team, coaching (managing) a small team of Security Engineers in Australia, and contributing to a culture where we work with empathy, humility, and generosity.


As a Senior Security Engineer, you will have the opportunity to collaborate with some of the brightest minds in the industry, driving initiatives that enhance Canva’s security posture and the Incident Response team’s capabilities.

Role Responsibilities:

  • Respond to and coordinate security incidents that vary in scale, impact, and complexity in a professional and empathetic manner.
  • Conduct root cause analyses, drive post incident reviews, and identify opportunities to improve processes and prevent recurrences in collaboration with other teams.
  • Coach and mentor Incident Response team members, uplifting their skills, and enabling them to achieve their individual growth and impact goals.
  • Engage with the broader Security group and other Canva engineering teams to identify and proactively mitigate security risks and issues.
  • Participate in the on-call roster for security incident response, including triaging security events and escalating events to incidents as required.
  • Ensure that all team members are equipped with the knowledge and tools they need to succeed. This includes maintaining documentation and knowledge sharing through 1:1 sessions or lunch and learns.
  • Act as an escalation point for security incidents as needed.
  • Foster a positive and productive work environment by promoting collaboration, open communication, and continuous learning and development opportunities.
  • Collaborate with other teams in the Detection and Response subgroup on initiatives related to security automation, detection engineering, threat hunting, and cyber threat intelligence.

Required Experience: 

  • You have demonstrable experience in Incident Response (5 years +) or in one or more comparable technical roles with transferrable knowledge and skills, preferably with exposure to operating systems and cloud services outside the Microsoft ecosystem (e.g., AWS, GCP, macOS, Linux, etc.).
  • First and foremost, you have a curious detective mindset and are driven to solve complex problems with simple solutions.
  • You possess confident verbal and written communication skills for leading technical and non-technical conversations with influence, adapting your style to suit the situation and your audience.
  • Your list of top five favourite things includes logs and more logs.
  • You have some experience leading and mentoring team members. Providing mentorship is close to your heart, and you thrive when empowering others to be their best.
  • You are proactive and forward-thinking, anticipating future challenges and opportunities, with the ability to make sound judgment calls in the best interest of Canva, even in situations of ambiguity.

What's in it for you?

Achieving our crazy big goals motivates us to work hard - and we do - but you'll experience lots of moments of magic, connectivity and fun woven throughout life at Canva, too. We also offer a stack of benefits to set you up for every success in and outside of work.

Here's a taste of what's on offer:

-Equity packages - we want our success to be yours too
Inclusive parental leave policy that supports all parents & carers
-An annual Vibe & Thrive allowance to support your wellbeing, social connection, office setup & more
-Flexible leave options that empower you to be a force for good, take time to recharge and supports you personally

Check out lifeatcanva.com for more info.

Other stuff to know

We make hiring decisions based on your experience, skills and passion, as well as how you can enhance Canva and our culture. When you apply, please tell us the pronouns you use and any reasonable adjustments you may need during the interview process.

Please note that interviews are conducted virtually.

Qualifications

Additional Information

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 401 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • Salaries for the engineering jobs on our site range from $100K-$200K. On average, senior engineer positions on our EchoJobs are about $160K.
  • The EchoJobs positions have been sourced and vetted from the top companies to work for in the US as a software engineer, including LinkedIn and other reputable job sites. We also have syndicated jobs from companies that have just raised funding, as well as those that have great unique products and culture. From all of these sources, our founder, Morgan, has also resourced the company's authenticity in terms of their website, public appearance, and more.
  • Yes, our users asked us for just this, so now our search filters allow you to search for your top jobs via location, as well as by onsite, remote, or both. Approximately 30% of our jobs are remote, so you’ve got the best options for you!
  • We have not yet implemented this option, but are considering doing so in the future. For the moment, you would need to cancel your subscription, and resubscribe when you wanted to come back.
  • We add new jobs to EchoJobs every day! We scan our sources for the newest jobs, verify them, and post them to EchoJobs within minutes. We add about 2,000-3,000 new jobs for you each day!
  • From starting your job search to getting hired, the entire job search process can take us software engineers anywhere between 3-6 months. However, at EchoJobs, we’re striving to shorten this duration by finding the best, newest jobs for you, so you can do less job searching, and more applying.
  • We’d recommend checking EchoJobs daily, as we add new jobs to the site each day. Additionally, if you got a chance to read our previous email on “what makes EchoJobs different from any other job search tools,” we also recommended that you set a job alert based on your job filters, so if you get emails on those new jobs, you could be checking more than once per day.
  • If you decide to continue with us after the 1-month trial, we definitely recommend this, as we all know it usually takes 3-6 months to find a quality job as a software engineer these days. So to best support you, we just adjusted our membership options at EchoJobs to monthly, 3 months, or 12 months (this option is more for passive job seekers looking a little bit for the future if they want to come back to work or make a job switch potentially. This lets you see what’s out there in case an even better fit job becomes available.)
  • EchoJobs is truly the only job site of its kind. We want to be THE spot for you to find the best job for you, and haven’t encountered any other company doing this. Other job sites are in niches besides software engineering or focus on a small portion of engineering jobs (like a specific coding language). In the words of Morgan, our founder, “I think what makes EchoJobs different is the amount of jobs, frequency that we add new jobs (we add 2,000-3,000 new jobs daily!), and the powerful search engines to find exactly the job you want more easily and efficiently. We can provide you with the most jobs that are vetted by us, we’ll continually find more new jobs for you, and we make it easier for you to apply and get hired.

What Fellow Engineers Say