Senior Security Engineer - Detection & Response

EvenUp
Toronto
Workplace: HybridFull timeCAD 150,000 - 245,000 annuallyFunction: CybersecurityExperience: 5+ yearsSkills: ["Builder mentality","Detection as engineering","Incident investigation","Partnering"]

Build EvenUp’s detection and response program from the ground up, leading SIEM evaluation and implementation, telemetry log ingestion/routing, and the first generation of detections. Create business-logic detections using audit events from EvenUp’s products, define the telemetry contract with Engineering/DevOps, and own incident response with playbooks, tabletop exercises, and post-incident reviews. Partner on detecting sensitive data exposure and manage 24/7 coverage with managed detection partners.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
EvenUp
EvenUp
1 day ago

Senior Security Engineer - Detection & Response

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 7 hours agoStatus: Live

Job Summary

Build EvenUp’s detection and response program from the ground up, leading SIEM evaluation and implementation, telemetry log ingestion/routing, and the first generation of detections. Create business-logic detections using audit events from EvenUp’s products, define the telemetry contract with Engineering/DevOps, and own incident response with playbooks, tabletop exercises, and post-incident reviews. Partner on detecting sensitive data exposure and manage 24/7 coverage with managed detection partners.
Location: Toronto
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Lead SIEM evaluation and implementation, design log ingestion/routing pipelines, and manage cost/retention trade-offs across hot search and long-term archive.
  • •Develop and tune high-signal detection content across cloud, identity, endpoint, SaaS, and application telemetry, emphasizing business-logic detections using audit events.
  • •Partner with Engineering and DevOps to define the telemetry contract by specifying what applications and infrastructure must log for key risks to be detectable.
  • •Build and maintain incident response playbooks/runbooks, coordinate response during security events, run tabletop exercises, and drive post-incident reviews.
  • •Partner to detect sensitive data exposure (including PHI) and define requirements/escalation logic for 24/7 coverage with managed detection partners.

Pay and Benefits

Salary: CAD 150,000 - 245,000 annually
Equity and Bonus:Equity
Perks:Health InsuranceDentalVisionLife InsurancePaid LeaveDisability InsuranceHome Office401kRrspParental Leave

Key Requirements

  • •5+ years in security operations, detection engineering, or incident response, including building detection and response capability at a startup or high-growth tech company.
  • •Hands-on experience implementing or significantly maturing a SIEM, including custom log sources and detection content.
  • •Strong detection engineering skills writing detections in Python, SQL, or a rules DSL, managed in version control with measurable quality.
  • •Real incident response experience: led investigations, written playbooks, and run retros.
  • •Experience with cloud-native telemetry (AWS/GCP/Azure control plane, identity providers, endpoint, SaaS audit logs).
Experience:5+ yearsSaaSSecurity operationsDetection engineeringIncident response
Skills:Builder mentalityDetection as engineeringIncident investigationPartnering
Certifications:GIACGCIAGCIHCISSP
Tech Stack:SIEMPythonSQLAWSGCPAzureIdentity providersEndpointSaaSAudit logsAWS/GCP/AzureMDRMSSP

Company Brief

EvenUp
Develops an AI-powered Claims Intelligence Platform for personal injury law firms that automates document generation, reviews medical records, and streamlines workflows to help firms settle cases faster and secure fairer client outcomes.
Industry: LegalTech
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series E+
Headquarters: San Francisco, United States
Founded: 2019
Glassdoor
Glassdoor: 3.1
WebsiteLinkedInGlassdoor