×
Register Here to Apply for Jobs or Post Jobs. X

Senior Security Platform Engineer

Job in Waterloo, Kitchener, Ontario, Canada
Listing for: Sun Life
Full Time position
Listed on 2026-06-18
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security, IT Consultant, Systems Engineer
Job Description & How to Apply Below
Location: Waterloo

Job Description

:

Position Summary:

The Senior Security Platform Engineer is responsible for effectively planning, designing, implementing, and monitoring security technologies and projects that support Sun Life’s security policies and procedures. Your primary responsibilities will be Supporting in Scope Platform and Products and developing use case scenarios, enhancing the security of Sun Life’s corporate and production systems. You will work closely with Enterprise Infrastructure, IT operations, Enterprise Architecture, and application development teams to identify risks to the business and lead security solutions to protect customer and financial information.

The successful candidate must be able to interpret complex information, adapt as needed and have a deep understanding of security risks, data impact and controls to help mitigate the risk and provide countermeasures.

A Senior Security Platform Engineer is a leader who is expected to participate fully in the planning of the work and to seek opportunities for process improvement. The successful candidate is strong in multiple Information Security domains and is expected to lead the efforts to solve complex security problems.

What you will do:

  • Deploy, administer, and continuously enhance Mandiant Security Validation (MSV) within the Security Visibility program, including onboarding/updating adversary emulation content, scheduling and tuning validation runs, integrating results with detection/response processes, and producing actionable reporting/metrics to drive control and detection improvements.
  • Analyze information systems utilizing various cybersecurity techniques and lead security initiatives and enterprise level projects implementing security solutions and performing POC/POV for new technologies.
  • Able to work independently with high degree of ambiguity and deliver expected outcomes, be focused on the end deliverables, and build trust with internal clients and peers.
  • Responsible to deploy, support and maintain new and existing security technologies that are deployed within Sun Life and owned and supported by the team.
  • Implement risk driven security controls and provide SME (Subject Matter Expertise) during Audit.
  • Investigate and respond to security incidents, adhering to defined SLA’s..
  • Identify risks to the business and recommend strategies to address those risks.
  • Manage the capacity and resiliency of security systems protecting Sun Life’s internal and client data.
  • Collaborate and build trust with security peers, vendors, and other Sun Life teams to enhance security posture and best practices.
  • A change catalyst for Digital transformation, using JIRA, Confluence, estimating stories, setting definition of done, completing and tracking story updates and assignments.
  • Smoothly transition and operationalize projects and products. This includes developing roles & responsibilities (RACI), completing product documentation and educating the teams who will be performing BAU (Business as usual) the day-to-day work.
  • Document, update and maintain cyber security playbooks, policies and knowledge base articles used to support the established Incident Management and CSIRT processes.
  • Continuously improve operational and security platform processes.
  • What you need to succeed:

  • Minimum 5-7 years Information security and engineering experience with enterprise level security technologies in the one or more areas of:
    Perimeter, Endpoints, Crypto, Cloud, Email Security, Security Visibility, and Automation and Orchestration
  • Minimum 3-year experience in successfully leading global information security projects.
  • Previous security related experience in penetration testing, security investigations, or red team exercises
  • Experience with security control validation (e.g., MSV), including MITRE ATT&CK mapping, translating findings into detection/control improvements, and communicating outcomes using clear reporting and metrics.
  • An Information Technology University degree/college diploma in related discipline(s) or equivalent work experience
  • Experience with security validation / breach-and-attack simulation platforms (e.g., Mandiant Security Validation (MSV)), including adversary…
  • Position Requirements
    10+ Years work experience
    Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
    To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
     
     
     
    Search for further Jobs Here:
    (Try combinations for better Results! Or enter less keywords for broader Results)
    Location
    Increase/decrease your Search Radius (miles)
    0
    200
    Filters
    Education Level
    Experience Level (years)
    Posted in last:
    Salary