
Senior Security Operations Specialist
Relay
full-time
Posted on:
Location Type: Hybrid
Location: Toronto • Canada
Visit company websiteExplore more
Salary
💰 CA$126,000 - CA$154,000 per year
Job Level
Tech Stack
About the role
- Monitor, triage, and investigate high-severity security alerts across cloud infrastructure, identity, SaaS, endpoints, and production systems
- Validate threats versus noise and determine severity and impact
- Execute containment actions and coordinate response across teams
- Act as Incident Commander or deputy during security incidents
- Build and maintain investigation runbooks and response playbooks
- Work horizontally across Risk, AppSec, Engineering, Product, and business teams to ensure security findings lead to meaningful improvements in systems, practices, and outcomes.
- Contribute to SOAR automation and alert enrichment
- Produce high-quality incident documentation and post-incident remediation
- Design and implement advanced threat detection logic using SIEM/XDR telemetry.
- Perform threat hunting engagements to proactively detect stealthy adversaries.
- Ensure security compliance and regulatory alignment: Partner with Compliance, Security, and Risk teams to implement and enforce security controls, standards, and policies across systems and services.
Requirements
- 5+ years in security operations, incident response, or related cybersecurity roles.
- Strong cloud security and identity security experience (AWS preferred).
- Comfortable making structured, high-impact decisions during active incidents.
- Deep knowledge of common attack techniques, adversary TTPs (MITRE ATT&CK, etc.), and fraud/ATO patterns.
- Strong written and verbal communication skills — able to explain complex technical issues to both technical and business audiences.
- Ownership mindset with a bias toward action and continuous improvement.
- Skilled in building detection logic and workflows for cloud-native environments and security tooling.
- Experience with SOAR platforms and building/optimizing automated response playbooks.
- Ability to communicate complex security issues clearly to both technical and business stakeholders.
Benefits
- Compensation follows impact
- Ongoing conversation with recruiters about compensation
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
security operationsincident responsecloud securityidentity securitythreat detection logicthreat huntingSOAR automationdetection logicMITRE ATT&CKregulatory compliance
Soft Skills
structured decision makingcommunication skillsownership mindsetbias toward actioncontinuous improvement