Verified current Job

Security Engineer (Threat Response), Sophos Security Team (IDR)

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Security Engineer (Threat Response), Sophos Securi

Job Remote Full source details
Jobgether Source published Oct 2, 2026 Verified 6 hours ago
✓ 100% verification score · Source: jobgether (lever) · Always confirm final requirements on the original source.
Complete source information imported The available role or programme description, requirements, benefits and source facts were imported from the public official endpoint and formatted for reading.
EmploymentFull-time
Work modeRemote / location-flexible

Overview

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Security Engineer (Threat Response), Sophos Securi

Full job description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Security Engineer (Threat Response), Sophos Security Team (IDR) based in Canada. This is a senior security engineering role combining hands-on incident response with detection engineering, automation, and threat research. You will investigate complex cyber threats across endpoints, identity, cloud, networks, and security products while helping strengthen internal detection and response capabilities. The role goes beyond traditional incident response, with a strong focus on building scalable automations, reusable workflows, and agentic security tooling. You will use modern AI-assisted development tools while applying rigorous safety, observability, and validation practices. Collaboration spans security, engineering, product, and business teams in a globally coordinated environment. The position is remote-first and offers the opportunity to shape how advanced security operations evolve through engineering and responsible AI adoption.

You will combine incident response expertise with practical security engineering to investigate threats, improve detection capabilities, automate repetitive work, and build reliable, observable workflows that help security teams respond more effectively. Lead complex investigations throughout the incident lifecycle, from triage and evidence collection through containment, recovery, and lessons learned. Act as a trusted point of contact for security issues, coordinating response across incident detection and response, engineering, product, and business teams. Conduct DFIR and endpoint forensics, including log, network, and packet analysis, malware analysis, and firewall investigations where applicable. Develop and improve detections, playbooks, orchestrations, and prevention mechanisms using evidence from incidents and threat-hunting activities. Build production-quality automation that reduces repetitive work, improves consistency, and enables analysts to focus on higher-value activities. Design reusable, model-agnostic skills and workflows that can operate across approved AI and agent platforms. Use AI-assisted development and investigation tools to accelerate coding, testing, documentation, investigations, and detection engineering. Contribute to GitHub-based engineering workflows, including branching, pull requests, code reviews, testing, feedback cycles, and controlled deployments. Instrument agentic workflows with logs, traces, metrics, evaluation results, and failure signals to ensure behavior and outcomes remain observable. Apply secure harness design, least-privilege principles, scoped tool access, approval gates, evidence validation, rollback mechanisms, and human review for consequential actions. Communicate incidents, risks, technical decisions, and outcomes clearly to engineering teams and leadership. Continuously improve security processes and engineering practices based on incident findings, threat intelligence, operational data, and lessons learned. Requirements You bring strong enterprise incident response and security engineering experience, combined with practical development capabilities and an understanding of how automation and AI can be applied safely to security operations. Strong enterprise incident response experience across endpoint, identity, cloud, network, and product-focused investigations. Practical experience with DFIR, endpoint and firewall forensics, threat hunting, detection engineering, and analysis of unstructured telemetry. Ability to develop reliable automation using Python or a comparable programming language. Experience working with APIs and querying data using SQL. Working knowledge of Git and GitHub engineering practices, including pull requests, code reviews, testing, and CI/CD concepts. Hands-on familiarity with Claude, Codex, Copilot, or comparable coding-agent technologies. Understanding of context design, task decomposition, and validation of AI-generated output. Ability to design and write evaluations for agentic workflows and reusable skills, covering task success, output quality, safety, regressions, and common failure modes. Understanding of agent architecture, tool usage, skill-based design, model portability, and AI or automation safety controls. Ability to design observability for automated workflows and use telemetry to troubleshoot, measure quality, and improve reliability. Strong written and verbal communication skills. Sound operational security judgment and attention to safe handling of security-sensitive activities. Ability to work effectively within a globally coordinated and distributed environment. Legal authorization to work in Canada without requiring employer sponsorship. Benefits Base salary ranging from $86,000 to $143,000 CAD . Additional compensation, including bonus eligibility . Comprehensive employee benefits package. Remote-first working model, with remote work serving as the primary option for most employees. Employee-led diversity and inclusion networks focused on community, education, and advocacy. Annual charity, fundraising, and employee volunteer initiatives. Global sustainability initiatives supporting efforts to reduce environmental impact. Global fitness and trivia activities supporting employee connection and wellbeing. Global wellbeing days designed to provide time to relax and recharge. Monthly wellbeing webinars and training focused on employee health and wellbeing. Inclusive environment that values diverse perspectives, collaboration, innovation, and continuous learning. Opportunity to work at the intersection of incident response, threat intelligence, detection engineering, automation, and responsible AI adoption. Recruitment and selection accommodations available to support candidates who require adjustments.

Tips for this job

Practical JobOpportunity guidance. These tips do not replace official rules or create new eligibility requirements.

  1. Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
  2. Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
  3. Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
  4. Apply through the original employer or official recruitment destination shown on this page.

Verification notes

laptop-ats-crawler v3

Original authoritative source

JobOpportunity is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.

Apply through JobOpportunity →

Browse current JobOpportunity listings from jobgether (lever) →

Related opportunities

Other current verified records you may want to review.

Job

Business Services Specialist in Product & Customer Offboarding Services | SEB, Vilnius

Seb Careers · Lithuania

We're looking for a goal-oriented team player who always strives for improvement and seeks to broaden their skills! As a part of the SEB Group, w...

Job

Business Services Specialist in Product & Customer Offboarding Services (maternity cover) | SEB, Vilnius

Seb Careers · Lithuania

We're looking for a goal-oriented team player who always strives for improvement and seeks to broaden their skills! As a part of the SEB Group, w...

Job

Business Services Specialist in Audit Statements CoE Team (Temporary)| SEB, Vilnius

Seb Careers · Lithuania

We're looking for a client oriented team player who always strives for improvement and seeks to broaden their skills! As a part of the SEB Group,...

Job

Business Information Data Architect in Product Development & Technology | SEB, Vilnius

Seb Careers · Lithuania

Would you like to shape business data architecture and ensure that critical business information is defined, governed and trusted across the orga...

Job

Business Information Data Architect in Product Development & Technology | SEB, Kaunas

Seb Careers · Lithuania

Would you like to shape business data architecture and ensure that critical business information is defined, governed and trusted across the orga...

Job

Business Information Data Architect /Biznesa informācijas datu arhitekts | SEB, Riga

Seb Careers · Latvia

Would you like to shape business data architecture and ensure that critical business information is defined, governed and trusted across the orga...

More ways to save

Discover deals, coupons and free courses on our sister site.

Explore DealVorio
Save more with DealVorio: deals, coupons, free courses, apps and books