Senior Security Operations Engineer

Cohere Cohere · AI Frontier · Toronto, ON · Product

Senior Security Operations Engineer responsible for hardening cloud-native environments, managing IAM/RBAC, deploying security services, responding to incidents, and supporting compliance initiatives. Focuses on secure by default designs and automation.

What you'd actually do

  1. Serve as trusted advisor to team’s leadership and partner teams by clearly articulating business risks associated with security issues
  2. Harden our cloud-native environments (AWS, OCI, GCP) by introducing secure by default designs and features into network, tooling, and processes
  3. Own and drive resolutions for enabling engineers to design, build, and use infrastructure securely at scale by deploying secure architectures using infrastructure-as-code and reusable code libraries
  4. Manage IAM / RBAC for cloud infrastructure, and partner with IT on streamling authentication/authorization to ensure unified access control across the board
  5. Deploy and operationalize some of the security services and tools (eg: SIEM, SOAR, domain monitoring, endpoint tooling, cloud security tooling)

Skills

Required

  • 5+ years previous experience in SecOps, DevSecOps, Cloud Security, Threat Detection & Response or software development with a strong focus on security tool onboarding and optimization
  • Hands-on security engineer interested in automating controls
  • Experience in managing cloud platforms (GCP, AWS, Azure, OCI) and Kubernetes environments
  • Familiarity with CI/CD systems and SecOps workflows (Git, Terraform) in cloud environments (GCP, AWS, Azure, OCI)
  • Experience with one or more of : infrastructure automation, network segmentation, system hardening, container and cloud security concepts, and security observability
  • Experience with multiple languages such as Golang and/or Python
  • Comfortable with ambiguity and able to make informed decisions with little data
  • Flexible and constructive approach when solving problems
  • Able to make trade-offs between build vs. buy decisions
  • Understand secure engineering best practices, can articulate problem statements and propose solutions to both technically savvy and non-technical audiences

What the JD emphasized

  • security tool onboarding and optimization
  • automating controls
  • cloud platforms (GCP, AWS, Azure, OCI)
  • Kubernetes environments
  • CI/CD systems
  • SecOps workflows (Git, Terraform)
  • infrastructure automation
  • network segmentation
  • system hardening
  • container and cloud security concepts
  • security observability
  • Golang and/or Python