Senior Security Platform Engineer (Cryptography)

Posted:
9/13/2024, 7:44:43 AM

Location(s):
Ontario, Canada ⋅ Old Toronto, Ontario, Canada ⋅ Alberta, Canada ⋅ Belleville, Ontario, Canada ⋅ Ajax, Ontario, Canada ⋅ Waterloo, Ontario, Canada ⋅ Edmonton, Alberta, Canada

Experience Level(s):
Senior

Field(s):
DevOps & Infrastructure ⋅ IT & Security ⋅ Software Engineering

You are as unique as your background, experience and point of view. Here, you’ll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll have new and exciting opportunities to make life brighter for our Clients - who are at the heart of everything we do. Discover how you can make a difference in the lives of individuals, families and communities around the world.

Job Description:

What will you do?

  • Deploy and manage one or more security platforms and tools: Perimeter, Endpoints, Crypto, Cloud, Email Security, and Security Visibility:

  • Email and Anti Malware Security Technologies

  • Cloud platforms security (CNAPP)

  • Intrusion Detection/Prevention System

  • Endpoint Security Solutions (Netskope, CrowdStrike, Semperis)

  • Web Application Firewalls (WAF)

  • Cryptography, Certificate and Key Management (Hashicorp, Venafi, ISG)

  • Security Visibility (SIEM)

  • Execute Hashicorp Vault tasks including installing Vault on OpenShift, Vault authentication methods, policies, API, PKI provider, Raft or database storage, CLI, UI.

  • Analyze information systems utilizing various cybersecurity techniques and lead security initiatives and enterprise level projects implementing security solutions and performing POC/POV for new technologies.

  • Able to work independently with high degree of ambiguity and deliver expected outcomes, be focused on the end deliverables, and build trust with internal clients and peers. 

  • Responsible to deploy, support and maintain new and existing security technologies that are deployed within Sun Life and owned and supported by the team.

  • Implement risk driven security controls and provide SME (Subject Matter Expertise) during Audit.

  • Investigate and respond to security incidents, adhering to defined SLA’s.

  • Participate in teams 24x7 on-call support and be required to join major incident management calls to provide support and consultation.

What do you need to succeed?

  • Pragmatic understanding of security problems, as a mix of technology and process issues, with the ability to pursue solutions at both layers within the organization. 

  • Development skills: Python, Shell scripts, Java development, API development, Maven, NodeJS, Open Liberty, NGINX, Angular development for UI, Git/Git Flow

  • Infrastructure//DevOps skills: Linux, OpenShift/Kubernetes, Docker, Ingress, Helm, Ansible, Terraform, CDD, Network load balancer, PKI and SSL certificates, Vulnerability remediation, Splunk, APM/ASM Monitoring, Telegraf, AWS, Azure, SSO, Microsoft Entra ID OIDC, Database (Postgresql), CyberArk, Service Now, JIRA

  • Product skills: Hashicorp Vault, Install vault on OpenShift, Vault secret engine, Vault auth methods, Vault policies, Vault API, Vault PKI provider, Vault storage raft or database, Vault CLI, Vault UI

  • Extensive knowledge of Information Security principles, protocols, practices, and industry standards 

  • Self- Starter, strategic thinker in maturing deployed security technologies to ensure full capabilities are explored to meet enterprise security requirements.

  • Strong hands-on technical skills in both security risks and implementing solutions.

  • Strong investigative mindset with acute attention to detail, sense of ownership, urgency, and drive.

  • An Information Technology University degree/college diploma in related discipline(s) or equivalent work experience

  • Minimum 5-7 years Information security and engineering experience with enterprise level security technologies in the one or more areas of: Perimeter, Endpoints, Crypto, Cloud, Email Security, Security Visibility, and Automation and Orchestration

  • Minimum 3-year experience in successfully leading global information security projects.

  • Preferred:  Certification(s) in data network engineering and/or security:  CCNP/CCNP-Security, CCSP, CISSP, GIAC-GCIA, GIAC-GCED, CompTIA, or equivalent security certification

The Base Pay range is for the primary location for which the job is posted.  It may vary depending on the work location of the successful candidate or other factors.  In addition to Base Pay, eligible Sun Life employees participate in various incentive plans, payment under which is discretionary and subject to individual and company performance.  Certain sales focused roles have sales incentive plans based on individual or group sales results. 

Diversity and inclusion have always been at the core of our values at Sun Life. A diverse workforce with wide perspectives and creative ideas benefits our clients, the communities where we operate and all of us as colleagues. We welcome applications from qualified individuals from all backgrounds.

Persons with disabilities who need accommodation in the application process or those needing job postings in an alternative format may e-mail a request to [email protected].

At Sun Life we strive to create a flexible work environment where our employees are empowered to do their best work. Several flexible work options are available and can be discussed throughout the selection process depending on the role requirements and individual needs.

We thank all applicants for showing an interest in this position. Only those selected for an interview will be contacted.

Salary Range:

82,000/82 000 - 135,000/135 000

Job Category:

IT - Technology Services

Posting End Date:

03/10/2024