Lead Security Engineer – Cyber Platform Engineering
Team: Information Security
Location: Toronto
Commitment: Full Time
Workplace Type: hybrid
Key Responsibilities:
- Own and lead the organization’s web security platform and its protection capabilities.
- Implement and tune web security controls to reduce risk while maintaining performance.
- Maintain platform standards, baselines, governance, and documentation.
- Guide teams on secure onboarding of services (routing, encryption, headers, policies).
- Strengthen protections against common web/API threats and automated abuse.
- Support DDoS readiness through runbooks and exercises.
- Support security requirements for cloud migrations and platform changes.
- Use logging/telemetry tools to investigate issues and support threat analysis.
- Contribute to secure network architecture (segmentation, ingress/egress, connectivity).
- Provide direction on firewall and network protections and rule base reviews.
- Hands-on leadership and mentorship to more junior employees.
- Advance web/API protection and detection maturity and resilience.
- Improve cloud and container security posture through best practice hardening via CSPM.
- Enhance DDoS readiness and operational preparedness.
- Develop reusable, secure engineering patterns for cross team adoption.
- Partner with application engineering, cloud platform teams, network/security architecture, and security operations to deliver unified security outcomes.
- Participate in incident response and drive follow-up improvements.
- Collaborate with domain SMEs across network, endpoint, cloud, and email security to maintain cohesive, enterprise wide protection.
- Mentor and guide engineers to embrace secure engineering practices.
- Regularly contribute to security documentation and platform standards, collaborating with team members to maintain accurate, high quality technical artifacts and ensure consistent understanding across teams.
Knowledge/Skill Requirements:
- Proven, hands‑on experience with CDN, WAF, and API protection technologies.
- Strong command of web protection concepts and implementation, including DDoS protection and bot defense.
- Extensive experience in security engineering with strong focus on web and application security within enterprise environments.
- Demonstrated ability to operate as a hands‑on technical lead with end‑to‑end ownership of platform outcomes, prioritization, and cross‑team delivery.
- Strong understanding of network security architecture and common web/cloud attack vectors, with ability to translate threat patterns into practical controls.
- Deep experience with at least one major cloud service provider.
- Working knowledge of container orchestration and container security.
- Solid background in firewall and network security: NGFW, IDS/IPS, etc.
- Experience conducting firewall rule‑base reviews (manual and automated).
- Familiarity with cloud‑delivered network protection models, including secure web gateways and Zero Trust Network Access.
- Experience with email security and threat‑detection tooling, including behavioral analysis and phishing/malware protection.
- Strong understanding of PKI, TLS, certificate lifecycle management, and trust‑model design.
- Excellent communication skills, able to explain complex technical issues clearly to technical and non‑technical audiences.
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say
