Senior Security Engineer

Roofr
Canada
Workplace: RemoteFull timeFunction: CybersecurityExperience: 5-8 yearsEducation: bachelorsSkills: ["Ownership","Ownership-oriented","Calm under incident pressure","Risk translation","Individual contribution"]

Own and harden Roofr’s security infrastructure across cloud environments, including network segmentation, firewalls, IDS/IPS, VPNs, WAF, and EDR. Lead vulnerability management and build/tune SIEM/SOAR detection logic based on real attack techniques. Respond as incident commander—contain, eradicate, and run forensics—while threat-modeling new features and maintaining IAM hygiene across AWS production accounts. Drive security policies, compliance mapping (NIST CSF 2.0, SOC 2, CCPA/CPRA), and run drills with engineering.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Roofr
Roofr
2 days ago

Senior Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 12 hours agoStatus: Live

Job Summary

Own and harden Roofr’s security infrastructure across cloud environments, including network segmentation, firewalls, IDS/IPS, VPNs, WAF, and EDR. Lead vulnerability management and build/tune SIEM/SOAR detection logic based on real attack techniques. Respond as incident commander—contain, eradicate, and run forensics—while threat-modeling new features and maintaining IAM hygiene across AWS production accounts. Drive security policies, compliance mapping (NIST CSF 2.0, SOC 2, CCPA/CPRA), and run drills with engineering.
Location: Canada
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Design and harden security infrastructure across cloud environments, including segmentation, firewalls, IDS/IPS, VPNs, WAF, and EDR.
  • •Lead vulnerability management end to end, triaging by exploitability and driving engineering remediation SLAs.
  • •Build and tune detection content in SIEM/SOAR by mapping rules and alerting logic to real attack techniques.
  • •Serve as incident commander: contain and eradicate incidents, run forensics, and write post-incident reviews.
  • •Threat-model new features and infrastructure changes and maintain IAM hygiene and cloud security posture across production AWS accounts.

Pay and Benefits

Perks:Paid LeaveHealth InsuranceDental401kLearning BudgetHome OfficeParental LeaveRemote Work

Key Requirements

  • •Bachelor’s degree in computer science, IT, cybersecurity, or equivalent hands-on experience.
  • •5-8+ years in security engineering, incident response, or related infrastructure roles, including primary/senior responder time on real incidents.
  • •Strong cloud security experience in AWS, including IAM policy design, VPC architecture, and KMS/secrets management with monitoring tools like CloudTrail/GuardDuty.
  • •Real incident response skills: triage, containment, forensics, and root cause analysis.
  • •Hands-on detection engineering with SIEM/SOAR and the ability to write detection logic (Python/Bash) and adapt when tooling doesn’t fit.
Experience:5-8 yearsIncident responseCloud securityAWSSecurity engineering
Education:Bachelor's
Skills:OwnershipOwnership-orientedCalm under incident pressureRisk translationIndividual contribution
Certifications:CISSPOSCPGCIHCEH
Tech Stack:AWSVPC architectureIAMKMSSecrets managementCloudTrailGuardDutySIEMSOARPythonBashNetwork segmentationFirewallsIDS/IPSVPNsWAFEDRTLSDNSRouting

Company Brief

Roofr
Provides roofing software and data solutions that streamline roof inspections, estimates, and lead generation for contractors and insurers using aerial imagery, measurement tools, and workflow automation.
Industry: Construction Tech
Company Size: Small (11 to 50 employees)
Growth: Early Stage Startup
Headquarters: Boston, United States
Website