CrawlJobs Logo

Senior Logging & Detection Engineer

Clio

Location Icon

Location:
Canada , Vancouver

Category Icon
Category:
IT - Software Development

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

146200.00 - 197800.00 CAD / Year

Job Description:

We are currently seeking a Senior Logging & Detection Engineer to lead the technical direction within our rapidly growing Security team and our new Logging Engineering team. This role is for a seasoned professional passionate about building sophisticated, scalable detection architectures, mastering efficient queries at petabyte scale, and driving strategic security analytics through log data. You will own the detection and analysis layer of our logging platform, serving as the domain expert who makes a tangible, high-impact difference to our security monitoring capabilities.

Job Responsibility:

  • Lead the design and implementation of sophisticated, production-ready detection rules and queries across the ELK stack, security data lakes, and multi-cloud logging platforms
  • Architect and optimize complex search queries, aggregations, and analytics dashboards for high-velocity security monitoring, focusing on performance and cost efficiency
  • Design and build automated detection and response workflows (SOAR), ensuring seamless and reliable integration with critical incident response systems
  • Serve as the primary liaison with the threat intelligence team, developing and owning the framework to translate intelligence into scalable, actionable detection capabilities (e.g., MITRE ATT&CK coverage)
  • Establish and maintain a robust detection rule library, query templates, and lead the creation of security analytics playbooks for the wider team
  • Drive performance optimization and resource utilization strategies across petabyte-scale log datasets, including index design and data tiering
  • Develop and standardize custom visualizations, dashboards, and executive reporting capabilities for security stakeholders
  • Lead complex threat hunting operations, mentor junior team members on investigative techniques, and proactively refine detection logic to achieve near-zero false positive rates
  • Collaborate closely with the platform team to define the logging architecture roadmap based on future detection requirements and security observability goals
  • Proactively research emerging threats and attack patterns, translating novel techniques into strategic, forward-looking detection logic and advising security leadership

Requirements:

  • Senior-level expertise building and scaling enterprise-grade detection capabilities and security monitoring systems
  • Expert-level query language proficiency in at least two of the following: Elasticsearch/Lucene, SQL, KQL (Kusto), or SPL (Splunk), demonstrating advanced optimization techniques
  • Extensive Detection Engineering experience owning the full lifecycle of rules, alerts, and automated response workflows within a SIEM/SOAR environment
  • Advanced log analysis skills across diverse, large-scale data sources, including multi-cloud logs (AWS, Azure, GCP), network flows, and advanced security tool outputs
  • Deep dashboard and visualization expertise with tools like Kibana, Grafana, or Tableau, specifically for security metrics and executive reporting
  • Proven expertise in leading threat hunting efforts using log data to proactively identify and track sophisticated threats and anomalous behavior across the environment
  • Senior-level scripting and automation abilities (Python/Go/PowerShell), used to build custom tools, manage APIs, and drive detection automation at scale
  • Architectural experience integrating and optimizing SIEM platforms, SOAR tools, and security orchestration systems
  • Expert performance optimization skills covering query tuning, index design, data partitioning, and overall resource-efficient analytics on big data
  • Significant incident response experience providing expert-level technical analysis and forensic support during major security incidents

Nice to have:

  • Strategic experience with advanced analytics, machine learning, or statistical modeling for security, such as User and Entity Behavior Analytics (UEBA) or predictive threat modeling
  • Multi-platform security architecture experience across major cloud environments (AWS CloudTrail, Azure Activity Logs, GCP Audit Logs)
  • Deep, practical experience building custom detection content mapped directly to the MITRE ATT&CK framework, including coverage gap analysis
  • Industry-recognized security certifications such as GCTI, GCFA, GNFA, or CISSP
  • Track record of open source contributions to detection rule repositories, security analytics tools, or SIEM content
  • Data science or advanced mathematics background with direct experience in anomaly detection, clustering, or predictive analytics for security
  • Expert API integration skills for automated, real-time threat intelligence ingestion and centralized detection rule management
  • Cloud security analytics mastery utilizing cloud-native security services (e.g., Security Hub, Defender for Cloud) and serverless detection architectures
  • Compliance and reporting leadership experience building analytics and dashboards for regulatory requirements (e.g., SOC 2, ISO 27001) and defining key security metrics
What we offer:
  • Top-tier health benefits, dental, and vision insurance
  • Hybrid work environment
  • Flexible time off policy, with an encouraged 20 days off per year
  • $2000 annual counseling benefit
  • RRSP matching and RESP contribution
  • Clioversary recognition program with special acknowledgement at 3, 5, 7, and 10 years

Additional Information:

Job Posted:
December 26, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Senior Logging & Detection Engineer

Senior Production Engineer - Application Support Lead - Futures Engineering

Senior Application Support Lead to oversee the support operations for our enterp...
Location
Location
United States , Chicago
Salary
Salary:
155000.00 - 185000.00 USD / Year
clearstreet.io Logo
Clear Street
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5–8 years of experience in application support
  • At least 2 years in a leadership or senior technical role, ideally in financial services or fintech
  • Knowledge of Java and ReactJS, with experience debugging and analyzing application logs
  • Hands-on experience with Kubernetes and Docker for deployment troubleshooting
  • Familiarity with monitoring tools (e.g., Datadog) and services such as Pager Duty
  • Experience with ticketing systems (e.g., Jira)
  • Deep understanding of cleared derivatives, futures, or back-office operations in financial markets
  • Proven ability to lead and motivate a support team
  • Strong decision-making and problem-solving skills in high-pressure environments
  • Excellent communication and interpersonal skills
Job Responsibility
Job Responsibility
  • Provide advanced troubleshooting for complex application issues, including Java/ReactJS code-level analysis, database queries, and Kubernetes/Docker environment diagnostics
  • Manage a team of application support analysts, providing mentorship, training, and performance evaluations
  • Oversee the triage, prioritization, and resolution of support tickets, ensuring SLAs are met
  • Lead complex configuration tasks, such as system integrations, and custom module deployments
  • Act as the primary point of escalation for major incidents, coordinating with infrastructure, development, and client teams
  • Develop and implement support processes, including automated monitoring, knowledge base enhancements, and proactive issue detection
  • Liaise with clients, product managers, and senior leadership to provide updates on support metrics, system performance, and improvement initiatives
  • Utilize advanced monitoring tools to proactively identify performance bottlenecks and coordinate with DevOps to optimize Kubernetes/Docker deployments
  • Create and maintain comprehensive technical documentation and deliver training to support staff and end-users
  • Contribute to the roadmap for support operations, aligning with business goals and client needs
What we offer
What we offer
  • Competitive compensation packages
  • Company equity
  • 401k matching
  • Gender neutral parental leave
  • Full medical, dental and vision insurance
  • Lunch stipends
  • Fully stocked kitchens
  • Happy hours
  • Fulltime
Read More
Arrow Right

Senior Data Engineer

Figure is an AI Robotics company developing a general-purpose humanoid. Our huma...
Location
Location
United States , San Jose
Salary
Salary:
140000.00 - 350000.00 USD / Year
figure.ai Logo
Figure
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's or Master’s degree in Computer Science, Data Engineering, or a related field
  • 3+ years of experience in data engineering, preferably with time-series or log data processing
  • Proficiency in Python with experience in Pandas, Polars, or PySpark for large-scale data processing
  • Strong understanding of database design, indexing, and query optimization (SQL and NoSQL)
  • Experience handling complex data formats such as Parquet, MCAP, or protobuf
  • Experience building custom web based data visualization tools (JavaScript, React…)
  • Familiarity with data visualization tools like Grafana for real-time analysis and monitoring
  • Experience with distributed computing frameworks and cloud-based data storage solutions
  • Strong debugging skills and ability to work with lab teams to interpret robotic system logs
Job Responsibility
Job Responsibility
  • Develop and maintain pipelines and tools to transform robot logs to make it easier to access, visualize, and automatically detect events of interest
  • Optimize data processing to reduce the time needed between data offload and the availability of the data to our engineering teams
  • Design and optimize data storage solutions for handling complex, high-volume time-series and structured data
  • Build and maintain database schemas and queries to support analytics and visualization of extracted patterns
  • Support mechanical, electrical, software, integration and test engineers with their needs to extract and visualize data
  • Develop dashboards and custom data visualizations tools to enable engineers to quickly extract information from the data and track robot performance
  • Integrate your solutions with existing data pipelines and our robot testing framework
  • Fulltime
Read More
Arrow Right

Senior Software Engineer

Founded in 2016, LogRocket's goal is to make every experience on the web as perf...
Location
Location
United States , Boston or NYC
Salary
Salary:
135000.00 - 200000.00 USD / Year
logrocket.com Logo
LogRocket
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 4+ years of experience in a full stack or backend development role, preferably with a SaaS company
  • Familiarity with the state of the art in cloud technologies, including architectural principles, specific tools of the trade, and their strengths and weaknesses
  • Experience in development environments with demanding scalability or availability requirements
  • Familiarity with modern Javascript-based applications and frameworks
  • At least one previous full-time software engineering role
Job Responsibility
Job Responsibility
  • Design a system to automatically detect the most common user paths across millions of events
  • Implement a search backend that allows users to search in real time across billions of log entries
  • Build a machine learning pipeline that automatically detects bugs in our users' apps
  • Automate database scaling to improve operating cost while maintaining the ability to respond to traffic spikes
  • Build a system that automatically recommends integrations for customers based on their toolset
What we offer
What we offer
  • Catered lunch and an impressive array of your favorite snacks (healthy AND non-healthy!)
  • Unlimited vacation policy
  • Health, Dental, Vision benefits, 401k, commuter benefits
  • Generous stock options
  • Regular team outings and activities (from boat rides to paintball, we’ll try anything!)
  • Fulltime
Read More
Arrow Right

Senior Security Engineer

PagerDuty is seeking a Senior Security Engineer to join our diverse, customer-fo...
Location
Location
Canada , Toronto
Salary
Salary:
137000.00 - 207000.00 CAD / Year
https://www.pagerduty.com Logo
PagerDuty
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proficiency with Application & Product Security typically associated with 4 - 5 years of experience in a Security Engineering role working with a cloud-native, microservices environment, preferably AWS
  • Familiarity with cloud-native product technologies including: Vulnerability detection via multiple approaches including SAST, DAST, SCA, and runtime (e.g., Qualys/Nessus, Wiz, Snyk, GHAS, Semgrep, etc.)
  • CI/CD technologies and integrations (e.g., CircleCI, Buildkite, Helm, Terraform, Chef)
  • Product security event logging standards and analysis tools (e.g., SIEM such as: SumoLogic, LogRythm, or Splunk, etc.)
  • Security Incident Response & Risk Management processes and tools
  • Proficiency in at least one programming language and framework (e.g. Python, Bash, Phoenix/Elixir, Java, Ruby on Rails), typically associated with 3 - 4 years of experience with the language/framework
  • Have exceptional written, oral communication, and interpersonal skills
  • Organizational skills with the ability to successfully manage multiple priorities and deadlines
Job Responsibility
Job Responsibility
  • Embrace the role of hands-on technical lead in defining product security standards and guiding platform protections
  • Establish criteria and conduct comprehensive security reviews throughout all stages of product development to identify and address security risks
  • Perform regular threat assessments, coordinate with third-party testers for penetration testing, and conduct internal penetration testing to identify and mitigate security risks
  • Mentor and guide team members to ensure product and business objectives are prioritized in project implementations, fostering a strong documentation culture with project charters and design documents
  • Work with loosely defined requirements where you exercise your analytical skills to clarify questions, share your approach, and collaborate with the team to design and implement effective security frameworks. Maintain a strong appetite for challenging problems with a high degree of ownership
  • Participate in the team’s On-Call rotation, triaging and addressing security issues as they arise, and implement measures to prevent future occurrences
  • Enable service team security implementations by developing security-as-code constructs, including infrastructure-as-code (IaC) modules, libraries and frontend components, while creating and maintaining developer-focused documentation to promote easy adoption
  • Establish and uphold baseline standards and hardened configurations for platform components
  • Continuously enhance security frameworks by focusing on product security standards and software supply chain protections, tailored for application security in cloud-native, microservices environments
What we offer
What we offer
  • Competitive salary
  • Comprehensive benefits package from day one
  • Flexible work arrangements
  • Company equity
  • ESPP (Employee Stock Purchase Program)
  • Retirement or pension plan
  • Generous paid vacation time
  • Paid holidays and sick leave
  • Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
  • Paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent (some countries have longer leave standards and we comply with local laws)
  • Fulltime
Read More
Arrow Right

Senior Security Engineer

The Senior Security Engineer will provide hands-on technical leadership within t...
Location
Location
United Kingdom , Leeds; Thame
Salary
Salary:
65000.00 - 75000.00 GBP / Year
pexa.co.uk Logo
PEXA UK
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proactive, can-do attitude to get things done quickly and efficiently
  • Strong collaboration and communication skills
  • Willingness to contribute ideas to the security programme
  • Demonstratable first-hand experience in achieving organisational adherence to security best practices
  • Experience in the practical protection of a remote working laptop estate and SaaS cloud solutions
  • Experience in identity and access management solutions
  • Experience in device business automation and updates
  • Experience in the security aspects of cloud web application hosting and defence measures like WAF
Job Responsibility
Job Responsibility
  • Maintenance and Operational Security: Ensure all security solutions remain operationally effective
  • Ensure technical teams timely patch applications, systems, software, and hardware
  • Maintain and audit secure configurations for devices, applications, and cloud environments
  • Access Control and Identity Management: Conduct regular user and privileged account reviews
  • Manage and monitor Privileged Identity Management (PIM) profiles and elevated access accounts
  • Coordinate with IT and HR for onboarding/offboarding
  • Tool, Infrastructure, and Encryption Management: Maintain and optimise security infrastructure and tools
  • Oversee encryption key and certificate management
  • Work with vendors and internal teams to ensure tools remain current
  • VPN, Network & Firewall Security: Design, configure, and maintain secure VPN and Zero-Trust network solutions
What we offer
What we offer
  • Your growth: We encourage you to hit your personal and professional learning and development goals with our tailored programs and tools
  • Your wellness: We care about your holistic wellbeing
  • Your work/life blend: We want to help you create your ideal work/life blend
  • Fulltime
Read More
Arrow Right

IAM Senior Engineer - Active Directory/Entra ID

HPE Global IT is seeking a highly skilled Senior Active Directory (AD), Entra ID...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
  • 10+ years of IT or cybersecurity experience
  • 7+ years focused on AD, Entra ID, and Azure identity engineering in enterprise-scale environments
  • Deep hands-on experience managing multi-forest AD environments (schema, replication, delegation, GPOs, DNS, DHCP)
  • Strong expertise with Entra ID and hybrid identity integration (Entra Connect / Cloud Sync, federation, SSO)
  • Hands-on experience with Azure governance, RBAC, PIM, and access policy enforcement
  • Experience implementing conditional access, passwordless, and phishing-resistant MFA in Entra and Azure
  • Proficiency in PowerShell scripting, Graph API, and Azure automation for identity management and reporting
  • Solid understanding of authentication protocols (Kerberos, NTLM, LDAP, SAML, OIDC, OAuth2)
  • Familiarity with Zero Trust, tiered admin models, and directory hardening practices
Job Responsibility
Job Responsibility
  • Engineer, deploy, and optimize Active Directory, Entra ID, and Azure identity services across enterprise-scale hybrid environments
  • Design and manage multi-forest AD architectures, including schema extensions, replication, delegation, and hardening
  • Implement and maintain cross-domain and cross-tenant synchronization between AD and Entra ID using Entra Connect or Cloud Sync
  • Engineer secure authentication and federation flows leveraging Kerberos, NTLM, SAML, OIDC, and OAuth2
  • Implement and enhance conditional access, MFA, passwordless, and FIDO2 authentication methods in Entra and Azure environments
  • Support Zero Trust Directory Security through tiered administration, least privilege, and delegated access controls
  • Partner with cloud and infrastructure teams to ensure secure integration of Azure resources with enterprise identity services
  • Maintain and secure domain controllers, DNS, DHCP, and Group Policy Objects (GPOs) across global environments
  • Manage Azure AD tenants, subscriptions, and resource access controls (RBAC, PIM, Entra roles)
  • Integrate on-prem AD with Azure workloads, Microsoft 365, Intune, and other SaaS applications
What we offer
What we offer
  • Health & Wellbeing benefits
  • Personal & Professional Development programs
  • Unconditional Inclusion environment
  • Comprehensive suite of benefits supporting physical, financial and emotional wellbeing
  • Fulltime
Read More
Arrow Right

Senior Security Engineer

CVS Health offers the opportunity to design, build, and operate a world-class Pu...
Location
Location
United States , Work at Home
Salary
Salary:
111240.00 - 222480.00 USD / Year
https://www.cvshealth.com/ Logo
CVS Health
Expiration Date
December 31, 2025
Flip Icon
Requirements
Requirements
  • 5+ years of experience in the offensive security testing space
  • 2+ years in security automation, platform engineering, or DevSecOps
  • 2+ years of strong automation skills using GitHub runners and JIRA
  • 1+ years of experience designing tests for detection robustness and mitigating brittleness
Job Responsibility
Job Responsibility
  • Help maintain and evolve a secure, scalable adversary-emulation platform for campaign scheduling, agent orchestration, payload execution, and results cataloging
  • Review commercial alternatives for Purple Team exercises using custom runners or commercial tools (e.g., Cymulate, Picus)
  • Provision static or ephemeral test environments via Terraform/Kubernetes across cloud and on-prem infrastructure
  • Develop continuous adversarial threat-simulation tests for defensive control validation and resiliency assessment
  • Generate high-fidelity telemetry for EDR, SIEM, and SOAR to measure detection coverage, latency, and control effectiveness
  • Research detection brittleness, design mutation/variant tests, and enhance test cases to strengthen detection logic
  • Manage work intake pipeline and ensure timely closure of ticketed requests within SLA
  • Produce ATT&CK-mapped artifacts, dashboards, and coverage metrics for Detection Engineering and leadership
  • Enforce platform security through RBAC, secrets management, audit logging, and execution safety controls
  • Collaborate with CTI, Threat Hunt, and SOC teams to evolve test cases based on real-world threats and gaps
What we offer
What we offer
  • Affordable medical plan options
  • 401(k) plan with matching company contributions
  • Employee stock purchase plan
  • No-cost wellness screenings
  • Tobacco cessation and weight management programs
  • Confidential counseling and financial coaching
  • Paid time off
  • Flexible work schedules
  • Family leave
  • Dependent care resources
  • Fulltime
!
Read More
Arrow Right

Senior Integration Engineer

We're seeking a Senior Integration Engineer to lead the modernization of our e-c...
Location
Location
Salary
Salary:
Not provided
techholding.co Logo
Tech Holding
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years of hands-on experience building production integration flows in Celigo iPaaS
  • Deep knowledge of Celigo's connectors, flow builder, mapping tools, and error handling capabilities
  • 3+ years of NetSuite development experience with strong SuiteScript 2.0 skills
  • Hands-on experience building RESTlets, scheduled scripts, user event scripts, and workflows
  • Deep understanding of NetSuite data model (customers, items, sales orders, inventory, locations)
  • Knowledge of NetSuite's role-based permissions, saved searches, and customization framework
  • 2+ years working with Shopify APIs (REST, GraphQL, Admin API, Storefront API)
  • Experience configuring and consuming Shopify webhooks for real-time events
  • Understanding of Shopify data model (products, variants, inventory, orders, customers, fulfillments)
  • Knowledge of Shopify Plus features and API differences from standard Shopify
Job Responsibility
Job Responsibility
  • Design and build event-driven integration flows in Celigo for real-time inventory synchronization between NetSuite and Shopify
  • Develop bidirectional order sync integrations to push Shopify orders into NetSuite for fulfillment and financial reconciliation
  • Implement complex data transformation and mapping logic to ensure data integrity across systems
  • Build error handling, retry logic, and idempotency controls for mission-critical data flows
  • Configure monitoring, logging, and alerting systems to enable proactive issue detection
  • Write SuiteScript 2.0 code to implement validation rules, custom workflows, and import processing logic
  • Develop RESTlets and custom endpoints to support integration requirements
  • Design and implement data integrity controls within NetSuite's import workflows
  • Configure Shopify webhooks for inventory updates, order creation, and customer data changes
  • Integrate with Shopify REST and GraphQL APIs for product, inventory, and order management
What we offer
What we offer
  • Remote and flexible work environment
  • Exposure to enterprise clients and transformative cloud projects
  • Opportunity to directly impact Tech Holding's growth and client success
  • Competitive compensation package
Read More
Arrow Right
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.