
Real job — pulled straight from Numeris’s careers page · Verified October 6, 2026 · No reposts.
Job description
Numeris is hiring a Information Security Engineer (Cloud) — a contract, based in Toronto, ON role. Apply directly on Numeris's careers page below.
Information Security Engineer (Cloud) - Contract
Team: Information Technology
Location: Toronto, Ontario
Commitment: Full Time
Workplace Type: hybrid
What you will do
-
Cloud Security Posture & Hardening (AWS, Azure & M365):
-
-
Monitor and operate Cloud Security Posture Management (CSPM) tooling to identify high-priority misconfigurations, network exposures, and toxic risk combinations across AWS and Azure.
-
Continuously monitor and improve Microsoft Secure Score, driving actionable configuration enhancements across Entra ID, Defender, and Purview.
-
Partner directly with internal DevOps, Infrastructure, and Systems teams to translate posture findings into clear remediation tasks, track remediation timelines, and verify fixes.
-
Implement and maintain cloud hardening baselines, data boundaries, and security guardrails—including over-permissioning reviews and sensitivity controls supporting Microsoft 365 Copilot and multi-cloud environments.
-
Manage security intake by evaluating, triaging, and responding to day-to-day security requests, access exceptions, and technical risk inquiries from business and technical teams.
-
Perform technical cyber risk assessments for new vendors, cloud architectures, and third-party SaaS integrations.
-
Review proposed infrastructure and IT change requests (CAB) to evaluate security impacts, network perimeter exposure, and identity/access risks.
-
Document risks, track exceptions, and collaborate with system owners to establish practical compensating controls and standard operating procedures (SOPs).
-
Coordinate vulnerability management workflows: prioritize vulnerabilities using risk and exploitability context, assign remediation tasks to asset owners, and validate patches.
-
Provide operational administration for core security tooling (Defender suite, Entra ID, Purview, KnowBe4).
-
Author and maintain operational runbooks, security guidelines, and triage procedures to streamline day-to-day security workflows.
-
Support security operations with alert triage, investigation assistance, and operational incident follow-ups as needed.
Cyber Risk, Change Assessment & Request Handling:Vulnerability Management & Operations Support: -
What you have
-
-
3+ years of hands-on experience in cybersecurity, cloud security analysis, vulnerability management, or security operations (SOC/SecOps).
-
Direct operational experience working within Microsoft 365 security portals (Entra ID, Microsoft Defender, Purview).
-
Practical familiarity with AWS and/or Azure core security principles (IAM, security groups, resource hardening).
-
Proven experience managing security request intake, evaluating risk exceptions, and authoring standard operating procedures (SOPs), runbooks, and process documentation to improve operational consistency.
-
Demonstrated ability to collaborate constructively with internal technical teams (IT, DevOps, Engineering) to facilitate and track vulnerability/misconfiguration fixes.
-
Solid working understanding of Cloud Security Posture Management (CSPM) concepts and SaaS security hygiene.
-
Familiarity with identity security controls (MFA, Conditional Access, least-privilege RBAC).
-
Strong understanding of technical risk assessments, IT change management processes, and request ticketing workflows.
-
Baseline understanding of data protection and permission governance for modern AI productivity tools.
-
Collaborative Influence: Ability to build positive relationships with DevOps, IT, and software engineering teams, driving remediation through partnership rather than acting as a blocker.
-
Pragmatic Risk Prioritization: Strong analytical judgment to filter through alert noise, distinguish critical business risks from low-impact findings, and avoid "alert fatigue."
-
Clear & Empathetic Communication: Skill in translating technical cyber risks into clear, business-friendly language for non-technical stakeholders and system owners.
-
Curiosity & Adaptability: A proactive mindset for learning emerging platforms, evaluating new cloud features, and staying updated on evolving AI and SaaS security practices.
-
Organizational Discipline: Ability to juggle multiple intake requests, triage queues, and remediation follow-ups systematically without letting tasks slip through the cracks.
-
Microsoft SC-200, SC-300, or AZ-500
-
CompTIA Security+ or CySA+
-
AWS Certified Cloud Practitioner or Solutions Architect Associate
Technical Knowledge:Soft Skills & Core Competencies:Preferred Certifications (Asset): -
What's in it for you?
- Be part of an evolutionary journey in the audience measurement and data space; work on exciting projects, add value & make a positive impact to our Company.
- Competitive salary and benefits package (Health, Dental, Vision and Personal Spending Account - employer paid premiums).
- Flexible Work location (on-site offices in Toronto and Montreal, remote – work from home, hybrid as required per role).
- Continuous learning and development via Percipio, our Learning Management System.
- Be part of additional programs such as MentorMe, which helps our employee’s network, and grow within the organization.
- Leadership Training offerings for new and emerging leaders.
- Culture of great teams, coworkers and supportive leadership.
- Perkopolis: Participation in a program that provides exclusive discounts on products and services to employees. Perks include shopping discounts, movie tickets, services, event/show tickets and much more!
Stronger Together:
Innovation with Intent:
People First:
Excellence in Motion:
Numeris is an equal opportunity employer
Get Security Engineer jobs like this→
New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.
Email me new jobsSimilar jobs




Frequently asked questions
What skills are required for Information Security Engineer (Cloud) at Numeris?
The required skills for Information Security Engineer (Cloud) at Numeris include: AWS, Azure, Microsoft 365, IAM, CompTIA Security+.
What is the seniority level for Information Security Engineer (Cloud) at Numeris?
Information Security Engineer (Cloud) at Numeris is a Mid Level level position.
How do I apply for Information Security Engineer (Cloud) at Numeris?
You can view the full description and apply for Information Security Engineer (Cloud) at Numeris on EchoJobs: https://echojobs.io/job/numeris-information-security-engineer-cloud-contract-dxvm7.