EQ Bank

Lead Security Engineer, Cyber Platform Engineering

Toronto
API DDoS WAF CDN NGFW IDS/IPS PKI TLS CSPM
Description

Lead Security Engineer – Cyber Platform Engineering

Team: Information Security

Location: Toronto

Commitment: Full Time

Workplace Type: hybrid

As the Lead Security Engineer for Cyber Platform Engineering, you will own the organization’s web and application security capabilities—designing and optimizing controls that protect critical customer‑facing and internal services from modern threats such as application‑layer attacks, API abuse, automated bots, and service disruption. Your work strengthens the resilience of the company’s digital platforms and supports secure growth.
 
You will collaborate with security specialists, application teams, cloud engineering, and security operations to embed scalable, secure patterns across core platforms. This role requires strong technical ownership, hands‑on engineering skill, and the ability to influence secure design across a complex enterprise environment.

Key Responsibilities:

  • Own and lead the organization’s web security platform and its protection capabilities.
  • Implement and tune web security controls to reduce risk while maintaining performance.
  • Maintain platform standards, baselines, governance, and documentation.
  • Guide teams on secure onboarding of services (routing, encryption, headers, policies).
  • Strengthen protections against common web/API threats and automated abuse.
  • Support DDoS readiness through runbooks and exercises.
  • Support security requirements for cloud migrations and platform changes.
  • Use logging/telemetry tools to investigate issues and support threat analysis.
  • Contribute to secure network architecture (segmentation, ingress/egress, connectivity).
  • Provide direction on firewall and network protections and rule base reviews.
  • Hands-on leadership and mentorship to more junior employees.
  • Advance web/API protection and detection maturity and resilience.
  • Improve cloud and container security posture through best practice hardening via CSPM.
  • Enhance DDoS readiness and operational preparedness.
  • Develop reusable, secure engineering patterns for cross team adoption.
  •  
    Team and Collaboration
  • Partner with application engineering, cloud platform teams, network/security architecture, and security operations to deliver unified security outcomes. 
  • Participate in incident response and drive follow-up improvements.
  • Collaborate with domain SMEs across network, endpoint, cloud, and email security to maintain cohesive, enterprise wide protection. 
  • Mentor and guide engineers to embrace secure engineering practices. 
  • Regularly contribute to security documentation and platform standards, collaborating with team members to maintain accurate, high quality technical artifacts and ensure consistent understanding across teams.

Knowledge/Skill Requirements:

  • Proven, hands‑on experience with CDN, WAF, and API protection technologies.
  • Strong command of web protection concepts and implementation, including DDoS protection and bot defense.
  • Extensive experience in security engineering with strong focus on web and application security within enterprise environments.
  • Demonstrated ability to operate as a hands‑on technical lead with end‑to‑end ownership of platform outcomes, prioritization, and cross‑team delivery.
  • Strong understanding of network security architecture and common web/cloud attack vectors, with ability to translate threat patterns into practical controls.
  • Deep experience with at least one major cloud service provider.
  • Working knowledge of container orchestration and container security.
  • Solid background in firewall and network security: NGFW, IDS/IPS, etc.
  • Experience conducting firewall rule‑base reviews (manual and automated).
  • Familiarity with cloud‑delivered network protection models, including secure web gateways and Zero Trust Network Access.
  • Experience with email security and threat‑detection tooling, including behavioral analysis and phishing/malware protection.
  • Strong understanding of PKI, TLS, certificate lifecycle management, and trust‑model design.
  • Excellent communication skills, able to explain complex technical issues clearly to technical and non‑technical audiences.
EQ Bank
EQ Bank

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say